[Q158-Q174] SY0-601 Free Update With 100% Exam Passing Guarantee [2021]

Share

SY0-601 Free Update With 100% Exam Passing Guarantee [2021]

[Sep-2021] Verified CompTIA Exam Dumps with SY0-601 Exam Study Guide

NEW QUESTION 158
A company recently added a DR site and is redesigning the network. Users at the DR site are having issues browsing websites.
INSTRUCTIONS
Click on each firewall to do the following:
Deny cleartext web traffic.
Ensure secure management protocols are used.
Resolve issues at the DR site.
The ruleset order cannot be modified due to outside constraints.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.



Answer:

Explanation:
See explanation below.
Explanation
Firewall 1:


DNS Rule - ANY --> ANY --> DNS --> PERMIT
HTTPS Outbound - 10.0.0.1/24 --> ANY --> HTTPS --> PERMIT
Management - ANY --> ANY --> SSH --> PERMIT
HTTPS Inbound - ANY --> ANY --> HTTPS --> PERMIT
HTTP Inbound - ANY --> ANY --> HTTP --> DENY
Firewall 2:


Firewall 3:


DNS Rule - ANY --> ANY --> DNS --> PERMIT
HTTPS Outbound - 192.168.0.1/24 --> ANY --> HTTPS --> PERMIT
Management - ANY --> ANY --> SSH --> PERMIT
HTTPS Inbound - ANY --> ANY --> HTTPS --> PERMIT
HTTP Inbound - ANY --> ANY --> HTTP --> DENY

 

NEW QUESTION 159
A security analyst is configuring a large number of new company-issued laptops. The analyst received the following requirements:
* The devices will be used internationally by staff who travel extensively.
* Occasional personal use is acceptable due to the travel requirements.
* Users must be able to install and configure sanctioned programs and productivity suites.
* The devices must be encrypted.
* The devices must be capable of operating in low-bandwidth environments.
Which of the following would provide the GREATEST benefit to the security posture of the devices?

  • A. Setting the antivirus DAT update schedule to weekly
  • B. Implementing application whitelisting
  • C. Requiring web traffic to pass through the on-premises content filter
  • D. Configuring an always-on VPN

Answer: A

 

NEW QUESTION 160
An organization that is located in a flood zone is MOST likely to document the concerns associated with the restoration of IT operation in a:

  • A. business continuity plan
  • B. disaster recovery plan.
  • C. communications plan.
  • D. continuity of operations plan

Answer: B

 

NEW QUESTION 161
A cybersecurity analyst needs to implement secure authentication to third-party websites without users' passwords. Which of the following would be the BEST way to achieve this objective?

  • A. SSO
  • B. OAuth
  • C. SAML
  • D. PAP

Answer: B

 

NEW QUESTION 162
A smart retail business has a local store and a newly established and growing online storefront. A recent storm caused a power outage to the business and the local ISP, resulting in several hours of lost sales and delayed order processing. The business owner now needs to ensure two things:
* Protection from power outages
* Always-available connectivity In case of an outage
The owner has decided to implement battery backups for the computer equipment Which of the following would BEST fulfill the owner's second need?

  • A. Purchase services from a cloud provider for high availability
    D Replace the business's wired network with a wireless network.
  • B. Lease a point-to-point circuit to provide dedicated access.
  • C. Connect the business router to its own dedicated UPS.

Answer: A

 

NEW QUESTION 163
A privileged user at a company stole several proprietary documents from a server. The user also went into the log files and deleted all records of the incident. The systems administrator has Just informed investigators that other log files are available for review. Which of the following did the administrator MOST likely configure that will assist the investigators?

  • A. The application logs
  • B. The log retention policy
  • C. The syslog server
  • D. Memory dumps

Answer: C

 

NEW QUESTION 164
Select the appropriate attack and remediation from each drop-down list to label the corresponding attack with its remediation.
INSTRUCTIONS
Not all attacks and remediation actions will be used.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:

Explanation:

 

NEW QUESTION 165
A cybersecurity analyst reviews the log files from a web server and sees a series of files that indicates a directory-traversal attack has occurred. Which of the following is the analyst MOST likely seeing?
A)

B)

C)

D)

  • A. Option D
  • B. Option B
  • C. Option A
  • D. Option C

Answer: B

 

NEW QUESTION 166
A security analyst is reviewing logs on a server and observes the following output:

Which of the following is the security analyst observing?

  • A. A keylogger attack
  • B. A password-spraying attack
  • C. A dictionary attack
  • D. A rainbow table attack

Answer: C

 

NEW QUESTION 167
An organization is concerned that is hosted web servers are not running the most updated version of the software. Which of the following would work BEST to help identify potential vulnerabilities?

  • A. nmp comptia, org -p 80 -aV
  • B. Hping3 -s comptia, org -p 80
  • C. Nc -1 -v comptia, org -p 80
  • D. nslookup -port=80 comtia.org

Answer: A

 

NEW QUESTION 168
A company needs to centralize its logs to create a baseline and have visibility on its security events. Which of the following technologies will accomplish this objective?

  • A. A next-generation firewall
  • B. A vulnerability scanner
  • C. Security information and event management
  • D. A web application firewall

Answer: C

 

NEW QUESTION 169
A small business office is setting up a wireless infrastructure with primary requirements centered around protecting customer information and preventing unauthorized access to the business network. Which of the following would BEST support the office's business needs? (Select TWO)

  • A. Changing the WiFi password every 30 days
  • B. Enabling MAC filtering
  • C. Installing a WIDS
  • D. Configuring access using WPA3
  • E. Installing WAPs with strategic placement
  • F. Reducing WiFi transmit power throughout the office

Answer: B,D

 

NEW QUESTION 170
A security analyst is reviewing logs on a server and observes the following output:

Which of the following is the security analyst observing?

  • A. A keylogger attack
  • B. A password-spraying attack
  • C. A dictionary attack
  • D. A rainbow table attack

Answer: C

 

NEW QUESTION 171
A company is implementing a new SIEM to log and send alerts whenever malicious activity is blocked by its antivirus and web content filters. Which of the following is the primary use case for this scenario?

  • A. Implementation of detective controls
  • B. Implementation of preventive controls
  • C. Implementation of deterrent controls
  • D. Implementation of corrective controls

Answer: C

 

NEW QUESTION 172
A company uses specially configured workstations tor any work that requires administrator privileges to its Tier 0 and Tier 1 systems. The company follows a strict process to harden systems immediately upon delivery.
Even with these strict security measures in place, an incident occurred from one of the workstations. The root cause appears to be that the SoC was tampered with or replaced. Which of the following MOST likely occurred?

  • A. Misconfigured BIOS
  • B. A downgrade attack
  • C. Fileless malware
  • D. A supply-chain attack
  • E. A logic bomb

Answer: D

 

NEW QUESTION 173
A security analyst needs to determine how an attacker was able to use User3 to gain a foothold within a company's network. The company's lockout policy requires that an account be locked out for a minimum of 15 minutes after three unsuccessful attempts. While reviewing the log files, the analyst discovers the following:

Which of the following attacks MOST likely occurred?

  • A. Brute-force
  • B. Password-spraying
  • C. Dictionary
  • D. Credential-stuffing

Answer: A

 

NEW QUESTION 174
......

Authentic Best resources for SY0-601 Online Practice Exam: https://www.testkingfree.com/CompTIA/SY0-601-practice-exam-dumps.html

SY0-601 Test Engine Practice Exam: https://drive.google.com/open?id=1mNkSwLh4TiROrwnUViwnpD7bd3gVsfam