/
Flashcards from Upload
Save to my account
Sign up
Flashcards from Upload
CompTIA Security+ SY0-701 Key Concepts
Study
1
Question
What is the primary purpose of CompTIA Security+ (SY0-701)?
Answer
Intermediate IT security certification to assess enterprise security posture
2
Question
Which certifications are recommended prerequisites for Security+ (SY0-701)?
Answer
CompTIA A+ and Network+ (recommended)
3
Question
How many domains does the Security+ (SY0-701) exam have and what is the approximate domain weight for Threats, Vulnerabilities, and Mitigations?
Answer
Five domains; Threats/Vulnerabilities/Mitigations = 22%
4
Question
What is the total exam duration and the maximum number of questions for Security+ (SY0-701)?
Answer
90 minutes and up to 90 questions
5
Question
What is the passing score on the Security+ (SY0-701) exam scale?
Answer
750 out of 900
6
Question
Where can you purchase the official Security+ exam voucher from CompTIA?
Answer
store.comptia.org
7
Question
What is one advantage of buying a voucher from a Platinum Delivery Partner like Dion Training?
Answer
About 10% discount and access to video library
8
Question
What is a recommended exam preparation tip regarding question wording and distractors?
Answer
Watch for distractors; answer to fit most situations
9
Question
What should you pay attention to in bold, italic, or uppercase terms during the exam?
Answer
Key concepts and emphasis signals
10
Question
What is the CIA Triad?
Answer
Confidentiality, Integrity, Availability
11
Question
What does confidentiality protect?
Answer
Data from unauthorized access or disclosure
12
Question
Name one method used to ensure confidentiality.
Answer
Encryption
13
Question
What does integrity protect in data security?
Answer
Data accuracy and unaltered state
14
Question
Name a method to maintain data integrity.
Answer
Hashing
15
Question
What does availability ensure for information and resources?
Answer
Accessibility when needed by authorized users
16
Question
What model states that no one should be trusted by default?
Answer
Zero Trust Model
17
Question
What are the two planes in Zero Trust architecture?
Answer
Control plane and Data plane
18
Question
What is the primary role of the control plane in Zero Trust?
Answer
Policy-driven access and threat scope reduction
19
Question
What is the primary role of the data plane in Zero Trust?
Answer
Enforcement of policy at runtime for subjects/systems
20
Question
Define a threat in the context of security.
Answer
Something that could harm or compromise IT systems
21
Question
List two sources from which threats can originate.
Answer
Natural disasters, cyber-attacks
22
Question
Define a vulnerability.
Answer
Weakness in design or implementation exploited by threats
23
Question
What is risk to enterprise systems a function of?
Answer
Threats intersecting with vulnerabilities
24
Question
What happens if a threat exists but there is no related vulnerability?
Answer
No risk
25
Question
What is risk management in cybersecurity?
Answer
Minimizing likelihood of negative outcomes
26
Question
What does confidentiality protect besides access control?
Answer
Disclosure of sensitive information
27
Question
Name a fifth method used to ensure confidentiality besides encryption and access control.
Answer
Data masking
28
Question
What is data masking?
Answer
Obscuring data while preserving usability for authorized users
29
Question
What are the four main security control categories?
Answer
Technical, Managerial, Operational, Physical
30
Question
What is a preventative control?
Answer
Controls designed to prevent security incidents