Exam2pass
0 items Sign In or Register
  • Home
  • IT Exams
  • Guarantee
  • FAQs
  • Reviews
  • Contact Us
  • Demo
Exam2pass > CompTIA > CompTIA Certifications > SY0-601 > SY0-601 Online Practice Questions and Answers

SY0-601 Online Practice Questions and Answers

Questions 4

A Chief Information Officer is concerned about employees using company-issued laptops lo steal data when accessing network shares. Which of the following should the company Implement?

A. DLP

B. CASB

C. HIDS

D. EDR

E. UEFI

Buy Now

Correct Answer: A

Chmod removes the setuido permission, that is, it removes the S bit. Setuido is the specific permission, but it is removed with Chmod.

https://www.cbtnuggets.com/blog/technology/system-admin/linux-file-permissions-understanding-setuid-setgid-and-the-sticky-bit

Questions 5

The process of passively gathering information prior to launching a cyberattack is called:

A. tailgating.

B. reconnaissance.

C. pharming

D. prepending

Buy Now

Correct Answer: B

Questions 6

Which of the following terms should be included in a contract to help a company monitor the ongoing security maturity of a new vendor?

A. A right-to-audit clause allowing for annual security audits

B. Requirements for event logs to be kept for a minimum of 30 days

C. Integration of threat intelligence in the company's AV

D. A data-breach clause requiring disclosure of significant data loss

Buy Now

Correct Answer: A

The right-to-audit clause in a contract would enable the company to perform annual security audits on the vendor. This clause gives the company the ability to monitor the ongoing security practices and maturity of the vendor. By conducting security audits, the company can assess the vendor's compliance with security requirements, identify potential security risks, and ensure that the vendor is implementing appropriate security measures. This is a common practice to maintain oversight and ensure security alignment between the company and its vendors.

Questions 7

A root cause analysis reveals that a web application outage was caused by one of the company's developers uploading a newer version of the third-party libraries that were shared among several applications. Which of the following implementations would be BEST to prevent the issue from reoccurring?

A. CASB

B. SWG

C. Containerization

D. Automated failover

Buy Now

Correct Answer: C

Containerization is defined as a form of operating system virtualization, through which applications are run in isolated user spaces called containers, all using the same shared operating system (OS).

Questions 8

A company provides mobile devices to its users to permit access to email and enterprise applications. The company recently started allowing users to select from several different vendors and device models. When configuring the MDM, which of the following is a key security implication of this heterogeneous device approach?

A. The most common set of MDM configurations will become the effective set of enterprise mobile security controls.

B. All devices will need to support SCEP-based enrollment; therefore, the heterogeneity of the chosen architecture may unnecessarily expose private keys to adversaries.

C. Certain devices are inherently less secure than others, so compensatory controls will be needed to address the delta between device vendors.

D. MDMs typically will not support heterogeneous deployment environments, so multiple MDMs will need to be installed and configured.

Buy Now

Correct Answer: C

A. incorrect, there cannot be a "common" configuration profile applied to different vendor devices, each device vendor will need a different profile configured for it. B. incorrect, SCEP-based is the most common type of enrollment, if this were true, all MDM certificates would unnecessarily be exposed.

C. correct, the compensating control would be a baseline mdm profile for each vendor (IOS, Android, Samsung, etc.)

D. incorrect, MDMs do in fact support heterogeneous deployments, minimum most MDM's will support IOS and Android.

Device enrollment with Intune https://docs.microsoft.com/en-us/mem/intune/user-help/use-managed-devices-to-get-work-done

SCEP Information https://docs.microsoft.com/en-us/mem/intune/protect/certificates-configure

Questions 9

A Chief Information Security Officer (CISO) is evaluating the dangers involved in deploying a new ERP system for the company. The CISO categorizes the system, selects the controls that apply to the system, implements the controls, and then assesses the success of the controls before authorizing the system. Which of the following is the CISO using to evaluate the environment for this new ERP system?

A. The Diamond Model of Intrusion Analysis

B. CIS Critical Security Controls

C. NIST Risk Management Framework

D. ISO 27002

Buy Now

Correct Answer: C

The NIST Risk Management Framework (RMF) is a process for evaluating the security of a system and implementing controls to reduce potential risks associated with it. The RMF process involves categorizing the system, selecting the controls that apply to the system, implementing the controls, and then assessing the success of the controls before authorizing the system. For more information on the NIST Risk Management Framework and other security processes, refer to the CompTIA Security+ SY0-601 Official Text Book and Resources.

Questions 10

Which of the following is the MOST likely reason for securing an air-gapped laboratory HVAC system?

A. To avoid data leakage

B. To protect surveillance logs

C. To ensure availability

D. To facilitate third-party access

Buy Now

Correct Answer: C

"HVACKer attacks are only useful for relaying commands into an air-gapped network, but not for stealing data. While malware can control a computer's heat emissions, *HVAC units are not equipped with enough accurate temperature sensors to pick up data* from a computer's almost indiscernible heat emissions."

Questions 11

Which biometric error would allow an unauthorized user to access a system?

A. False acceptance

B. False entrance

C. False rejection

D. False denial

Buy Now

Correct Answer: A

False Acceptance - There are only two metrics that are used to determine the performance of biometrics: FAR (False Acceptance Rate) and FRR (False Rejection Rate). False Acceptance Rate is a metric for biometric performance that determines the number of instances where unauthorized persons were incorrectly authorized. For this question, a biometric error would mean that someone was authorized when they weren't supposed to be authorized.

Questions 12

A marketing coordinator is trying to access a social media application on a company laptop but is getting blocked. The coordinator opens a help desk ticket to report the issue. Which of the following documents should a security analyst review to determine whether accessing social media applications on a company device is permitted?

A. Incident response policy

B. Business continuity policy

C. Change management policy

D. Acceptable use policy

Buy Now

Correct Answer: D

The acceptable use policy (AUP) defines the rules and guidelines for using company resources, including computers, laptops, and other devices. It typically specifies what activities are allowed and prohibited on company devices, such as accessing social media applications. By reviewing the AUP, a security analyst can determine whether accessing social media applications on a company device is permitted or not.

Questions 13

HOTSPOT

You received the output of a recent vulnerability assessment. Review the assessment and scan output and determine the appropriate remedialion(s} 'or choose devices.

Remediation options may be selected multiple times, and some devices may require more than one remediation.

Hot Area:

Buy Now

Correct Answer:

Exam Code: SY0-601
Exam Name: CompTIA Security+
Last Update: May 31, 2026
Questions: 1334

PDF (Q&A)

$45.99
ADD TO CART

VCE

$49.99
ADD TO CART

PDF + VCE

$59.99
ADD TO CART

Exam2Pass----The Most Reliable Exam Preparation Assistance

There are tens of thousands of certification exam dumps provided on the internet. And how to choose the most reliable one among them is the first problem one certification candidate should face. Exam2Pass provide a shot cut to pass the exam and get the certification. If you need help on any questions or any Exam2Pass exam PDF and VCE simulators, customer support team is ready to help at any time when required.

Home | Guarantee & Policy |  Privacy & Policy |  Terms & Conditions |  How to buy |  FAQs |  About Us |  Contact Us |  Demo |  Reviews

2026 Copyright @ exam2pass.com All trademarks are the property of their respective vendors. We are not associated with any of them.