Certleader SY0-601 Questions are updated and all SY0-601 answers are verified by experts. Once you have completely prepared with our SY0-601 exam prep kits you will be ready for the real SY0-601 exam without a problem. We have Replace CompTIA SY0-601 dumps study guide. PASSED SY0-601 First attempt! Here What I Did.
Check SY0-601 free dumps before getting the full version:
NEW QUESTION 1
Which of the following would be the BEST method for creating a detailed diagram of wireless access points and hot-spots?
- A. Footprinting
- B. White-box testing
- C. A drone/UAV
- D. Pivoting
Answer: A
NEW QUESTION 2
A nuclear plant was the victim of a recent attack, and all the networks were air gapped. A subsequent investigation revealed a worm as the source of the issue. Which of the following BEST explains what happened?
- A. A malicious USB was introduced by an unsuspecting employee.
- B. The ICS firmware was outdated
- C. A local machine has a RAT installed.
- D. The HVAC was connected to the maintenance vendor.
Answer: A
NEW QUESTION 3
Some laptops recently went missing from a locked storage area that is protected by keyless RFID-enabled locks. There is no obvious damage to the physical space. The security manager identifies who unlocked the door, however, human resources confirms the employee was on vacation at the time of the incident. Which of the following describes what MOST likely occurred?
- A. The employee's physical access card was cloned.
- B. The employee is colluding with human resources
- C. The employee's biometrics were harvested
- D. A criminal used lock picking tools to open the door.
Answer: A
NEW QUESTION 4
A company recently transitioned to a strictly BYOD culture due to the cost of replacing lost or damaged corporate-owned mobile devices. Which of the following technologies would be BEST to balance the BYOD culture while also protecting the company’s data?
- A. Containerization
- B. Geofencing
- C. Full-disk encryption
- D. Remote wipe
Answer: C
NEW QUESTION 5
A cybersecurity department purchased o new PAM solution. The team is planning to randomize the service account credentials of the Windows server first. Which of the following would be the BEST method to increase the security on the Linux server?
- A. Randomize the shared credentials
- B. Use only guest accounts to connect.
- C. Use SSH keys and remove generic passwords
- D. Remove all user accounts.
Answer: C
NEW QUESTION 6
A security analyst is preparing a threat for an upcoming internal penetration test. The analyst needs to identify a method for determining the tactics, techniques, and procedures of a threat against the organization’s network. Which of the following will the analyst MOST likely use to accomplish the objective?
- A. A table exercise
- B. NST CSF
- C. MTRE ATT$CK
- D. OWASP
Answer: A
NEW QUESTION 7
During an incident response, a security analyst observes the following log entry on the web server.
Which of the following BEST describes the type of attack the analyst is experience?
- A. SQL injection
- B. Cross-site scripting
- C. Pass-the-hash
- D. Directory traversal
Answer: B
NEW QUESTION 8
Which of the following algorithms has the SMALLEST key size?
- A. DES
- B. Twofish
- C. RSA
- D. AES
Answer: B
NEW QUESTION 9
An auditor is performing an assessment of a security appliance with an embedded OS that was vulnerable during the last two assessments. Which of the following BEST explains the appliance’s vulnerable state?
- A. The system was configured with weak default security settings.
- B. The device uses weak encryption ciphers.
- C. The vendor has not supplied a patch for the appliance.
- D. The appliance requires administrative credentials for the assessment.
Answer: C
NEW QUESTION 10
A vulnerability assessment report will include the CVSS score of the discovered vulnerabilities because the score allows the organization to better.
- A. validate the vulnerability exists in the organization's network through penetration testing
- B. research the appropriate mitigation techniques in a vulnerability database
- C. find the software patches that are required to mitigate a vulnerability
- D. prioritize remediation of vulnerabilities based on the possible impact.
Answer: D
NEW QUESTION 11
The CSIRT is reviewing the lessons learned from a recent incident. A worm was able to spread unhindered throughout the network and infect a large number of computers and servers. Which of the following recommendations would be BEST to mitigate the impacts of a similar incident in the future?
- A. Install a NIDS device at the boundary.
- B. Segment the network with firewalls.
- C. Update all antivirus signatures daily.
- D. Implement application blacklisting.
Answer: B
NEW QUESTION 12
Under GDPR, which of the following is MOST responsible for the protection of privacy and website user rights?
- A. The data protection officer
- B. The data processor
- C. The data owner
- D. The data controller
Answer: C
NEW QUESTION 13
A network administrator is setting up wireless access points in all the conference rooms and wants to authenticate device using PKI. Which of the following should the administrator configure?
- A. A captive portal
- B. PSK
- C. 802.1X
- D. WPS
Answer: C
NEW QUESTION 14
An organization has implemented a policy requiring the use of conductive metal lockboxes for personal electronic devices outside of a secure research lab. Which of the following did the organization determine to be the GREATEST risk to intellectual property when creating this policy?
