Browse all practice questions for the CompTIA Security+ (SY0-701) Certification Practice Test. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

CompTIA Security+ (SY0-701) Certification Practice Test 2026 – Comprehensive All-in-One Guide to Exam Success! course image
More practice questions

These questions are part of the practice quiz. Start practicing

  • What is a key function of a Dropper in malware?
  • What kind of malware operates or spreads without user consent?
  • What is the primary function of detective controls in cybersecurity?
  • What is the key function of a host-based IDS?
  • Which controls are focused on daily protective measures for data?
  • Which of the following is considered a basic method to ensure confidentiality?
  • Which activity involves sending unsolicited messages through electronic communication systems?
  • What term is used to describe a non-malicious code hidden message within a program?
  • What does the Inherence Factor refer to?
  • What is the main objective of using driver manipulation in attacks?
  • Which aspect does hashing provide to data?
  • What type of system is designed to monitor data while in use, in transit, or at rest to detect attempts to steal data?
  • What is primarily assessed by a security audit trail?
  • What type of detection system recreates events after an attack has occurred?
  • Which of the following is a method used to bypass normal security and authentication functions?
  • Which measures are included under physical security measures?
  • What is the primary function of a host-based firewall?
  • What term describes a method for accessing a victim's machine?
  • What is the primary function of software firewalls?
  • Which of the following is a virus that combines both boot sector and program characteristics?
  • Which type of controls provide guidelines or mandates actions based on policy?
  • What security process requires users to provide multiple forms of identification?
  • Which type of tool is Wireshark considered in network management?
  • Which type of virus requires user action to reproduce and spread?
  • Which term refers to maintaining a comprehensive record of all users' activities?
  • What property ensures the accuracy and completeness of data?
  • What technique involves creating multiple backups of critical components to ensure consistent service?
  • Which process prevents unrecognized users from gaining access to a system?
  • What benefit does data masking provide to organizations?
  • What exploit technique uses standard systems to perform intrusions?
  • Which type of controls encompasses procedures and measures for data protection governed by human actions?
  • What does "5 Nines of Availability" guarantee?
  • What type of security method is utilized to protect the integrity of a file before it is transmitted?
  • In the context of data integrity, which of the following methods ensures that the original data is maintained?
  • What does authorization refer to in a security context?
  • Which concept ensures that actions or events cannot be denied by the parties involved?
  • What does access control regulate?
  • What is the main focus of data availability in a security context?
  • What distinguishes anomaly-based detection from signature-based detection?
  • What type of attack compromises Kernel-mode device drivers to intercept calls between components?
  • What is the purpose of an Intrusion Detection System (IDS)?
  • What security model operates on the principle of not trusting anyone by default?
  • Which software displays advertisements based on user spying?
  • User accountability in a cybersecurity context primarily aims to?
  • Which term refers to a weakness that can be exploited in a system?
  • Which virus type combines both boot sector and program viruses?
  • Adware is primarily designed to do what?
  • Which term describes the technique of controlling previously compromised systems to conduct illegal activities?
  • Which kind of system feature specifically addresses unexpected power failures?
  • What is the primary purpose of a stealth virus?
  • What is the primary objective of risk management?
  • What is a characteristic feature of network analysis tools like Wireshark?
  • Which factor is associated with where a user is located?
  • What mechanism is used to block external files containing JavaScript or images from loading in a browser?
  • What is the main goal of accounting in a security context?
  • Which concept describes storing the same data in multiple locations to avoid losses in case of failure?
  • Which factor describes something that a user does?
  • What is the term for a cybersecurity technique that aims to confuse a program or person analyzing a system?
  • What kind of expliot technique could involve utilizing existing software on the target system?
  • Which term describes a malware that tricks the user into infecting themselves?
  • Which malware typically requires user action to be activated?
  • In the context of security principles, what does hashing primarily ensure?
  • What is a common characteristic of both network and server redundancy?
  • What type of virus infects executable files or applications?
  • What is a key aspect of ensuring data integrity?
  • What is the name of the malicious practice that places a computer between sender and receiver to capture traffic?
  • Which technique involves running malicious code while masquerading as a legitimate process?
  • Which virus type is triggered when a document containing it is opened?
  • Which type of control would a VPN represent if used in conjunction with older encryption methods?
  • Achieving the 5 Nines of Availability requires which of the following?
  • What type of redundancy ensures that an alternate path is available for data transmission?
  • Which of the following best describes encryption?
  • Which of the following is a technique used for code injection in software?
  • What is a distinguishing feature of a metamorphic virus?
  • What term describes the assurance that information/data is not disclosed to unauthorized users?
  • Which of the following controls monitors and alerts organizations to malicious activities as they happen?
  • What do we call the strategies, hardware, and software for managing and reducing risk in a system?
  • What can be a consequence of not effectively managing risk?
  • Which system continuously analyzes outgoing data to prevent loss?
  • What type of virus is stored in the first sector of a hard drive and is hard to detect?
  • What is referred to as a digital fingerprint in data security?
  • Which of the following best describes signature-based detection?
  • What is one of the key functions of a Syslog server?
  • Which type of control ensures that security strategies align with business goals?
  • What aspect of security focuses on ensuring systems are reliable and operational?
  • Which type of virus encrypts its content to evade detection from antivirus software?
  • Regular audits are essential for which of the following purposes?
  • Which of the following concepts involves the establishment of trust and no default assumptions?
  • What is essential for a SIEM system to function effectively?
  • What is the primary purpose of forensic analysis in cybersecurity?
  • What is the definition of Integrity in terms of data security?
  • Which aspect of security governance ensures rules guide user actions?
  • Which term refers to methods used by attackers to deliver malicious payloads?
  • What is the focus of Network DLP Systems?
  • Which of the following factors does NOT relate to a user’s identity verification?
  • What type of software is intended to achieve administrative control without being detected?
