Proper study guides for SY0-501 CompTIA Security+ Certification Exam certified begins with preparation products which designed to deliver the by making you pass the SY0-501 test at your first time. Try the free right now.

CompTIA SY0-501 Free Dumps Questions Online, Read and Test Now.

NEW QUESTION 1
An audit reported has identifies a weakness that could allow unauthorized personnel access to the facility at its main entrance and from there gain access to the network. Which of the following would BEST resolve the vulnerability?

  • A. Faraday cage
  • B. Air gap
  • C. Mantrap
  • D. Bollards

Answer: C

NEW QUESTION 2
A security auditor is testing perimeter security in a building that is protected by badge readers. Which of the following types of attacks would MOST likely gain access?

  • A. Phishing
  • B. Man-in-the-middle
  • C. Tailgating
  • D. Watering hole
  • E. Shoulder surfing

Answer: C

NEW QUESTION 3
A bank requires tellers to get manager approval when a customer wants to open a new account. A recent audit shows that there have been four cases in the previous year where tellers opened accounts without management approval. The bank president thought separation of duties would prevent this from happening.
In order to implement a true separation of duties approach the bank could:

  • A. Require the use of two different passwords held by two different individuals to open an account
  • B. Administer account creation on a role based access control approach
  • C. Require all new accounts to be handled by someone else other than a teller since they have different duties
  • D. Administer account creation on a rule based access control approach

Answer: C

NEW QUESTION 4
A security administrator suspects a MITM attack aimed at impersonating the default gateway is underway. Which of the following tools should the administrator use to detect this attack? (Select two.)

  • A. Ping
  • B. Ipconfig
  • C. Tracert
  • D. Netstat
  • E. Dig
  • F. Nslookup

Answer: BC

NEW QUESTION 5
A network technician is trying to determine the source of an ongoing network based attack. Which of the following should the technician use to view IPv4 packet data on a particular internal network segment?

  • A. Proxy
  • B. Protocol analyzer
  • C. Switch
  • D. Firewall

Answer: B

NEW QUESTION 6
Which of the following is the GREATEST risk to a company by allowing employees to physically bring their personal smartphones to work?

  • A. Taking pictures of proprietary information and equipment in restricted areas.
  • B. Installing soft token software to connect to the company's wireless network.
  • C. Company cannot automate patch management on personally-owned devices.
  • D. Increases the attack surface by having more target devices on the company's campus

Answer: A

NEW QUESTION 7
A security administrator wants to implement strong security on the company smart phones and terminal servers located in the data center. Drag and drop the applicable controls to each asset types?
Instructions: Controls can be used multiple times and not all placeholders need to be filled. When you have completed the simulation, please select the Done button to submit.
SY0-501 dumps exhibit

    Answer:

    Explanation: Company Manages Smart Phone Screen Lock
    Strong Password Device Encryption Remote Wipe GPS Tracking
    Pop-up blocker
    Data Center Terminal Server Cable Locks
    Antivirus
    Host Based Firewall Proximity Reader Sniffer
    Mantrap

    NEW QUESTION 8
    The Chief Technology Officer (CTO) of a company, Ann, is putting together a hardware budget for the next 10 years. She is asking for the average lifespan of each hardware device so that she is able to calculate when she will have to replace each device.
    Which of the following categories BEST describes what she is looking for?

    • A. ALE
    • B. MTTR
    • C. MTBF
    • D. MTTF

    Answer: D

    NEW QUESTION 9
    Joe a computer forensic technician responds to an active compromise of a database server. Joe first collects information in memory, then collects network traffic and finally conducts an image of the hard drive. Which of the following procedures did Joe follow?

    • A. Order of volatility
    • B. Chain of custody
    • C. Recovery procedure
    • D. Incident isolation

    Answer: A

    NEW QUESTION 10
    A system administrator is configuring a site-to-site VPN tunnel. Which of the following should be configured on the VPN concentrator during the IKE phase?

    • A. RIPEMD
    • B. ECDHE
    • C. Diffie-Hellman
    • D. HTTPS

    Answer: C

    NEW QUESTION 11
    A company is allowing a BYOD policy for its staff. Which of the following is a best practice that can decrease the risk of users jailbreaking mobile devices?

    • A. Install a corporately monitored mobile antivirus on the devices.
    • B. Prevent the installation of applications from a third-party application store.
    • C. Build a custom ROM that can prevent jailbreaking.
    • D. Require applications to be digitally signed.

    Answer: D

    NEW QUESTION 12
    Company policy requires the use if passphrases instead if passwords.
    Which of the following technical controls MUST be in place in order to promote the use of passphrases?

    • A. Reuse
    • B. Length
    • C. History
    • D. Complexity

    Answer: D

    NEW QUESTION 13
    An auditor is reviewing the following output from a password-cracking tool:
    SY0-501 dumps exhibit
    Which of the following methods did the auditor MOST likely use?

    • A. Hybrid
    • B. Dictionary
    • C. Brute force
    • D. Rainbow table

    Answer: A

    NEW QUESTION 14
    While reviewing the security controls in place for a web-based application, a security controls assessor notices that there are no password strength requirements in place. Because of this vulnerability, passwords might be easily discovered using a brute force attack. Which of the following password requirements will MOST effectively improve the security posture of the application against these attacks? (Select two)

    • A. Minimum complexity
    • B. Maximum age limit
    • C. Maximum length
    • D. Minimum length
    • E. Minimum age limit
    • F. Minimum re-use limit

    Answer: AD

    NEW QUESTION 15
    A malicious attacker has intercepted HTTP traffic and inserted an ASCII line that sets the referrer URL. Which of the following is the attacker most likely utilizing?

    • A. Header manipulation
    • B. Cookie hijacking
    • C. Cross-site scripting
    • D. Xml injection

    Answer: A

    NEW QUESTION 16
    A systems administrator found a suspicious file in the root of the file system. The file contains URLs, usernames, passwords, and text from other documents being edited on the system. Which of the following types of malware would generate such a file?

    • A. Keylogger
    • B. Rootkit
    • C. Bot
    • D. RAT

    Answer: A

    P.S. Easily pass SY0-501 Exam with 540 Q&As 2passeasy Dumps & pdf Version, Welcome to Download the Newest 2passeasy SY0-501 Dumps: https://www.2passeasy.com/dumps/SY0-501/ (540 New Questions)