CompTIA Security+ - SY0-601무료 덤프문제 풀어보기
An organization wants to reduce the likelihood that a data breach could result in reputational, financial, or regulatory consequences. The organization needs an enterprise-wide solution that does not require new technology or specialized roles. Which of the following describes the best way to achieve these goals?
정답: C
A security analyst locates a potentially malicious video file on a server and needs to identify both the creation date and the file's creator. Which of the following actions would most likely give the security analyst the information required?
정답: D
An organization is concerned that its hosted web servers are not running the most updated version of the software. Which of the following would work BEST to help identify potential vulnerabilities?
정답: A
A company is developing a critical system for the government and storing project information on a fileshare. Which of the following describes how this data will most likely be classified? (Select two).
정답: B,C
A security engineer is concerned the strategy for detection on endpoints is too heavily dependent on previously defined attacks. The engineer wants a tool that can monitor for changes to key files and network traffic for the device. Which of the following tools should the engineer select?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
A security analyst is investigating a report from a penetration test. During the penetration test, consultants were able to download sensitive data from a back-end server. The back-end server was exposing an API that should have only been available from the company's mobile application. After reviewing the back-end server logs, the security analyst finds the following entries:

Which of the following is the most likely cause of the security control bypass?

Which of the following is the most likely cause of the security control bypass?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
A malicious actor compromised an entire cluster by exploiting a zero-day vulnerability in a unique container. The malicious actor then engaged in a lateral movement and compromised other containers and the host system. Which of the following container security practices has the GREATEST chance of preventing this attack from reoccurring?
정답: B
Which of the following can be used to detect a hacker who is stealing company data over port 80?
정답: A
설명: (Fast2test 회원만 볼 수 있음)
The Chief Information Security Officer (CISO) asks a security analyst to install an OS update to a production VM that has a 99% uptime SLA.
The CISO tells the analyst the installation must be done as quickly as possible. Which of the following courses of action should the security analyst take first?
The CISO tells the analyst the installation must be done as quickly as possible. Which of the following courses of action should the security analyst take first?
정답: A
Which of the following cryptographic concepts would a security engineer utilize while implementing non-repudiation? (Select TWO)
정답: C,F
설명: (Fast2test 회원만 볼 수 있음)
The Chief Information Security Officer (CISO) wants a product manager to include the following tasks as part of the deployment plans:
* Delete test accounts
* Delete test data
* Share administrative passwords securely during the transition to production.
Which of the following concepts will best enable the product manager to incorporate these tasks?
* Delete test accounts
* Delete test data
* Share administrative passwords securely during the transition to production.
Which of the following concepts will best enable the product manager to incorporate these tasks?
정답: B
A security department wants to conduct an exercise that will make many experimental changes to the main virtual server After the exercise is completed, the IT director would like to be able to roll Sack to the state prior to the exercise. Which of the following backup types will allow for the fastest rollback?
정답: C
A network administrator needs to determine Ihe sequence of a server farm's logs. Which of the following should the administrator consider? (Select TWO).
정답: B,E
설명: (Fast2test 회원만 볼 수 있음)
Which of the following involves embedding malware in routers procured from a third-party vendor?
정답: D