[Aug-2021] Pass CompTIA SY0-601 Exam in First Attempt Guaranteed!
Full SY0-601 Practice Test and 412 unique questions with explanations waiting just for you, get it now!
NEW QUESTION 139
A pharmaceutical sales representative logs on to a laptop and connects to the public WiFi to check emails and update reports. Which of the following would be BEST to prevent other devices on the network from directly accessing the laptop? (Choose two.)
- A. A DLP solution
- B. A VPN
- C. Antivirus software
- D. A host-based firewall
- E. Full disk encryption
- F. Trusted Platform Module
Answer: D,F
NEW QUESTION 140
A security analyst is reviewing the output of a web server log and notices a particular account is attempting to transfer large amounts of money:
Which of the following types of attack is MOST likely being conducted?
- A. Session replay
- B. API
- C. CSRF
- D. SQLi
Answer: A
NEW QUESTION 141
Which of the following organizational policies are MOST likely to detect fraud that is being conducted by existing employees? (Select TWO).
- A. Separation of duties
- B. Job rotation
- C. Background checks
- D. Acceptable use
- E. Mandatory vacation
- F. Offboarding
Answer: B,E
NEW QUESTION 142
An organization is having difficulty correlating events from its individual AV. EDR. DLP. SWG. WAF. MOM. HIPS, and CASB systems. Which of the following is the BEST way to improve the situation?
- A. Utilize a SIEM to centralize togs and dashboards.
- B. Implement a new syslog/NetFlow appliance.
- C. Remove expensive systems that generate few alerts.
- D. Modify the systems to alert only on critical issues.
Answer: A
NEW QUESTION 143
After a phishing scam for a user's credentials, the red team was able to craft a payload to deploy on a server.
The attack allowed the installation of malicious software that initiates a new remote session. Which of the following types of attacks has occurred?
- A. Directory traversal
- B. Privilege escalation
- C. Session replay
- D. Application programming interface
Answer: B
NEW QUESTION 144
A security analyst is performing a forensic investigation compromised account credentials. Using the Event Viewer, the analyst able to detect the following message, ''Special privileges assigned to new login.'' Several of these messages did not have a valid logon associated with the user before these privileges were assigned.
Which of the following attacks is MOST likely being detected?
- A. Pass-the-hash
- B. Session replay
- C. Buffer overflow
- D. Cross-site scripting
Answer: A
NEW QUESTION 145
Which of the following would be the BEST method for creating a detailed diagram of wireless access points and hot-spots?
- A. White-box testing
- B. A drone/UAV
- C. Footprinting
- D. Pivoting
Answer: C
NEW QUESTION 146
A security administrator needs to inspect in-transit files on the enterprise network to search for Pll, credit card data, and classification words. Which of the following would be the BEST to use?
- A. IDS solution
- B. EDR solution
- C. HIPS software solution
- D. Network DLP solution
Answer: D
NEW QUESTION 147
A security audit has revealed that a process control terminal is vulnerable to malicious users installing and executing software on the system. The terminal is beyond end-of-life support and cannot be upgraded, so it is placed on a protected network segment. Which of the following would be MOST effective to implement to further mitigate the reported vulnerability?
- A. DLP rules on the terminal
- B. Application whitelisting
- C. DNS sinkholing
- D. An IP blacklist
Answer: B
NEW QUESTION 148
A network engineer has been asked to investigate why several wireless barcode scanners and wireless computers in a warehouse have intermittent connectivity to the shipping server. The barcode scanners and computers are all on forklift trucks and move around the warehouse during their regular use. Which of the following should the engineer do to determine the issue? (Choose two.)
- A. Create a heat map
- B. Deploy an FTK Imager
- C. Scan for rogue access points
- D. Install a captive portal
- E. Upgrade the security protocols
- F. Perform a site survey
Answer: A,F
NEW QUESTION 149
After segmenting the network, the network manager wants to control the traffic between the segments. Which of the following should the manager use to control the network traffic?
