• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 3 out of 26 pages
Exam (elaborations)

CompTIA Security+ SY0-701 Exam | 90 Questions + Detailed Explanations | Complete Certification Test Prep

Document preview thumbnail
Preview 3 out of 26 pages

Prepare for the CompTIA Security+ SY0-701 certification exam with 90 realistic scenario-based questions designed to build cybersecurity knowledge and exam confidence. Includes detailed explanations covering threats, vulnerabilities, security controls, architecture, operations, and risk management concepts. Ideal for beginners and candidates seeking exam-level practice.

Content preview

COMPTIA SECURITY+ SY0-701
ADVANCED PRACTICE EXAMINATION
90 Questions
Answers + Detailed Explanations




CompTIA Security+ SY0-701 Exam

,1. A security architect reviews the following simplified network:

Internet
|
[Edge Firewall]
|
[DMZ] ---- [Public Web Server]
|
[Internal Firewall]
|
[User Network] ---- [Database Network]

A web server is compromised through an internet-facing vulnerability. Which change
would BEST reduce the attacker's ability to reach the database?
A. A. Place the database on the same subnet as the web server
B. B. Permit all traffic from the DMZ to the database
C. C. Restrict traffic between the web tier and database tier with segmentation and least-
privilege firewall rules
D. D. Disable logging on the internal firewall
Correct Answer: C

Explanation: Segmentation creates a security boundary between tiers, while restrictive firewall
rules limit which systems and ports can communicate. This reduces lateral movement if the web
server is compromised.

2. An attacker sends an email that appears to come from the chief executive and asks the
finance department to urgently transfer money to a new account. Which attack is MOST
likely?
A. A. Business email compromise
B. B. Bluejacking
C. C. Tailgating
D. D. DNS tunneling
Correct Answer: A

Explanation: Business email compromise uses trusted business identities or compromised
accounts to manipulate employees into actions such as fraudulent payments.

3. A web application accepts user input that becomes part of a database query, allowing an
attacker to retrieve records from tables they should not access. Which vulnerability is
involved?
A. B. Cross-site scripting
B. A. SQL injection
CompTIA Security+ SY0-701 Exam

, C. C. Race condition
D. D. Directory traversal
Correct Answer: B

Explanation: SQL injection occurs when untrusted input is interpreted as database commands.
Parameterized queries and input validation are key defenses.

4. A security analyst discovers that a workstation is communicating with a known
malicious command-and-control server. Which action should generally occur FIRST?
A. B. Delete every suspicious file before collecting evidence
B. C. Rebuild every company server
C. A. Isolate or contain the affected endpoint
D. D. Announce a confirmed data breach publicly
Correct Answer: C

Explanation: Containment limits further communication and spread while preserving the
opportunity for investigation. Destructive actions can destroy useful evidence.

5. An organization wants cloud access decisions to consider user identity, device health,
location, and the sensitivity of the requested resource instead of automatically trusting
internal users. Which architecture BEST fits?
A. B. Flat network
B. C. Open access
C. D. Perimeter-only security
D. A. Zero Trust
Correct Answer: D

Explanation: Zero Trust removes implicit trust based on network location and uses contextual
access decisions with continuous verification.

6. A security operations center wants to collect and correlate authentication, firewall,
endpoint, and application events in one platform. Which technology is MOST appropriate?
A. A. SIEM
B. B. RAID
C. C. Hypervisor
D. D. VPN concentrator
Correct Answer: A

Explanation: A SIEM aggregates and correlates security events from multiple sources to support
centralized monitoring and investigation.

7. A company wants to compare a workstation's current configuration with an approved
secure configuration. What is being used?
CompTIA Security+ SY0-701 Exam

Document information

Uploaded on
September 28, 2026
Number of pages
26
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$17.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Sold
54
Followers
9
Items
629
Last sold
2 days ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions