CompTIA Security+ Chapter 1 & 2 EXAM
PREP QUESTIONS AND ANSWERS
COMPLETE CERTIFICATION STUDY SHEET
Confidentiality - Correct Answers ✅Ensures that the data is
only viewable by authorized users.
Encryption but Access controls and steganography also help -
Correct Answers ✅What is the best choice to provide
confidentiality?
Integrity - Correct Answers ✅Provides assurance that data
has not been modified, tampered with or corrupted through
unauthorized or unintended changes. Hashing is a common
method of this.
What does non-repudiation prevent? - Correct Answers
✅Prevents entities from denying they took action. Digital
signatures and audit logs provide this
Avabailability - Correct Answers ✅ensures that data and
services are available when needed. A common goal of this is
to remove single points of failure.
What are some methods used to increase or maintain
availability ? - Correct Answers ✅fault tolerance, fail over
clusters, load balancing, backups, virtualizations, HVAC
systems, and generators
, CompTIA Security+ Chapter 1 & 2 EXAM
PREP QUESTIONS AND ANSWERS
COMPLETE CERTIFICATION STUDY SHEET
Safety - Correct Answers ✅includes the safety of resources
using physical security methods such as fencing, lighting,
door locks, and CCTV systems. Can also include personnel
and include escape plans, escape routes, and drills.
Layered Security - Correct Answers ✅employs multiple
layers of security to protect against threats. I.e. firewall, an
intrusion detection system, content filtering and antivirus
software.
Risk - Correct Answers ✅the possibility of a threat
exploiting a vulnerability and resulting in a loss
Threat - Correct Answers ✅any circumstance or event that
has the potential to compromise confidentiality, integrity and
availability
Vulnerability - Correct Answers ✅a weakness
Risk Mitigation - Correct Answers ✅Reduces risk by
reducing the chances that a threat will exploit a vulnerability
or by reducing the impact of the risk
Authentication - Correct Answers ✅Allows entities to prove
their identity by using credentials known to another entity. It
PREP QUESTIONS AND ANSWERS
COMPLETE CERTIFICATION STUDY SHEET
Confidentiality - Correct Answers ✅Ensures that the data is
only viewable by authorized users.
Encryption but Access controls and steganography also help -
Correct Answers ✅What is the best choice to provide
confidentiality?
Integrity - Correct Answers ✅Provides assurance that data
has not been modified, tampered with or corrupted through
unauthorized or unintended changes. Hashing is a common
method of this.
What does non-repudiation prevent? - Correct Answers
✅Prevents entities from denying they took action. Digital
signatures and audit logs provide this
Avabailability - Correct Answers ✅ensures that data and
services are available when needed. A common goal of this is
to remove single points of failure.
What are some methods used to increase or maintain
availability ? - Correct Answers ✅fault tolerance, fail over
clusters, load balancing, backups, virtualizations, HVAC
systems, and generators
, CompTIA Security+ Chapter 1 & 2 EXAM
PREP QUESTIONS AND ANSWERS
COMPLETE CERTIFICATION STUDY SHEET
Safety - Correct Answers ✅includes the safety of resources
using physical security methods such as fencing, lighting,
door locks, and CCTV systems. Can also include personnel
and include escape plans, escape routes, and drills.
Layered Security - Correct Answers ✅employs multiple
layers of security to protect against threats. I.e. firewall, an
intrusion detection system, content filtering and antivirus
software.
Risk - Correct Answers ✅the possibility of a threat
exploiting a vulnerability and resulting in a loss
Threat - Correct Answers ✅any circumstance or event that
has the potential to compromise confidentiality, integrity and
availability
Vulnerability - Correct Answers ✅a weakness
Risk Mitigation - Correct Answers ✅Reduces risk by
reducing the chances that a threat will exploit a vulnerability
or by reducing the impact of the risk
Authentication - Correct Answers ✅Allows entities to prove
their identity by using credentials known to another entity. It