Security+

COMPTIA_SY0_701
Entry / AssociateVersion SY0-701Official exam guide โ†—

Ready to test yourself?

A timed, blueprint-proportional exam drawn fresh from this bank โ€” with a per-domain score report.

๐Ÿ”’ Unlock the simulation โ†’

๐Ÿ”“ Free preview: showing 10 of 258 questions. Unlock the full bank โ€” every question, explanation, and reference.

Unlock all 258 questions โ†’

10 questions across 5 topics. Choose an answer for each question, then check it to see the correct answer and explanation.

Filter by topic

10 questions in General Security Concepts

GENERAL_CONCEPTS

General Security Concepts

10 questions in topic

Security controls, the CIA triad, zero trust, AAA, change management, and cryptography/PKI.

1
Single choice~60s

An attacker alters the dollar amounts stored in a payroll database. Which element of the CIA triad is most directly violated?

2
Single choice~75s

A locked server-room door that physically stops unauthorized entry is which category and type of control?

3
Single choice~80s

An organization can't patch a vulnerable legacy application, so it deploys strict application-layer firewall rules around it as an interim safeguard. This alternative safeguard is which control type?

4
Single choice~80s

In a Zero Trust architecture, which element is part of the control plane rather than the data plane?

5
Single choice~60s

Which authentication concept is satisfied by requiring a password (something you know) plus a hardware token (something you have)?

6
Single choice~80s

A file's SHA-256 digest is recomputed and compared to a known-good value to confirm the file was not modified. Which security goal does this support?

7
Single choice~100s

Two parties who have never met must establish a shared symmetric session key over an untrusted network without transmitting the key itself. Which technique enables this?

8
Single choice~80s

A company wants one certificate to secure www.example.com, mail.example.com, and vpn.example.com. Which certificate type is most appropriate?

9
Single choice~85s

Which mechanism lets a client verify in real time whether a single certificate has been revoked, avoiding the overhead of downloading a full list?

10
Single choice~100s

An application must protect signing keys so they can never be exported in plaintext, even by administrators. Which technology best meets this?