- A. The theft of portable electronic devices
- B. Geotagging in the metadata of images
- C. Bluesnarfing of mobile devices
- D. Data exfiltration over a mobile hotspot
Answer: D
NEW QUESTION 15
Which of the following job roles would sponsor data quality and data entry initiatives that ensure business and regulatory requirements are met?
- A. The data owner
- B. The data processor
- C. The data steward
- D. The data privacy officer.
Answer: C
NEW QUESTION 16
An organization wants to implement a third factor to an existing multifactor authentication. The organization already uses a smart card and password. Which of the following would meet the organization’s needs for a third factor?
- A. Date of birth
- B. Fingerprints
- C. PIN
- D. TPM
Answer: B
NEW QUESTION 17
A user contacts the help desk to report the following:
Two days ago, a pop-up browser window prompted the user for a name and password after connecting to the corporate wireless SSID. This had never happened before, but the user entered the information as requested.
The user was able to access the Internet but had trouble accessing the department share until the next day.
The user is now getting notifications from the bank about unauthorized transactions. Which of the following attack vectors was MOST likely used in this scenario?
- A. Rogue access point
- B. Evil twin
- C. DNS poisoning
- D. ARP poisoning
Answer: A
NEW QUESTION 18
Which of the following policies would help an organization identify and mitigate potential single points of failure in the company’s IT/security operations?
- A. Least privilege
- B. Awareness training
- C. Separation of duties
- D. Mandatory vacation
Answer: C
NEW QUESTION 19
A pharmaceutical sales representative logs on to a laptop and connects to the public WiFi to check emails and update reports. Which of the following would be BEST to prevent other devices on the network from directly accessing the laptop? (Choose two.)
- A. Trusted Platform Module
- B. A host-based firewall
- C. A DLP solution
- D. Full disk encryption
- E. A VPN
- F. Antivirus software
Answer: AB
NEW QUESTION 20
To reduce costs and overhead, an organization wants to move from an on-premises email solution to a cloud-based email solution. At this time, no other services will be moving. Which of the following cloud models would BEST meet the needs of the organization?
- A. MaaS
- B. laaS
- C. SaaS
- D. PaaS
Answer: D
NEW QUESTION 21
A security administrator currently spends a large amount of time on common security tasks, such aa report generation, phishing investigations, and user provisioning and deprovisioning This prevents the administrator from spending time on other security projects. The business does not have the budget to add more staff members. Which of the following should the administrator implement?
- A. DAC
- B. ABAC
- C. SCAP
- D. SOAR
Answer: D
NEW QUESTION 22
A security engineer needs to implement an MDM solution that complies with the corporate mobile device policy. The policy states that in order for mobile users to access corporate resources on their devices the following requirements must be met:
• Mobile device OSs must be patched up to the latest release
• A screen lock must be enabled (passcode or biometric)
• Corporate data must be removed if the device is reported lost or stolen
Which of the following controls should the security engineer configure? (Select TWO)
- A. Containerization
- B. Storage segmentation
- C. Posturing
- D. Remote wipe
- E. Full-device encryption
- F. Geofencing
Answer: DE
NEW QUESTION 23
A security analyst is using a recently released security advisory to review historical logs, looking for the specific activity that was outlined in the advisory. Which of the following is the analyst doing?
- A. A packet capture
- B. A user behavior analysis
- C. Threat hunting
- D. Credentialed vulnerability scanning
Answer: C
NEW QUESTION 24
A startup company is using multiple SaaS and IaaS platforms to stand up a corporate infrastructure and build out a customer-facing web application. Which of the following solutions would be BEST to provide security, manageability, and visibility into the platforms?
- A. SIEM
- B. DLP
- C. CASB
- D. SWG
Answer: C
NEW QUESTION 25
The Chief Security Officer (CSO) at a major hospital wants to implement SSO to help improve in the environment patient data, particularly at shared terminals. The Chief Risk Officer (CRO) is concerned that training and guidance have been provided to frontline staff, and a risk analysis has not been performed. Which of the following is the MOST likely cause of the CRO’s concerns?
- A. SSO would simplify username and password management, making it easier for hackers to pass guess accounts.
- B. SSO would reduce password fatigue, but staff would still need to remember more complex passwords.
- C. SSO would reduce the password complexity for frontline staff.
- D. SSO would reduce the resilience and availability of system if the provider goes offline.
Answer: D
NEW QUESTION 26
......
P.S. Easily pass SY0-601 Exam with 218 Q&As DumpSolutions.com Dumps & pdf Version, Welcome to Download the Newest DumpSolutions.com SY0-601 Dumps: https://www.dumpsolutions.com/SY0-601-dumps/ (218 New Questions)