Download CompTIA Security+ Certification Exam.prepaway.SY0-501.2020-12-31.1e.922q.vcex

Download Exam

File Info

Exam CompTIA Security+
Number SY0-501
File Name CompTIA Security+ Certification Exam.prepaway.SY0-501.2020-12-31.1e.922q.vcex
Size 13.86 Mb
Posted December 31, 2020
Downloads 163
Download CompTIA Security+ Certification Exam.prepaway.SY0-501.2020-12-31.1e.922q.vcex

How to open VCEX & EXAM Files?

Files with VCEX & EXAM extensions can be opened by ProfExam Simulator.

Purchase

Coupon: MASTEREXAM
With discount: 20%



 
 



Demo Questions

Question 1

A security administrator wants to implement strong security on the company smart phones and terminal servers located in the data center.  
INSTRUCTIONS  
Drag and drop the applicable controls to each asset type. 
Controls can be used multiple times and not all placeholders need to be filled.  
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button. 

Correct Answer: Exam simulator is required

 




Question 2

You have been tasked with designing a security plan for your company. 
INSTRUCTIONS 
Drag and drop the appropriate security controls on the floor plan. 
All objects must be used and all place holders must be filled. Order does not matter. 
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button. 

    

Correct Answer: Exam simulator is required

Cable locks - Adding a cable lock between a laptop and a desk prevents someone from picking it up and walking away 
Proximity badge + reader 
Safe is a hardware/physical security measure 
Mantrap can be used to control access to sensitive areas.  
CCTV can be used as video surveillance. 
Biometric reader can be used to control and prevent unauthorized access.  
Locking cabinets can be used to protect backup media, documentation and other physical artefacts.




Question 3

Which of the following would a security specialist be able to determine upon examination of a server’s certificate?

  • A: CA public key
  • B: Server private key
  • C: CSR
  • D: OID

Correct Answer: D




Question 4

A security analyst is diagnosing an incident in which a system was compromised from an external IP address. The socket identified on the firewall was traced to 207.46.130.0:6666. Which of the following should the security analyst do to determine if the compromised system still has an active connection? 

  • A: tracert
  • B: netstat
  • C: ping
  • D: nslookup

Correct Answer: B




Question 5

Multiple organizations operating in the same vertical want to provide seamless wireless access for their employees as they visit the other organizations. Which of the following should be implemented if all the organizations use the native 802.1x client on their mobile devices?

  • A: Shibboleth
  • B: RADIUS federation
  • C: SAML
  • D: OAuth
  • E: OpenID connect

Correct Answer: B

http://archive.oreilly.com/pub/a/wireless/2005/01/01/authentication.html




Question 6

Which of the following BEST describes an important security advantage yielded by implementing vendor diversity?

  • A: Sustainability
  • B: Homogeneity
  • C: Resiliency
  • D: Configurability

Correct Answer: C




Question 7

In a corporation where compute utilization spikes several times a year, the Chief Information Officer (CIO) has requested a cost-effective architecture to handle the variable capacity demand. Which of the following characteristics BEST describes what the CIO has requested?

  • A: Elasticity
  • B: Scalability
  • C: High availability
  • D: Redundancy

Correct Answer: A

Elasticity is defined as “the degree to which a system is able to adapt to workload changes by provisioning and de-provisioning resources in an autonomic manner, such that at each point in time the available resources match the current demand as closely as possible”.




Question 8

A security engineer is configuring a system that requires the X.509 certificate information to be pasted into a form field in Base64 encoded format to import it into the system. Which of the following certificate formats should the engineer use to obtain the information in the required format?

  • A: PFX
  • B: PEM
  • C: DER
  • D: CER

Correct Answer: B




Question 9

Which of the following attacks specifically impact data availability?

  • A: DDoS
  • B: Trojan
  • C: MITM
  • D: Rootkit

Correct Answer: A

Reference: https://www.netscout.com/what-is-ddos




Question 10

A security analyst is hardening a server with the directory services role installed. The analyst must ensure LDAP traffic cannot be monitored or sniffed and maintains compatibility with LDAP clients. Which of the following should the analyst implement to meet these requirements? (Choose two.)

  • A: Generate an X.509-compliant certificate that is signed by a trusted CA.
  • B: Install and configure an SSH tunnel on the LDAP server.
  • C: Ensure port 389 is open between the clients and the servers using the communication.
  • D: Ensure port 636 is open between the clients and the servers using the communication.
  • E: Remote the LDAP directory service role from the server.

Correct Answer: AD










CONNECT US

Facebook

Twitter

PROFEXAM WITH A 20% DISCOUNT

You can buy ProfExam with a 20% discount!



HOW TO OPEN VCEX AND EXAM FILES

Use ProfExam Simulator to open VCEX and EXAM files