76 Questions 3x ✅ 1 - 38 - 76 Questions 3x ✅ 1 - 38.pdf
03 - CompTIA.SY0-701.v2024-04-08.q76 - 76 Questions 3x ✅ 1 - 38
Question 1/76
Which of the following should a security administrator adhere to when setting up a new set of firewall rules?
A. Disaster recovery plan
B. Incident response procedure
C. Business continuity plan
D. Change management procedure
Question 2/76
An enterprise is trying to limit outbound DNS traffic originating from its internal network. Outbound DNS requests
will only be allowed from one device with the IP address 10.50.10.25. Which of the following firewall ACLs will
accomplish this goal?
A. Access list outbound permit 0.0.0.0/0 0.0.0.0/0 port 53
Access list outbound deny 10.50.10.25/32 0.0.0.0/0 port 53
B. Access list outbound permit 0.0.0.0/0 10.50.10.25/32 port 53
Access list outbound deny 0.0.0.0/0 0.0.0.0/0 port 53
C. Access list outbound permit 0.0.0.0/0 0.0.0.0/0 port 53
Access list outbound deny 0.0.0.0/0 10.50.10.25/32 port 53
D. Access list outbound permit 10.50.10.25/32 0.0.0.0/0 port 53
Access list outbound deny 0.0.0.0/0 0.0.0.0/0 port 53
Question 3/76
An organization is struggling with scaling issues on its VPN concentrator and internet circuit due to remote work.
The organization is looking for a software solution that will allow it to reduce traffic on the VPN and internet circuit,
while still providing encrypted tunnel access to the data center and monitoring of remote employee internet traffic.
Which of the following will help achieve these objectives?
A. Deploying a SASE solution to remote employees
B. Building a load-balanced VPN solution with redundant internet
C. Purchasing a low-cost SD-WAN solution for VPN traffic
D. Using a cloud provider to create additional VPN concentrators
-2026 CompTIA.SY0-701.v2024-04-08.q76 - 76 CompTIA.SY0-701.v2024-04-08.q76
Questions 3x ✅ 1 - 38 - 76 Questions 3x ✅ 1 - 38
, Page 2 CompTIA.SY0-701.v2024-04-08.q76 -CompTIA.SY0-701.v2024-04-08.q76
76 Questions 3x ✅ 1 - 38 - 76 Questions 3x ✅ 1 - 38.pdf
Question 4/76 ✅
A Chief Information Security Officer (CISO) wants to explicitly raise awareness about the increase of
ransomware-as-a-service in a report to the management team. Which of the following best describes the threat
actor in the CISO's report?
A. Insider threat
B. Hacktivist
C. Nation-state
D. Organized crime
Question 5/76 ✅
A software development manager wants to ensure the authenticity of the code created by the company. Which of
the following options is the most appropriate?
A. Testing input validation on the user input fields
B. Performing code signing on company-developed software
C. Performing static code analysis on the software
D. Ensuring secure cookies are use
Question 6/76 ✅
The management team notices that new accounts that are set up manually do not always have correct access or
permissions.
Which of the following automation techniques should a systems administrator use to streamline account creation?
A. Guard rail script
B. Ticketing workflow
C. Escalation script
D. User provisioning script
Question 7/76 ✅
Which of the following threat actors is the most likely to use large financial resources to attack critical systems
located in other countries?
A. Insider
B. Unskilled attacker
C. Nation-state
D. Hacktivist
-2026 CompTIA.SY0-701.v2024-04-08.q76 - 76 CompTIA.SY0-701.v2024-04-08.q76
Questions 3x ✅ 1 - 38 - 76 Questions 3x ✅ 1 - 38