πŸ”

SY0-701 β€” questions

Page 7 of 31 Β· 603 total questions.

Topic 1 Β· Question 123

Which of the following exercises should an organization use to improve its incident response process?

  • ATabletop (correct answer)
  • BReplication
  • CFailover
  • DRecovery
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Tabletop

Topic 1 Β· Question 124

Which of the following best ensures minimal downtime and data loss for organizations with critical computing equipment located in earthquake-prone areas?

  • AGenerators and UPS
  • BOff-site replication (correct answer)
  • CRedundant cold sites
  • DHigh availability networking
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Off-site replication

Topic 1 Β· Question 125

A newly identified network access vulnerability has been found in the OS of legacy IoT devices. Which of the following would best mitigate this vulnerability quickly?

  • AInsurance
  • BPatching
  • CSegmentation (correct answer)
  • DReplacement
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Segmentation

Topic 1 Β· Question 126

After an audit, an administrator discovers all users have access to confidential data on a file server. Which of the following should the administrator use to restrict access to the data quickly?

  • AGroup Policy
  • BContent filtering
  • CData loss prevention
  • DAccess control lists (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Access control lists

Topic 1 Β· Question 127

A client demands at least 99.99% uptime from a service provider's hosted security services. Which of the following documents includes the information the service provider should return to the client?

  • AMOA
  • BSOW
  • CMOU
  • DSLA (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: SLA This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 128

A company is discarding a classified storage array and hires an outside vendor to complete the disposal. Which of the following should the company request from the vendor?

  • ACertification (correct answer)
  • BInventory list
  • CClassification
  • DProof of ownership
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Certification

Topic 1 Β· Question 129

A company is planning a disaster recovery site and needs to ensure that a single natural disaster would not result in the complete loss of regulated backup data. Which of the following should the company consider?

  • AGeographic dispersion (correct answer)
  • BPlatform diversity
  • CHot site
  • DLoad balancing
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Geographic dispersion By spanning multiple Availability Zones / adding redundancy, this option provides the high availability and resilience required.

Topic 1 Β· Question 130

A security analyst locates a potentially malicious video file on a server and needs to identify both the creation date and the file's creator. Which of the following actions would most likely give the security analyst the information required?

  • AObtain the file's SHA-256 hash.
  • BUse hexdump on the file's contents.
  • CCheck endpoint logs.
  • DQuery the file's metadata. (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Query the file's metadata. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 131

Which of the following teams combines both offensive and defensive testing techniques to protect an organization's critical systems?

  • ARed
  • BBlue
  • CPurple (correct answer)
  • DYellow
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Purple

Topic 1 Β· Question 132

A small business uses kiosks on the sales floor to display product information for customers. A security team discovers the kiosks use end-of-life operating systems. Which of the following is the security team most likely to document as a security implication of the current architecture?

  • APatch availability (correct answer)
  • BProduct software compatibility
  • CEase of recovery
  • DCost of replacement
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Patch availability This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 133

Which of the following would help ensure a security analyst is able to accurately measure the overall risk to an organization when a new vulnerability is disclosed?

  • AA full inventory of all hardware and software (correct answer)
  • BDocumentation of system classifications
  • CA list of system owners and their departments
  • DThird-party risk assessment documentation
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: A full inventory of all hardware and software This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 134

Which of the following best practices gives administrators a set period to perform changes to an operational system to ensure availability and minimize business impacts?

  • AImpact analysis
  • BScheduled downtime (correct answer)
  • CBackout plan
  • DChange management boards
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Scheduled downtime

Topic 1 Β· Question 135

A company must ensure sensitive data at rest is rendered unreadable. Which of the following will the company most likely use?

  • AHashing
  • BTokenization
  • CEncryption (correct answer)
  • DSegmentation
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Encryption

Explanation

Encryption protects confidentiality by making data unreadable without the appropriate key.

Topic 1 Β· Question 136

A legacy device is being decommissioned and is no longer receiving updates or patches. Which of the following describes this scenario?

  • AEnd of business
  • BEnd of testing
  • CEnd of support (correct answer)
  • DEnd of life
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: End of support

Topic 1 Β· Question 137

A bank insists all of its vendors must prevent data loss on stolen laptops. Which of the following strategies is the bank requiring?

  • AEncryption at rest (correct answer)
  • BMasking
  • CData classification
  • DPermission restrictions
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Encryption at rest

Explanation

Encryption protects confidentiality by making data unreadable without the appropriate key.

Topic 1 Β· Question 138

A company's end users are reporting that they are unable to reach external websites. After reviewing the performance data for the DNS severs, the analyst discovers that the CPU, disk, and memory usage are minimal, but the network interface is flooded with inbound traffic. Network logs show only a small number of DNS queries sent to this server. Which of the following best describes what the security analyst is seeing?

  • AConcurrent session usage
  • BSecure DNS cryptographic downgrade
  • COn-path resource consumption
  • DReflected denial of service (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Reflected denial of service This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 139

A systems administrator wants to prevent users from being able to access data based on their responsibilities. The administrator also wants to apply the required access structure via a simplified format. Which of the following should the administrator apply to the site recovery resource group?

  • ARBAC (correct answer)
  • BACL
  • CSAML
  • DGPO
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: RBAC

Explanation

Role-based access control assigns permissions to job roles, simplifying consistent least-privilege administration.

Topic 1 Β· Question 140 Β· Select all that apply

During the onboarding process, an employee needs to create a password for an intranet account. The password must include ten characters, numbers, and letters, and two special characters. Once the password is created, the company will grant the employee access to other company-owned websites based on the intranet profile. Which of the following access management concepts is the company most likely using to safeguard intranet accounts and grant access to multiple sites based on a user's intranet account? (Choose two.)

  • AFederation (correct answer)
  • BIdentity proofing
  • CPassword complexity (correct answer)
  • DDefault password changes
  • EPassword manager
  • FOpen authentication
Reveal answer & explanation
Correct answer: A, C

The correct answer is A, C. Option A: Federation Option C: Password complexity

Topic 1 Β· Question 141

Which of the following describes a security alerting and monitoring tool that collects system, application, and network logs from multiple sources in a centralized system?

  • ASIEM (correct answer)
  • BDLP
  • CIDS
  • DSNMP
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: SIEM

Explanation

A SIEM centralizes and correlates security events to support detection, investigation, and reporting. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 142

A network manager wants to protect the company's VPN by implementing multifactor authentication that uses: Something you know - Something you have - Something you are - Which of the following would accomplish the manager's goal?

  • ADomain name, PKI, GeoIP lookup
  • BVPN IP address, company ID, facial structure
  • CPassword, authentication token, thumbprint (correct answer)
  • DCompany URL, TLS certificate, home address
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Password, authentication token, thumbprint

Showing questions 121–140 of 603 Β· Page 7 of 31