Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

CompTIA Security+ (SY0-601) Practice Exam 1 QUESTIONS WITH ANSWERS

Beoordeling
-
Verkocht
-
Pagina's
80
Cijfer
A+
Geüpload op
19-01-2026
Geschreven in
2025/2026

CompTIA Security+ (SY0-601) Practice Exam 1 QUESTIONS WITH ANSWERS

Instelling
CompTIA Security+ SY0-601
Vak
CompTIA Security+ SY0-601

Voorbeeld van de inhoud

CompTIA Security+ (SY0-601) Practice |\ |\ |\ |\




Exam 1 QUESTIONS WITH ANSWERS |\ |\ |\ |\




Dion Training wants to install a new accounting system
|\ |\ |\ |\ |\ |\ |\ |\ |\



and is considering moving to a cloud-based solution to
|\ |\ |\ |\ |\ |\ |\ |\ |\



reduce cost, reduce the information technology overhead
|\ |\ |\ |\ |\ |\ |\



costs, improve reliability, and improve availability. Your
|\ |\ |\ |\ |\ |\ |\



Chief Information Officer is supportive of this move since
|\ |\ |\ |\ |\ |\ |\ |\ |\



it will be more fiscally responsible. Still, the Chief Risk
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\



Officer is concerned with housing all of the company's
|\ |\ |\ |\ |\ |\ |\ |\ |\



confidential financial data in a cloud provider's network |\ |\ |\ |\ |\ |\ |\ |\



that might be shared with other companies. Since the
|\ |\ |\ |\ |\ |\ |\ |\ |\



Chief Information Officer is determined to move to the
|\ |\ |\ |\ |\ |\ |\ |\ |\



cloud, what type of cloud-based solution would you
|\ |\ |\ |\ |\ |\ |\ |\



recommend to account for the Chief Risk Officer's |\ |\ |\ |\ |\ |\ |\ |\



concerns?
PaaS in a hybrid cloud|\ |\ |\ |\




SaaS in a private cloud
|\ |\ |\ |\




SaaS in a public cloud|\ |\ |\ |\




PaaS in a community cloud - CORRECT ANSWERS ✔✔SaaS
|\ |\ |\ |\ |\ |\ |\ |\



in a private cloud
|\ |\ |\ |\




A SaaS (Software as a Service) solution best describes an
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\



accounting system or software used as part of a cloud |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



service. This meets the CIO's requirements. To mitigate
|\ |\ |\ |\ |\ |\ |\ |\

,the concerns of the Chief Risk Officer, you should use a
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



private cloud solution. This type of solution ensures that
|\ |\ |\ |\ |\ |\ |\ |\ |\



the cloud provider does not comingle your data with other
|\ |\ |\ |\ |\ |\ |\ |\ |\



customers' data and providers dedicated servers and
|\ |\ |\ |\ |\ |\ |\ |\



resources for your company's use only. |\ |\ |\ |\ |\




You are developing a containment and remediation
|\ |\ |\ |\ |\ |\ |\



strategy to prevent the spread of an APT within your
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\



network. Your plan suggests creating a mirror of the
|\ |\ |\ |\ |\ |\ |\ |\ |\



company's databases, routing all externally sourced |\ |\ |\ |\ |\ |\



network traffic to it, and gradually updating with pseudo-
|\ |\ |\ |\ |\ |\ |\ |\



realistic data to confuse and deceive the APT as they
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\



attempt to exfiltrate the data. Once the attacker has
|\ |\ |\ |\ |\ |\ |\ |\ |\



downloaded the corrupted database, your company |\ |\ |\ |\ |\ |\



would then conduct remediation actions on the network
|\ |\ |\ |\ |\ |\ |\ |\



and restore the correct database information to the
|\ |\ |\ |\ |\ |\ |\ |\



production system. Which of the following types of |\ |\ |\ |\ |\ |\ |\ |\



containment strategies does the plan utilize? |\ |\ |\ |\ |\




Isolation-based containment by disconnecting the APT |\ |\ |\ |\ |\ |\



from the affected network
|\ |\ |\




Segmentation-based containment that deceives the |\ |\ |\ |\ |\



attack into believing their attack was successful
|\ |\ |\ |\ |\ |\




Segmentation-based containment disrupts the APT by |\ |\ |\ |\ |\ |\



using a hack-back approach
|\ |\ |\




Isolation-based containment by removing the affect - |\ |\ |\ |\ |\ |\ |\



CORRECT ANSWERS ✔✔Segmentation-based containment |\ |\ |\



that deceives the attack into believing their attack was
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\



successful

,There are two types of containment: segmentation and
|\ |\ |\ |\ |\ |\ |\ |\



isolation. This is an example of a segmentation-based
|\ |\ |\ |\ |\ |\ |\ |\



containment strategy that utilizes deception. |\ |\ |\ |\ |\



Segmentation-based containment is a means of achieving |\ |\ |\ |\ |\ |\



the isolation of a host or group of hosts using network
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



