Exam (elaborations)
6 views 0 purchase
- Course
-
COMPTIA
- Institution
-
COMPTIA
2022 COMPTIA SECURITY/SY0-601 BEST EXAM STUDY(100% Verified)A >>>>A security administrator suspects an employee has been emailing proprietary information to a competitor. Company policy requires the administrator to capture an exact copy of the employee's hard disk. Which of t...
[Show more]
Preview 4 out of 45 pages
View example
Preview 4 out of 45 pages
Add to cart
Add to cart
- Uploaded on June 6, 2023
- Number of pages 45
- Written in 2022/2023
- Type Exam (elaborations)
- Contains Questions & answers
Subjects
2022 comptia securitysy0 601 best exam study
Written for
- Institution
COMPTIA
- Education
COMPTIA
- Course
COMPTIA
All documents for this subject (704)
Follow
Brainboost
Member since 3 year 16 documents soldReviews received
1
1
2
Send Message
Content preview
2022 COMPTIA SECURITY/SY0-601 BEST EXAMSTUDY(100% Verified)A >>>>A security administrator suspects an employee has been emailing proprietaryinformation to a competitor. Company policy requires the administrator to capture anexact copy of the employee's hard disk.
Which of the following should the administrator use?
A. ddB. chmodC. dnsenumD. logger
THIS IS THE ORDER AS FOLLOWS:ssh-keygen -t rsassh-copy-id -i ~/.ssh/id_rsa.pub user@serverchmod 644 ~/.ssh/id_rsassh root@server >>>>DRAG AND DROP SIMULATION (SEE IMAGE)
Firewall 1:DNS Rule "" ANY --> ANY --> DNS --> PERMITHTTPS Outbound "" 10.0.0.1/24 --> ANY --> HTTPS --> PERMITManagement "" ANY --> ANY --> SSH --> PERMITHTTPS Inbound "" ANY --> ANY --> HTTPS --> PERMITHTTP Inbound "" ANY --> ANY --> HTTP --> DENY
Firewall 2: No changes should be made to this firewall
Firewall 3:DNS Rule "" ANY --> ANY --> DNS --> PERMITHTTPS Outbound "" 192.168.0.1/24 --> ANY --> HTTPS --> PERMITManagement "" ANY --> ANY --> SSH --> PERMITHTTPS Inbound "" ANY --> ANY --> HTTPS --> PERMITHTTP Inbound "" ANY --> ANY --> HTTP --> DENY >>>>DROP DOWN SIMULATION(SEE IMAGE)
See IMAGE >>>>DRAG AND DROP SIMULATION (SEE ANSWERS IN IMAGE)
DF >>>>Which of the following will MOST likely adversely impact the operations ofunpatched traditional programmable-logic controllers, running a back-end LAMP serverand OT systems with human-management interfaces that are accessible over theInternet via a web interface? (Choose two.)
A. Cross-site scriptingB. Data exfiltrationC. Poor system logging
,D. Weak encryptionE. SQL injectionF. Server-side request forgery
A >>>>A company recently transitioned to a strictly BYOD culture due to the cost ofreplacing lost or damaged corporate-owned mobile devices.
Which of the following technologies would be BEST to balance the BYOD culture whilealso protecting the company's data?
A. ContainerizationB. GeofencingC. Full-disk encryptionD. Remote wipe
D >>>>A Chief Security Office's (CSO's) key priorities are to improve preparation,response, and recovery practices to minimize system downtime and enhanceorganizational resilience to ransomware attacks.
Which of the following would BEST meet the CSO's objectives?
A. Use email-filtering software and centralized account management, patch high-risksystems, and restrict administration privileges on fileshares.
B. Purchase cyber insurance from a reputable provider to reduce expenses during anincident.
C. Invest in end-user awareness training to change the long-term culture and behaviorof staff and executives, reducing the organization's susceptibility to phishing attacks.
D. Implement application whitelisting and centralized event-log management, andperform regular testing and validation of full backups.
AC >>>>A network engineer has been asked to investigate why several wirelessbarcode scanners and wireless computers in a warehouse have intermittent connectivityto the shipping server. The barcode scanners and computers are all on forklift trucksand move around the warehouse during their regular use.
Which of the following should the engineer do to determine the issue? (Choose two.)
A. Perform a site surveyB. Deploy an FTK ImagerC. Create a heat mapD. Scan for rogue access pointsE. Upgrade the security protocolsF. Install a captive portal
,C >>>>Which of the following is MOST likely to outline the roles and responsibilities ofdata controllers and data processors?
A. SSAE SOC 2B. PCI DSSC. GDPRD. ISO 31000
C >>>>Phishing and spear-phishing attacks have been occurring more frequentlyagainst a company's staff.
Which of the following would MOST likely help mitigate this issue?
A. DNSSEC and DMARCB. DNS query loggingC. Exact mail exchanger records in the DNSD. The addition of DNS conditional forwarders
EF >>>>On which of the following is the live acquisition of data for forensic analysisMOST dependent? (Choose two.)
A. Data accessibilityB. Legal holdC. Cryptographic or hash algorithmD. Data retention legislationE. Value and volatility of dataF. Right-to-audit clauses
B >>>>Which of the following incident response steps involves actions to protect criticalsystems while maintaining business operations?
A. InvestigationB. ContainmentC. RecoveryD. Lessons learned
B >>>>A security auditor is reviewing vulnerability scan data provided by an internalsecurity team.
Which of the following BEST indicates that valid credentials were used?
A. The scan results show open ports, protocols, and services exposed on the targethostB. The scan enumerated software versions of installed programsC. The scan produced a list of vulnerabilities on the target host
, D. The scan identified expired SSL certificates
B >>>>Which of the following BEST explains the difference between a data owner anda data custodian?
A. The data owner is responsible for adhering to the rules for using the data, while thedata custodian is responsible for determining the corporate governance regarding thedata
B. The data owner is responsible for determining how the data may be used, while thedata custodian is responsible for implementing the protection to the data
C. The data owner is responsible for controlling the data, while the data custodian isresponsible for maintaining the chain of custody when handling the data
D. The data owner grants the technical permissions for data access, while the datacustodian maintains the database access controls to the data
D >>>>A network engineer needs to build a solution that will allow guests at thecompany's headquarters to access the Internet via WiFi. This solution should not allowaccess to the internal corporate network, but it should require guests to sign off on theacceptable use policy before accessing the Internet.
Which of the following should the engineer employ to meet these requirements?
A. Implement open PSK on the APsB. Deploy a WAFC. Configure WIPS on the APsD. Install a captive portal
D >>>>Based on the analyst's findings, which of the following attacks is beingexecuted?
A. Credential harvestingB. KeyloggerC. Brute-forceD. Spraying
C >>>>Which of the following cloud models provides clients with servers, storage, andnetworks but nothing else?
A. SaaSB. PaaSC. IaaSD. DaaS