Inspirational journeys

Follow the stories of academics and their research expeditions

ComptiA Security+ Certification Exam Questions and answer - Part 10

Mary Smith

Sat, 24 May 2025

ComptiA Security+ Certification Exam Questions and answer - Part 10

1. A company wants to ensure that the validity of publicly trusted certificates used by its web server can be determined even during an extended internet outage. Which of the following should be implemented?

A) Crl
B) Recovery agent
C) Ocsp
D) Key escrow



2. A company has a security policy that specifies all endpoint computing devices should be assigned a unique identifier that can be tracked via an inventory management system. Recent changes to airline security regulations have cause many executives in the company to travel with mini tablet devices instead of laptops. These tablet devices are difficult to tag and track. An RDP application is used from the tablet to connect into the company network. Which of the following should be implemented in order to meet the security policy requirements?

A) MDM software
B) RFID tagging system
C) Security Requirements Traceability Matrix (SRTM)
D) Virtual desktop infrastructure (IDI)
E) A hardware security module (HSM)
F) WS-security and geo-fencing

3. A company wants to ensure users are only logging into the system from their laptops when they are on site. Which of the following would assist with this?

A) Smart cards
B) Geofencing
C) Biometrics
D) Tokens



4. A Chief Information Officer (CIO) drafts an agreement between the organization and its employees. The agreement outlines ramifications for releasing information without consent and/or approvals. Which of the following BEST describes this type of agreement?

A) SLA
B) ISA
C) NDA
D) MOU



5. A help desk is troubleshooting user reports that the corporate website is presenting untrusted certificate errors to employees and customers when they visit the website. Which of the following is the MOST likely cause of this error,provided the certificate has not expired?

A) The root CA has revoked the certificate of the intermediate CA
B) The key escrow server has blocked the certificate from being validated
C) The certificate was self signed,and the CA was not imported by employees or customers
D) The valid period for the certificate has passed,and a new certificate has not been issued



1. Right Answer: A
Explanation:

2. Right Answer: A
Explanation:

3. Right Answer: B
Explanation:

4. Right Answer: C
Explanation:

5. Right Answer: A
Explanation:

0 Comments

Leave a comment