/
CompTIA Security SY0-701 Certification Guide
Save to my account
Sign up
CompTIA Security SY0-701 Certification Guide
CompTIA Security SY0-701 Certification Guide
Study
1
Question
CIANA Pentagon
Answer
An extension of the CIA triad with the addition of non-repudiation and authentication.
2
Question
Non-repudiation is important for three main reasons
Answer
■ To confirm the authenticity of digital transactions ■ To ensure the integrity of critical communications ■ To provide accountability in digital processes
3
Question
Digital Signatures
Answer
■ Considered to be unique to each user who is operating within the digital domain ■ Created by first hashing a particular message or communication that you want to digitally sign, and then it encrypts that hash digest with the user’s private key using asymmetric encryption
4
Question
Delete
Answer
Delete
5
Question
Delete
Answer
Delete
6
Question
Delete
Answer
Delete
7
Question
Delete
Answer
Delete
8
Question
Delete
Answer
Delete
9
Question
Delete
Answer
Delete
10
Question
Delete
Answer
Delete
11
Question
What is Information Security?
Answer
Protecting data and information from unauthorized access, modification, disruption, disclosure, and destruction.
12
Question
What is Information Systems Security?
Answer
Protecting the systems (e.g., computers, servers, network devices) that hold and process critical data.
13
Question
What does the CIA Triad stand for?
Answer
Confidentiality, Integrity, and Availability.
14
Question
What is the purpose of Confidentiality in the CIA Triad?
Answer
Ensures information is accessible only to authorized personnel (e.g., encryption).
15
Question
What is the purpose of Integrity in the CIA Triad?
Answer
Ensures data remains accurate and unaltered (e.g., checksums).
16
Question
What is the purpose of Availability in the CIA Triad?
Answer
Ensures information and resources are accessible when needed (e.g., redundancy measures).
17
Question
What does Non-Repudiation guarantee?
Answer
That an action or event cannot be denied by the involved parties (e.g., digital signatures).
18
Question
What are the Triple As of Security?
Answer
Authentication, Authorization, and Accounting.
19
Question
What are the four categories of Security Control Types?
Answer
1. Preventative 2. Deterrent 3. Detective 4. Corrective.
20
Question
What is the Zero Trust Model?
Answer
Operates on the principle that no one should be trusted by default.
21
Question
What are the two planes used to achieve Zero Trust?
Answer
Control Plane and Data Plane.
22
Question
What is a Threat in cybersecurity?
Answer
Anything that could cause harm, loss, damage, or compromise to our information technology systems.
23
Question
What is a Vulnerability in cybersecurity?
Answer
Any weakness in the system design or implementation.
24
Question
What is Risk Management in cybersecurity?
Answer
Finding different ways to minimize the likelihood of an outcome and achieve the desired outcome.
25
Question
What is the importance of Confidentiality?
Answer
1. To protect personal privacy 2. To maintain a business advantage 3. To achieve regulatory compliance.
26
Question
What is Encryption?
Answer
The process of converting data into a code to prevent unauthorized access.
27
Question
What is Data Masking?
Answer
A method that involves obscuring specific data within a database to make it inaccessible for unauthorized users.
28
Question
What is the importance of Integrity in cybersecurity?
Answer
1. To ensure data accuracy 2. To maintain trust 3. To ensure system operability.
29
Question
What are some methods to maintain data integrity?
Answer
1. Hashing 2. Digital Signatures 3. Checksums 4. Access Controls 5. Regular Audits.
30
Question
What is Availability in cybersecurity?
Answer
Ensures that information, systems, and resources are accessible and operational when needed by authorized users.