Comptia Security+ (Sy0-501) Practice Questions
Comptia Security+ (Sy0-501) Practice Questions
Comptia Security+ (Sy0-501) Practice Questions
Practice Questions
Question 1
Joe, a security analyst, is asked by a co-worker, "What is this AAA thing all about in the
security world? Sounds like something I can use for my car." Which of the following terms
should Joe discuss in his response to his co-worker? (Select THREE).
A. Accounting
B. Accountability
C. Authorization
D. Authentication
E. Access
F. Agreement
Question 2
A system administrator is configuring accounts on a newly established server. Which of
the following characteristics BEST differentiates service accounts from other types of
accounts?
Question 3
Recently, a company has been facing an issue with shoulder surfing. Which of the
following safeguards would help with this?
A. Screen filters
B. Biometric authentication
C. Smart cards
D. Video cameras
Question 4
The process of presenting a user ID to a validating system is known as:
A. authorization.
B. authentication.
C. identification.
D. single sign-on.
Question 5
An input field that is accepting more data than has been allocated for it in memory is an
attribute of:
A. buffer overflow.
B. memory leak.
C. cross-site request forgery.
D. resource exhaustion.
Question 6
Which of the following if used would BEST reduce the number of successful phishing
attacks?
A. Two-factor authentication
B. Application layer firewall
C. Mantraps
D. User training
Question 2
Joe, an employee, knows he is going to be fired in three days. Which of the following
characterizations describes the employee?
A. An insider threat
B. A competitor
C. A hacktivist
D. A state actor
Question 3
The IT department receives a call one morning about users being unable to access files on
the network shared drives. An IT technician investigates and determines the files became
encrypted at 12:00 a.m. While the files are being recovered from backups, one of the IT
supervisors realizes the day is the birthday of a technician who was fired two months
prior. Which of the following describes what MOST likely occurred?
Question 4
An organization has a policy in place that states the person who approves firewall
controls/changes cannot be the one implementing the changes. Which of the following
describes this policy?
A. Change management
B. Job rotation
C. Separation of duties
D. Least privilege
Question 5
Which of the following would be the BEST method to prevent the physical theft of staff
laptops at an open-plan bank location with a high volume of customers each day?
A. Colocation
B. Cold
C. Hot
D. Warm
Question 7
A security manager needed to protect a high-security datacenter, so the manager installed
an access control vestibule that can detect an employee's heartbeat, weight, and badge.
Which of the following did the security manager implement?
A. A physical control
B. A corrective control
C. A compensating control
D. A managerial control