πŸ”

SY0-701 β€” questions

Page 8 of 31 Β· 603 total questions.

Topic 1 Β· Question 143

Which of the following would be the best way to handle a critical business application that is running on a legacy server?

  • ASegmentation (correct answer)
  • BIsolation
  • CHardening
  • DDecommissioning
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Segmentation

Topic 1 Β· Question 144

Which of the following vulnerabilities is exploited when an attacker overwrites a register with a malicious address?

  • AVM escape
  • BSQL injection
  • CBuffer overflow (correct answer)
  • DRace condition
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Buffer overflow

Topic 1 Β· Question 145

After a company was compromised, customers initiated a lawsuit. The company's attorneys have requested that the security team initiate a legal hold in response to the lawsuit. Which of the following describes the action the security team will most likely be required to take?

  • ARetain the emails between the security team and affected customers for 30 days.
  • BRetain any communications related to the security breach until further notice. (correct answer)
  • CRetain any communications between security members during the breach response.
  • DRetain all emails from the company to affected customers for an indefinite period of time.
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Retain any communications related to the security breach until further notice. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 146

Which of the following describes the process of concealing code or text inside a graphical image?

  • ASymmetric encryption
  • BHashing
  • CData masking
  • DSteganography (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Steganography

Topic 1 Β· Question 147

An employee receives a text message from an unknown number claiming to be the company’s Chief Executive Officer and asking the employee to purchase several gift cards. Which of the following types of attacks does this describe?

  • AVishing
  • BSmishing (correct answer)
  • CPretexting
  • DPhishing
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Smishing

Topic 1 Β· Question 148

Which of the following risk management strategies should an enterprise adopt first if a legacy application is critical to business operations and there are preventative controls that are not yet implemented?

  • AMitigate (correct answer)
  • BAccept
  • CTransfer
  • DAvoid
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Mitigate

Topic 1 Β· Question 149

Visitors to a secured facility are required to check in with a photo ID and enter the facility through an access control vestibule. Which of the following best describes this form of security control?

  • APhysical (correct answer)
  • BManagerial
  • CTechnical
  • DOperational
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Physical This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 150

The local administrator account for a company's VPN appliance was unexpectedly used to log in to the remote management interface. Which of the following would have most likely prevented this from happening?

  • AUsing least privilege
  • BChanging the default password (correct answer)
  • CAssigning individual user IDs
  • DReviewing logs more frequently
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Changing the default password

Topic 1 Β· Question 151

Which of the following is the best way to secure an on-site data center against intrusion from an insider?

  • ABollards
  • BAccess badge (correct answer)
  • CMotion sensor
  • DVideo surveillance
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Access badge This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 152

An engineer moved to another team and is unable to access the new team's shared folders while still being able to access the shared folders from the former team. After opening a ticket, the engineer discovers that the account was never moved to the new group. Which of the following access controls is most likely causing the lack of access?

  • ARole-based (correct answer)
  • BDiscretionary
  • CTime of day
  • DLeast privilege
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Role-based

Topic 1 Β· Question 153 Β· Select all that apply

Which of the following factors are the most important to address when formulating a training curriculum plan for a security awareness program? (Choose two.)

  • AChannels by which the organization communicates with customers
  • BThe reporting mechanisms for ethics violations
  • CThreat vectors based on the industry in which the organization operates (correct answer)
  • DSecure software development training for all personnel
  • ECadence and duration of training events (correct answer)
  • FRetraining requirements for individuals who fail phishing simulations
Reveal answer & explanation
Correct answer: C, E

The correct answer is C, E. Option C: Threat vectors based on the industry in which the organization operates Option E: Cadence and duration of training events This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 154

A network administrator is working on a project to deploy a load balancer in the company's cloud environment. Which of the following fundamental security requirements does this project fulfil?

  • APrivacy
  • BIntegrity
  • CConfidentiality
  • DAvailability (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Availability This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 155

A systems administrator is changing the password policy within an enterprise environment and wants this update implemented on all systems as quickly as possible. Which of the following operating system security measures will the administrator most likely use?

  • ADeploying PowerShell scripts
  • BPushing GPO update (correct answer)
  • CEnabling PAP
  • DUpdating EDR profiles
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Pushing GPO update This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 156

Which of the following would be most useful in determining whether the long-term cost to transfer a risk is less than the impact of the risk?

  • AARO
  • BRTO
  • CRPO
  • DALE (correct answer)
  • ESLE
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: ALE

Topic 1 Β· Question 157

In order to strengthen a password and prevent a hacker from cracking it, a random string of 36 characters was added to the password. Which of the following best describes this technique?

  • AKey stretching
  • BTokenization
  • CData masking
  • DSalting (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Salting

Explanation

A unique random salt makes identical passwords produce different hashes and defeats precomputed hash tables.

Topic 1 Β· Question 158

A technician is deploying a new security camera. Which of the following should the technician do?

  • AConfigure the correct VLAN.
  • BPerform a vulnerability scan.
  • CDisable unnecessary ports.
  • DConduct a site survey. (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Conduct a site survey. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 159

A company is experiencing a web services outage on the public network. The services are up and available but inaccessible. The network logs show a sudden increase in network traffic that is causing the outage. Which of the following attacks is the organization experiencing?

  • AARP poisoning
  • BBrute force
  • CBuffer overflow
  • DDDoS (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: DDoS

Topic 1 Β· Question 160

Which of the following threat actors is the most likely to be motivated by profit?

  • AHacktivist
  • BInsider threat
  • COrganized crime (correct answer)
  • DShadow IT
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Organized crime

Topic 1 Β· Question 161 Β· Select all that apply

An organization experiences a cybersecurity incident involving a command-and-control server. Which of the following logs should be analyzed to identify the impacted host? (Choose two.)

  • AApplication
  • BAuthentication
  • CDHCP
  • DNetwork (correct answer)
  • EFirewall (correct answer)
  • FDatabase
Reveal answer & explanation
Correct answer: D, E

The correct answer is D, E. Option D: Network Option E: Firewall

Explanation

A firewall enforces traffic policy by permitting or blocking connections based on configured rules. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 162

During a penetration test, a vendor attempts to enter an unauthorized area using an access badge. Which of the following types of tests does this represent?

  • ADefensive
  • BPassive
  • COffensive
  • DPhysical (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Physical

Showing questions 141–160 of 603 Β· Page 8 of 31