  • Which measure ensures that only authorized individuals can access sensitive information?
  • Which of the following is a benefit of user accountability in an organization?
  • What is the general purpose of a Dropper in a malware context?
  • What method uses encryption to ensure both integrity and authenticity of data?
  • What is the term for the factor related to what a person has, such as possessions?
  • What does grayware typically do in a computer system?
  • Which of the following is an example of a protective measure for digital information?
  • What term describes measures taken to physically protect assets?
  • Which approach involves preparing alternative methods to access data in case of a primary method failure?
  • What process converts data into a fixed-size value to ensure integrity?
  • Which of the following could be considered a method to execute code without being detected by traditional security measures?
  • What is a common use of botnets?
  • Which virus activates when a specific file type is executed?
  • What is the role of preventative controls in an organization?
  • What does training and awareness primarily aim to achieve in organizations?
  • What type of detection is based on specific strings of bytes triggering alerts?
  • What is utilized to verify data integrity during transmission?
  • What device is used to aggregate logs from various network sources for easier analysis?
  • Which of the following ensures that a sender cannot deny having sent a message?
  • What is the term for using multiple servers to manage user requests effectively?
  • What technique do attackers use with rootkits to maintain persistent control over a system?
  • What type of controls are implemented to fortify systems before a security incident occurs?
  • What is a potential function of Content Filters in a security context?
  • What is the purpose of a water hole attack?
  • What is the primary goal of Data Loss Prevention (DLP) technologies?
  • Which of the following operating systems utilizes PF and IPFW for its firewall implementation?
  • What does accounting in information security refer to?
  • What does the term "Shellcode" refer to in malware context?
  • What is the purpose of an audit trail?
  • What is NOT a focus of regular audits in maintaining data integrity?
  • What is the main purpose of corrective controls in security management?
  • What functionality does a Security Information and Event Management (SIEM) system provide?
  • What is a "True Positive" in the context of intrusions?
  • Which security measure tracks and records user activities during communications?
  • What do checksums help to detect during data transmission?
  • Which of the following is NOT considered a basic method to maintain data integrity?
  • Which technique describes how malware code infects a target host?
  • What type of malware is disguised as harmless software but performs malicious functions?
  • Resource optimization in organizations helps to achieve which of the following goals?
  • Which type of detection relies on a specific security policy to flag violations?
  • Which malware encrypts files or a computer to demand a ransom for decryption?
  • Which virus type is known for its ability to constantly change its appearance to evade detection?
  • What is the primary purpose of a remote access Trojan?
  • Which term refers to unauthorized modification of data?
  • In security management, what does the 'accounting' process primarily involve?
  • Which technique allows malware to avoid detection by signature-based security software?
  • What are the three main pillars of security?
  • What are three reasons for maintaining confidentiality in a business?
  • What measures can be classified as detective controls?
  • Which component is focused on policy enforcement within a security system?
  • Which type of security control is designed to discourage individuals from causing a security incident?
  • What is the term for malicious code that executes only when certain conditions are met?
  • What is the formula that represents the absence of risk?
  • What does the term "Living off the Land" refer to in cybersecurity?
  • What term describes a detection failure where an actual threat is not flagged?
  • Which virus can rewrite itself entirely before it tries to infect a file?
  • Which type of authentication is based on something you know?
  • What is the purpose of authentication in information security?
  • Which process defines the actions or resources a user is allowed to access?
  • What is the purpose of data masking?
  • What is a primary use of a digital signature in data security?
  • What does a "False Positive" indicate?
  • Which aspect of information security ensures protection against unauthorized data alterations?
  • Which of the following is NOT a method to ensure confidentiality?
  • What is a potential result of implementing directive controls within a security framework?
  • What type of malware gathers information about a user without consent and may include keystroke logging?
  • What type of malware replicates itself without user interaction and can disrupt network traffic?
  • What is the technique called when malicious code is inserted into a running process using Dynamic Link Libraries?
  • What is used to verify a user’s identity in the authentication process?
  • Which type of malware connects to the internet to retrieve additional tools?
  • What concept relates to the ability to access information when needed?
  • What ensures that data can be transmitted without being intercepted by unauthorized parties?
  • What kind of control would the use of a firewall to filter traffic be categorized as?
  • What defines an organization's approach to managing risks and protecting information?
  • Which IDS operates by copying traffic through hardware installed on a network switch?
  • What are compensating controls used for in security practices?
  • Which act is intended to protect data from unauthorized access and modifications?
  • Which type of IDS can provide alerts on deviations from established norms in traffic behavior?
  • Which of the following is an example of a deterrent control?
  • What does the term 'active interception' specifically refer to?
  • What term is used to describe a set of compromised computers controlled by a master node?
  • What is a primary advantage of using compensating controls?
  • What term refers to the process of transforming data into a secure format to prevent unauthorized access?
  • What is the term for malicious code that operates without the user's knowledge?
  • What characterizes a worm in the context of malware?
  • Which of the following correctly describes a network-based IDS?
  • Which term is used for malicious software that can remain hidden and provide unauthorized access to the system?
  • What does regulatory compliance involve?
  • What involves using backup power systems to maintain operational continuity during outages?
  • What is one of the primary reasons for ensuring data integrity?
  • What type of malware allows an attacker to remotely control an infected computer?
  • What does Information Systems Security primarily aim to protect?
  • What is meant by a "True Negative" in intrusion detection systems?
  • What is the characteristic of a polymorphic virus?
  • Which of the following describes a software-based client system that monitors data in use and can stop file transfers?
  • Which control is exemplified by using antivirus software to quarantine malware?
  • What is a key component of training and awareness in cybersecurity?
  • What are security controls designed to mitigate?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy