CompTIA Sec+ Practice Assessment questions and answers (verified
Comptia Security + Practice Assessment
answers graded a+) latest update 2025/2026
Study online at https://quizlet.com/_1pntpg
1. When considering security what is the major draw- Mass distribution of such
back of implementing physical tokens? devices is costly.
2. How would you prevent users from accessing sensi- By setting time of day re-
tive company data during non-business hours? strictions.
3. You are the network administrator responsible for se- Role-based access con-
lecting the access control method that will be used trol\n\nMandatory access
for a new kiosk system to be used in a local muse- control
um. The museum's donors want to have full access to
information about all items, but visitors should have
access only to those items on current display. Which
forms of access control are most appropriate to this
requirement? (choose all that apply.)
4. What determines what a user can view and alter? Access control
5. Which of the following best describes identity proof- Organizational process
ing? that binds users to au-
thentication methods.
6. When you organize security groups and define Rules are made by man-
rights/privileges, the rules should be defined in which agement, configured b
of the following ways? the administrators, and
enforced by the operating
system.
7. You have decided to use the Terminal Access Con- Encrypted forwarding.
troller Access Control System (TACACS) standard for
dial-up authentication. Which of the following capabil-
ities will be provided by this service?
8. RBAC
, Comptia Security + Practice Assessment
Study online at https://quizlet.com/_1pntpg
Which of the following is a type of access control that
provides access rights assigned to roles and then ac-
counts assigned to these roles?
9. At which layer of the OSI model does the Internet Network Layer
Protocol Security protocol function?
10. With the Discretionary access control model, the most Access control lists
common implementation is through:
11. Sustained high levels of processor usage could mean There is a serious appli-
that: cation error.\n\nYour CPU
needs to be upgraded.
12. Anomaly-based monitoring is useful for detecting New exploits or buffer
which types of attacks? (Choose all that apply) overflow attacks.\n\nDoS
attacks based on payloads
or volume\n\nNormal
network failures\n\nPro-
tocol and port exploitation
13. On Linux, BIND based DNS uses which daemon for syslogd
logging?
14. Which of the following are examples of suspicious Multiple connections that
activity? (Choose all that apply.) are in a half-open
state.\n\nA log report that
indicates multiple login
failures on a single ac-
count.
15. You suspect that there are problems with your DNS Nslookup
server. No one seems to be able to contact intranet
, Comptia Security + Practice Assessment
Study online at https://quizlet.com/_1pntpg
hosts using DNS names. However, the intranet can be
contacted by IP address. You're not exactly sure where
the problem lies. You go to a workstation, open a DOS
prompt, and enter which of the following commands?
16. On Windows, you may restrict disk usage through Disk quota
which of the following facilities?
17. You have installed a custom monitoring service on the Host-based
webserver that reviews web service logs to watch for IDS\n\nKnowl-
the URL's used by the Code Red worm to propagate edge-based IDS
itself. When this custom service detects an attack, it
raises an alert via email. Which of the following types
of IDS is this solution? (Choose all that apply.)
18. To monitor the health of all systems, agents are in- SNMP
stalled on the machines, and then the agents are mon-
itored from a central location. This is an implementa-
tion of which of the following?
19. What is the name given to the activity that consists Logging
of collecting information that will later be used for
monitoring and review purposes?
20. You are tracking SNMP traffic. Which of the following 162\n\n161
prots would you monitor? (Choose all that apply.)
21. Which of the following kinds of attack aim at exploiting Social engineering.
flaws in human logic?
22. In the context of computer forensics, possible dan- Electromagnetic
gers to digital evidence may include: (Choose all that damage\n\nBooby
apply.) traps\n\nViruses
Comptia Security + Practice Assessment
answers graded a+) latest update 2025/2026
Study online at https://quizlet.com/_1pntpg
1. When considering security what is the major draw- Mass distribution of such
back of implementing physical tokens? devices is costly.
2. How would you prevent users from accessing sensi- By setting time of day re-
tive company data during non-business hours? strictions.
3. You are the network administrator responsible for se- Role-based access con-
lecting the access control method that will be used trol\n\nMandatory access
for a new kiosk system to be used in a local muse- control
um. The museum's donors want to have full access to
information about all items, but visitors should have
access only to those items on current display. Which
forms of access control are most appropriate to this
requirement? (choose all that apply.)
4. What determines what a user can view and alter? Access control
5. Which of the following best describes identity proof- Organizational process
ing? that binds users to au-
thentication methods.
6. When you organize security groups and define Rules are made by man-
rights/privileges, the rules should be defined in which agement, configured b
of the following ways? the administrators, and
enforced by the operating
system.
7. You have decided to use the Terminal Access Con- Encrypted forwarding.
troller Access Control System (TACACS) standard for
dial-up authentication. Which of the following capabil-
ities will be provided by this service?
8. RBAC
, Comptia Security + Practice Assessment
Study online at https://quizlet.com/_1pntpg
Which of the following is a type of access control that
provides access rights assigned to roles and then ac-
counts assigned to these roles?
9. At which layer of the OSI model does the Internet Network Layer
Protocol Security protocol function?
10. With the Discretionary access control model, the most Access control lists
common implementation is through:
11. Sustained high levels of processor usage could mean There is a serious appli-
that: cation error.\n\nYour CPU
needs to be upgraded.
12. Anomaly-based monitoring is useful for detecting New exploits or buffer
which types of attacks? (Choose all that apply) overflow attacks.\n\nDoS
attacks based on payloads
or volume\n\nNormal
network failures\n\nPro-
tocol and port exploitation
13. On Linux, BIND based DNS uses which daemon for syslogd
logging?
14. Which of the following are examples of suspicious Multiple connections that
activity? (Choose all that apply.) are in a half-open
state.\n\nA log report that
indicates multiple login
failures on a single ac-
count.
15. You suspect that there are problems with your DNS Nslookup
server. No one seems to be able to contact intranet
, Comptia Security + Practice Assessment
Study online at https://quizlet.com/_1pntpg
hosts using DNS names. However, the intranet can be
contacted by IP address. You're not exactly sure where
the problem lies. You go to a workstation, open a DOS
prompt, and enter which of the following commands?
16. On Windows, you may restrict disk usage through Disk quota
which of the following facilities?
17. You have installed a custom monitoring service on the Host-based
webserver that reviews web service logs to watch for IDS\n\nKnowl-
the URL's used by the Code Red worm to propagate edge-based IDS
itself. When this custom service detects an attack, it
raises an alert via email. Which of the following types
of IDS is this solution? (Choose all that apply.)
18. To monitor the health of all systems, agents are in- SNMP
stalled on the machines, and then the agents are mon-
itored from a central location. This is an implementa-
tion of which of the following?
19. What is the name given to the activity that consists Logging
of collecting information that will later be used for
monitoring and review purposes?
20. You are tracking SNMP traffic. Which of the following 162\n\n161
prots would you monitor? (Choose all that apply.)
21. Which of the following kinds of attack aim at exploiting Social engineering.
flaws in human logic?
22. In the context of computer forensics, possible dan- Electromagnetic
gers to digital evidence may include: (Choose all that damage\n\nBooby
apply.) traps\n\nViruses