technologies and architecture. As opposed to completely |\ |\ |\ |\ |\ |\ |\



isolating the hosts, you might configure the protected
|\ |\ |\ |\ |\ |\ |\ |\



segment to deceive him or her into thinking the attack is
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



progressing successfully, such as in the database |\ |\ |\ |\ |\ |\ |\



modification example. The scenario is not a hack-back |\ |\ |\ |\ |\ |\ |\ |\



approach since the APT is not directly attacked, only |\ |\ |\ |\ |\ |\ |\ |\ |\



deceived. Isolation-based containment involves removing |\ |\ |\ |\ |\



an affected component from whatever larger environment
|\ |\ |\ |\ |\ |\



it is a part of. In this scenario, the original database was
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



never isolated from the network, nor were any other
|\ |\ |\ |\ |\ |\ |\ |\ |\



affected assets during the deception. |\ |\ |\ |\




Which of the following features is supported by Kerberos
|\ |\ |\ |\ |\ |\ |\ |\ |\



but not by RADIUS?
|\ |\ |\




XML for cross-platform interoperability
|\ |\ |\




Tickets used to identify authenticated users
|\ |\ |\ |\ |\




Single sign-on capability |\ |\




Services for authentication - CORRECT ANSWERS |\ |\ |\ |\ |\ |\



✔✔Tickets used to identify authenticated users |\ |\ |\ |\ |\

, Whether you learned the in-depth details of each of these
|\ |\ |\ |\ |\ |\ |\ |\ |\



protocols during your studies or not, you should be able
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



to answer this question by remembering that Kerberos is
|\ |\ |\ |\ |\ |\ |\ |\ |\



all about 'tickets.' Kerberos uses a system of tickets to
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\



allow nodes to communicate over a non-secure network
|\ |\ |\ |\ |\ |\ |\ |\



and securely prove their identity. Kerberos is a computer
|\ |\ |\ |\ |\ |\ |\ |\ |\



network authentication protocol that works based on
|\ |\ |\ |\ |\ |\ |\



tickets to allow nodes communicating over a non-secure
|\ |\ |\ |\ |\ |\ |\ |\



network to prove their identity to one another in a secure
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\



manner. Kerberos is used in Windows Active Directory
|\ |\ |\ |\ |\ |\ |\ |\



domains for authentication. Single sign-on (SSO) is a type
|\ |\ |\ |\ |\ |\ |\ |\



of mutual authentication for multiple services that can
|\ |\ |\ |\ |\ |\ |\ |\ |\



accept the credential from one domain or service as
|\ |\ |\ |\ |\ |\ |\ |\ |\



authentication for other services. The Remote |\ |\ |\ |\ |\ |\



Authentication Dial-in User Service (RADIUS) is used to |\ |\ |\ |\ |\ |\ |\ |\



manage remote and wireless authentication
|\ |\ |\ |\ |\



infrastructure. Users supply authentication information to |\ |\ |\ |\ |\ |\



RADIUS client devices, such as wireless access points.
|\ |\ |\ |\ |\ |\ |\ |\



The client device then passes the authentication data to
|\ |\ |\ |\ |\ |\ |\ |\ |\



an AAA (Authentication, Authorization, and Accounting)
|\ |\ |\ |\ |\ |\



server that processes the request.
|\ |\ |\ |\




Which type of agreement between companies and
|\ |\ |\ |\ |\ |\ |\



employees is used as a legal basis for protecting |\ |\ |\ |\ |\ |\ |\ |\ |\



information assets? |\




ISA
NDA
SLA

Geschreven voor

Instelling
CompTIA Security+ SY0-601
Vak
CompTIA Security+ SY0-601

Documentinformatie

Geüpload op
19 januari 2026
Aantal pagina's
80
Geschreven in
2025/2026
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

$25.49
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
EXAMSTUDYPLUG Stanford University
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
355
Lid sinds
3 jaar
Aantal volgers
107
Documenten
20474
Laatst verkocht
1 week geleden
GRADE BUDDY

Welcome to My Page! Are you looking for high-quality study resources to ace your exams or better understand your coursework? You've come to the right place! I'm passionate about sharing my knowledge and helping students succeed academically. Here, you'll find a wide range of well-organized notes, study guides, and helpful materials across various subjects, including Maths ,nursig, Biology, History, etc.. Each resource is carefully crafted with detailed explanations, clear examples, and relevant key points to help simplify complex concepts. Whether you're preparing for a test, reviewing lectures, or need extra support, my resources are designed to make your learning experience smoother and more effective. Let me be a part of your academic journey, and feel free to reach out if you have any questions or need personalized assistance!

Lees meer Lees minder
4.5

238 beoordelingen

5
161
4
51
3
14
2
5
1
7

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen