CompTIA Security+ Certification Exam (SY0-301) Sample Questions:
1. A software developer is responsible for writing the code on an accounting application. Another software developer is responsible for developing code on a system in human resources. Once a year they have to switch roles for several weeks. Which of the following practices is being implemented?
A) Mandatory vacations
B) Job rotation
C) Separation of duties
D) Least privilege
2. The software developer is responsible for writing the code and promoting from the development network to the quality network. The network administrator is responsible for promoting code to the production application servers. Which of the following practices are they following to ensure application integrity?
A) Job rotation
B) Separation of duties
C) Implicit deny
D) Least privilege
3. Ann, a security technician, is reviewing the IDS log files. She notices a large number of alerts for multicast packets from the switches on the network. After investigation, she discovers that this is normal activity for her network. Which of the following BEST describes these results?
A) False negatives
B) True negatives
C) False positives
D) True positives
4. The system administrator notices that their application is no longer able to keep up with the large amounts of traffic their server is receiving daily. Several packets are dropped and sometimes the server is taken offline. Which of the following would be a possible solution to look into to ensure their application remains secure and available?
A) Data Loss Prevention
B) Cloud computing
C) HSM
D) Full disk encryption
5. An IT auditor tests an application as an authenticated user. This is an example of which of the following types of testing?
A) Gray box
B) White box
C) Penetration
D) Black box
Solutions:
| Question # 1 Answer: B | Question # 2 Answer: B | Question # 3 Answer: C | Question # 4 Answer: B | Question # 5 Answer: A |
We're so confident of our products that we provide no hassle product exchange.


By Jared

