Security+ (2021) Free Sample Questions

Create a free account to browse all 10 sample questions. The full practice test includes 78 questions. Use the simulator for timed and flashcard mode. Or, view more alternate versions SY0-701 425 Questions SY0-501 980 Questions.

Try Simulator

SY0-601 Sample Questions

  1. Question 1

    Q1Multiple answers

    Which of the following will MOST likely adversely impact the operations of unpatched traditional programmable-logic controllers, running a back-end LAMP server and OT systems with human- management interfaces that are accessible over the Internet via a web interface? (Choose two.)

    Show answer & explanation

    Correct answers: D, F

    Weak encryption is a critical vulnerability for unpatched programmable logic controllers and OT systems accessible over the internet, as these legacy systems often use outdated or no encryption protocols, making them vulnerable to man-in-the-middle attacks and data interception. Server-side request forgery (SSRF) is also highly impactful as the LAMP server backend can be exploited to make unauthorized requests to internal OT systems.

    Server-side request forgery (SSRF) attacks are particularly dangerous for LAMP servers managing OT systems, as attackers can exploit the web interface to make internal requests to programmable logic controllers and other industrial systems. Combined with weak encryption on unpatched systems, SSRF can lead to complete compromise of operational technology infrastructure.

  2. Question 2

    Q2

    A company recently transitioned to a strictly BYOD culture due to the cost of replacing lost or damaged corporate-owned mobile devices. Which of the following technologies would be BEST to balance the BYOD culture while also protecting the company’s data?

    Show answer & explanation

    Correct answer: C

    Full-disk encryption is the best solution for BYOD environments as it protects company data stored on personal devices even if the device is lost, stolen, or compromised. Unlike other options, full-disk encryption ensures data remains secure regardless of device ownership while allowing employees to use their personal devices freely.

  3. Question 3

    Q3

    A Chief Security Office's (CSO's) key priorities are to improve preparation, response, and recovery practices to minimize system downtime and enhance organizational resilience to ransomware attacks. Which of the following would BEST meet the CSO's objectives?

    Show answer & explanation

    Correct answer: D

    Implementing application whitelisting prevents unauthorized software execution, centralized event-log management enables rapid incident detection and response, and regular testing of full backups ensures quick recovery from ransomware attacks. This combination directly addresses preparation, response, and recovery - the CSO key priorities for ransomware resilience.

  4. Question 4

    Q4Multiple answers

    A network engineer has been asked to investigate why several wireless barcode scanners and wireless computers in a warehouse have intermittent connectivity to the shipping server. The barcode scanners and computers are all on forklift trucks and move around the warehouse during their regular use. Which of the following should the engineer do to determine the issue? (Choose two.)

    Show answer & explanation

    Correct answers: A, C

    Performing a site survey is essential for diagnosing wireless connectivity issues in a warehouse environment, as it identifies dead zones, interference sources, and optimal access point placement for mobile devices on forklifts. Site surveys provide detailed RF coverage maps and signal strength measurements needed to resolve intermittent connectivity problems.

    Creating a heat map visualizes wireless signal strength and coverage patterns throughout the warehouse, showing exactly where mobile devices on forklifts experience connectivity issues. Heat maps identify dead zones and interference patterns that cause intermittent connectivity, enabling targeted solutions for optimal wireless coverage.

  5. Question 5

    Q5

    A security administrator suspects an employee has been emailing proprietary information to a competitor. Company policy requires the administrator to capture an exact copy of the employee’s hard disk. Which of the following should the administrator use?

    Show answer & explanation

    Correct answer: A

    The dd command creates bit-for-bit forensic copies of hard drives, preserving all data including deleted files, file system metadata, and unallocated space required for digital forensics investigations. Unlike other tools, dd creates exact duplicate images that maintain evidential integrity and chain of custody for legal proceedings.

Register free to unlock 5 more sample questions

Create a free account to continue with the rest of the SY0-601 sample set.

Lifetime One

Own this practice test forever.

$79.99
$75.99
one-time
  • Full access to 1,483 questions
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • Brainy AI Assistant
  • Lifetime updates

Two

Any 2 exams per month.

$20.00/exam
$39.99
/month
  • 2 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 1,000 Brainy AI Credits
  • Cancel anytime

Premium Twelve

Any 12 exams over 3 months.

$15.00/exam
$179.99
/3 months
  • 4 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 15,000 Brainy AI Credits
  • Dedicated support
  • Friend seat included — full access

Trusted by professionals at

NvidiaSupabaseGitHubOpenAITursoClerkClaude AIAmazon