Free CompTIA SY0-701 Exam Questions (page: 22)

A security analyst is evaluating a SaaS application that the human resources department would like to implement. The analyst requests a SOC 2 report from the SaaS vendor. Which of the following processes is the analyst most likely conducting?

  1. Internal audit
  2. Penetration testing
  3. Attestation
  4. Due diligence

Answer(s): D



Which of the following is used to conceal credit card information in a database log file?

  1. Tokenization
  2. Masking
  3. Hashing
  4. Obfuscation

Answer(s): B



SIMULATION
A systems administrator is configuring a site-to-site VPN between two branch offices. Some of the settings have already been configured correctly. The systems administrator has been provided the following requirements as part of completing the configuration:
Most secure algorithms should be selected All traffic should be encrypted over the VPN
A secret password will be used to authenticate the two VPN concentrators

INSTRUCTIONS
Click on the two VPN Concentrators to configure the appropriate settings.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.








  1. See Explanation section for answer.

Answer(s): A

Explanation:









An organization recently started hosting a new service that customers access through a web portal. A security engineer needs to add to the existing security devices a new solution to protect this new service. Which of the following is the engineer most likely to deploy?

  1. Layer 4 firewall
  2. NGFW
  3. WAF
  4. UTM

Answer(s): C



Which of the following topics would most likely be included within an organization's SDLC?

  1. Service-level agreements
  2. Information security policy
  3. Penetration testing methodology
  4. Branch protection requirements

Answer(s): D



Viewing page 22 of 138



Post your Comments and Discuss CompTIA SY0-701 exam prep with other Community members:

SY0-701 Exam Discussions & Posts