- A. A VPN
- B. An ACL
- C. A DMZ
- D. A VLAN
Answer: D
NEW QUESTION 150
A Chief Executive Officer (CEO) is dissatisfied with the level of service from the company's new service provider. The service provider is preventing the CEO.
from sending email from a work account to a personal account. Which of the following types of service providers is being used?
- A. Master managed service provider
- B. Telecommunications service provider
- C. Managed security service provider
- D. Cloud service provider
Answer: D
NEW QUESTION 151
Which of the following would be the BEST resource lor a software developer who is looking to improve secure coding practices for web applications?
- A. Third-party libraries
- B. NIST CSF
- C. Vulnerability scan results
- D. OWASP
Answer: D
NEW QUESTION 152
Given the following logs:
Which of the following BEST describes the type of attack that is occurring?
- A. Password spraying
- B. Dictionary
- C. Pass-the-hash
- D. Rainbow table
Answer: A
NEW QUESTION 153
A security analyst is performing a forensic investigation compromised account credentials. Using the Event Viewer, the analyst able to detect the following message, ''Special privileges assigned to new login.'' Several of these messages did not have a valid logon associated with the user before these privileges were assigned. Which of the following attacks is MOST likely being detected?
- A. Pass-the-hash
- B. Session replay
- C. Buffer overflow
- D. Cross-site scripting
Answer: A
NEW QUESTION 154
A security engineer is setting up passwordless authentication for the first time.
INSTRUCTIONS
Use the minimum set of commands to set this up and verify that it works. Commands cannot be reused.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
Answer:
Explanation:

NEW QUESTION 155
An analyst needs to identify the applications a user was running and the files that were open before the user's computer was shut off by holding down the power button. Which of the following would MOST likely contain that information?
- A. NetFlow
- B. NGFW
- C. RAM
- D. Pagefile
Answer: A
NEW QUESTION 156
During an incident response, a security analyst observes the following log entry on the web server.
Which of the following BEST describes the type of attack the analyst is experience?
- A. Directory traversal
- B. Cross-site scripting
- C. SQL injection
- D. Pass-the-hash
Answer: B
NEW QUESTION 157
A security analyst is reviewing logs on a server and observes the following output:
Which of the following is the security analyst observing?
- A. A keylogger attack
- B. A password-spraying attack
- C. A dictionary attack
- D. A rainbow table attack
Answer: C
NEW QUESTION 158
Which of the following algorithms has the SMALLEST key size?
- A. AES
- B. RSA
- C. DES
- D. Twofish
Answer: D
NEW QUESTION 159
An organization with a low tolerance for user inconvenience wants to protect laptop hard drives against loss or data theft. Which of the following would be the MOST acceptable?
- A. HSM
- B. DLP
- C. SED
- D. TPM
Answer: C
NEW QUESTION 160
A company has been experiencing very brief power outages from its utility company over the last few months. These outages only last for one second each time. The utility company is aware of the issue and is working to replace a faulty transformer. Which of the following BEST describes what the company should purchase to ensure its critical servers and network devices stay online?
- A. Dual power supplies
- B. A generator
- C. A UPS
- D. APDU
Answer: C
NEW QUESTION 161
In which of the following risk management strategies would cybersecurity insurance be used?
- A. Mitigation
- B. Avoidance
- C. Transference
- D. Acceptance
Answer: C
NEW QUESTION 162
Which of the following would be BEST to establish between organizations to define the responsibilities of each party outline the key deliverables and include monetary penalties for breaches to manage third-party risk?
- A. An ARO
- B. An MOU
- C. A BPA
- D. An SLA
Answer: B
NEW QUESTION 163
......
Prepare for your CompTIA certification with the updated FreePdfDump SY0-601 exam questions: https://drive.google.com/open?id=1w2CpDF6dIGAuxrGb8cJvKWFSv-Rk1sho
Get Latest SY0-601 Dumps Exam Questions in here: https://www.freepdfdump.top/SY0-601-valid-torrent.html

