Exambible provides you with the particular CompTIA CompTIA practice questions and answers along with best high quality. And our free downloadable test engine could make you really feel that you are usually taking the particular real CompTIA SY0-401 exam. If you do not know the best way to prepare for the CompTIA SY0-401 exam, please seek our research guide for help. Thus download the Exambible CompTIA CompTIA exam goods and become ready for the CompTIA SY0-401 actual test preparation. [vendor].com has abundant training supply for the CompTIA SY0-401 exam. It is possible to be assured to get certified on the first try. The CompTIA CompTIA test questions and also answers are written by our senior experts who are working with this field for most years. It can be never the easy task to pass the particular CompTIA SY0-401 exam. We promise that you may get a satisfied end result by taking advantage of our CompTIA CompTIA exam demos.


♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for CompTIA SY0-401 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW SY0-401 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/SY0-401-exam-dumps.html

2021 Mar SY0-401 vce

Q421. Which of the following should be used when a business needs a block cipher with minimal key size for internal encryption? 

A. AES 

B. Blowfish 

C. RC5 

D. 3DES 

Answer: B 

Explanation: 

Blowfish is an encryption system invented by a team led by Bruce Schneier that performs a 64-bit block cipher at very fast speeds. It is a symmetric block cipher that can use variable-length keys (from 32 bits to 448 bits). 


Q422. After recovering from a data breach in which customer data was lost, the legal team meets with the Chief Security Officer (CSO) to discuss ways to better protect the privacy of customer data. 

Which of the following controls support this goal? 

A. Contingency planning 

B. Encryption and stronger access control 

C. Hashing and non-repudiation 

D. Redundancy and fault tolerance 

Answer: B 

Explanation: 

Encryption is used to protect data/contents/documents. Access control refers to controlling who accesses any data/contents/documents and to exercise authorized control to the accessing of that data. 


Q423. Which of the following cryptographic algorithms is MOST often used with IPSec? 

A. Blowfish 

B. Twofish 

C. RC4 

D. HMAC 

Answer: D 

Explanation: 

The HMAC-MD5-96 (also known as HMAC-MD5) encryption technique is used by IPSec to make sure that a message has not been altered. 


Q424. Due to hardware limitation, a technician must implement a wireless encryption algorithm that uses the RC4 protocol. Which of the following is a wireless encryption solution that the technician should implement while ensuring the STRONGEST level of security? 

A. WPA2-AES 

B. 802.11ac 

C. WPA-TKIP 

D. WEP 

Answer: C 

Explanation: 

WPA-TKIP uses the RC4 cipher. 

TKIP and the related WPA standard implement three new security features to address security problems encountered in WEP protected networks. First, TKIP implements a key mixing function that combines the secret root key with the initialization vector before passing it to the RC4 initialization. WEP, in comparison, merely concatenated the initialization vector to the root key, and passed this value to the RC4 routine. This permitted the vast majority of the RC4 based WEP 

related key attacks. Second, WPA implements a sequence counter to protect against replay 

attacks. Packets received out of order will be rejected by the access point. Finally, TKIP 

implements a 64-bit Message Integrity Check (MIC) 

To be able to run on legacy WEP hardware with minor upgrades, TKIP uses RC4 as its cipher. 

TKIP also provides a rekeying mechanism. TKIP ensures that every data packet is sent with a 

unique encryption key. 


Q425. A company has decided to move large data sets to a cloud provider in order to limit the costs of new infrastructure. Some of the data is sensitive and the Chief Information Officer wants to make sure both parties have a clear understanding of the controls needed to protect the data. 

Which of the following types of interoperability agreement is this? 

A. ISA 

B. MOU 

C. SLA 

D. BPA 

Answer: A 

Explanation: 

ISA/ Interconnection Security Agreement is an agreement between two organizations that have connected systems. The agreement documents the technical requirements of the connected systems. 


Update SY0-401 vce:

Q426. Which of the following is BEST used to capture and analyze network traffic between hosts on the same network segment? 

A. Protocol analyzer 

B. Router 

C. Firewall 

D. HIPS 

Answer: A 

Explanation: 


Q427. A security technician has been asked to recommend an authentication mechanism that will allow users to authenticate using a password that will only be valid for a predefined time interval. Which of the following should the security technician recommend? 

A. CHAP 

B. TOTP 

C. HOTP 

D. PAP 

Answer: B 

Explanation: Time-based one-time password (TOTP) tokens are devices or applications that generate passwords at fixed time intervals. Therefore, the password will only be valid for a predefined time interval. 


Q428. A system administrator is notified by a staff member that their laptop has been lost. The laptop contains the user’s digital certificate. Which of the following will help resolve the issue? (Select TWO). 

A. Revoke the digital certificate 

B. Mark the key as private and import it 

C. Restore the certificate using a CRL 

D. Issue a new digital certificate 

E. Restore the certificate using a recovery agent 

Answer: A,D 

Explanation: 

The user's certificate must be revoked to ensure that the stolen computer cannot access 

resources the user has had access to. 

To grant the user access to the resources he must be issued a new certificate. 


Q429. The security administrator is currently unaware of an incident that occurred a week ago. Which of the following will ensure the administrator is notified in a timely manner in the future? 

A. User permissions reviews 

B. Incident response team 

C. Change management 

D. Routine auditing 

Answer: D 

Explanation: 

Routine audits are carried out after you have implemented security controls based on risk. These audits include aspects such as user rights and permissions and specific events. 


Q430. Sara, a security architect, has developed a framework in which several authentication servers work together to increase processing power for an application. Which of the following does this represent? 

A. Warm site 

B. Load balancing 

C. Clustering 

D. RAID 

Answer: C 

Explanation: 

Anytime you connect multiple computers to work/act together as a single server, it is known as 

clustering. Clustered systems utilize parallel processing (improving performance and availability) 

and add redundancy. 

Server clustering is used to provide failover capabilities / redundancy in addition to scalability as 

demand increases.