CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021)

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) simplifies exam prep with well-structured content and practice questions.

Scarlett Anderson
Contributor
4.2
144
9 months ago
Preview (31 of 1093 Pages)
100%
Purchase to unlock

Page 1

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 1 preview image

Loading page image...

Page 2

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 2 preview image

Loading page image...

DownloadedfromStudyXY.com[=Ww+StudyXYoias.Za\Rr'BE\StudyAnythingThisContentHasbeenPostedOnStudyXY.comassupplementarylearningmaterial.StudyXYdoesnotendroseanyuniversity,collegeorpublisher.Allmaterialspostedareundertheliabilityofthecontributors.|8)www.studyxy.com

Page 3

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 3 preview image

Loading page image...

Page 4

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 4 preview image

Loading page image...

Page 5

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 5 preview image

Loading page image...

Page 6

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 6 preview image

Loading page image...

Page 7

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 7 preview image

Loading page image...

Copyright©2021byMcGrawHill.Allrightsreserved.ExceptaspermittedundertheUnitedStatesCopyrightActof1976,nopartofthispublicationmaybereproducedordistributedinanyformorbyanymeans,orstoredinadatabaseorretrievalsystem,withoutthepriorwrittenpermissionofthepublisher,withtheexceptionthattheprogramlistingsmaybeentered,stored,andexecutedinacomputersystem,buttheymaynotbereproducedforpublication.ISBN:978-1-26-046401-6MHID:~~1-26-046401-6ThematerialinthiseBookalsoappearsintheprintversionofthistitle:ISBN:978-1-26-046400-9,MHID:1-26-046400-8.eBookconversionbycodeMantraVersion1.0Alltrademarksaretrademarksoftheirrespectiveowners.Ratherthanputatrademarksymbolaftereveryoccurrenceofatrademarkedname,weusenamesinaneditorialfashiononly,andtothebenefitofthetrademarkowner,withnointentionofinfringementofthetrademark.Wheresuchdesignationsappearinthisbook,theyhavebeenprintedwithinitialcaps.McGraw-HillEducationeBooksareavailableatspecialquantitydiscountstouseaspremiumsandsalespromotionsorforuseincorporatetrainingprograms.Tocontactarepresentative,pleasevisittheContactUspageatwww.mhprofessional.com.InformationhasbeenobtainedbyMcGrawHillfromsourcesbelievedtobereliable.However,becauseofthepossibilityofhumanormechanicalerrorbyoursources,McGrawHill,orothers,McGrawHilldoesnotguaranteetheaccuracy,adequacy,orcompletenessofanyinformationandisnotresponsibleforanyerrorsoromissionsortheresultsobtainedfromtheuseofsuchinformation.TERMSOFUSE

Page 8

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 8 preview image

Loading page image...

ThisisacopyrightedworkandMcGraw-HillEducationanditslicensorsreserveallrightsinandtothework.Useofthisworkissubjecttotheseterms.ExceptaspermittedundertheCopyrightActof1976andtherighttostoreandretrieveonecopyofthework,youmaynotdecompile,disassemble,reverseengineer,reproduce,modify,createderivativeworksbasedupon,transmit,distribute,disseminate,sell,publishorsublicensetheworkoranypartofitwithoutMcGraw-HillEducation’spriorconsent.Youmayusetheworkforyourownnoncommercialandpersonaluse;anyotheruseoftheworkisstrictlyprohibited.Yourrighttousetheworkmaybeterminatedifyoufailtocomplywiththeseterms.THEWORKISPROVIDED“ASIS.”McGRAW-HILLEDUCATIONANDITSLICENSORSMAKENOGUARANTEESORWARRANTIESASTOTHEACCURACY,ADEQUACYORCOMPLETENESSOFORRESULTSTOBEOBTAINEDFROMUSINGTHEWORK,INCLUDINGANYINFORMATIONTHATCANBEACCESSEDTHROUGHTHEWORKVIAHYPERLINKOROTHERWISE,ANDEXPRESSLYDISCLAIMANYWARRANTY,EXPRESSORIMPLIED,INCLUDINGBUTNOTLIMITEDTOIMPLIEDWARRANTIESOFMERCHANTABILITYORFITNESSFORAPARTICULARPURPOSE.McGraw-HillEducationanditslicensorsdonotwarrantorguaranteethatthefunctionscontainedintheworkwillmeetyourrequirementsorthatitsoperationwillbeuninterruptedorerrorfree.NeitherMcGraw-HillEducationnoritslicensorsshallbeliabletoyouoranyoneelseforanyinaccuracy,errororomission,regardlessofcause,intheworkorforanydamagesresultingtherefrom.McGraw-HillEducationhasnoresponsibilityforthecontentofanyinformationaccessedthroughthework.UndernocircumstancesshallMcGraw-HillEducationand/oritslicensorsbeliableforanyindirect,incidental,special,punitive,consequentialorsimilardamagesthatresultfromtheuseoforinabilitytousethework,evenifanyofthemhasbeenadvisedofthepossibilityofsuchdamages.Thislimitationofliabilityshallapplytoanyclaimorcausewhatsoeverwhethersuchclaimorcausearisesincontract,tortorotherwise.

Page 9

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 9 preview image

Loading page image...

Thisbookisdedicatedtothemanyinformationsecurityprofessionalswhoquietlyworktoensurethesafetyofournation’scriticalinfrastructures.Wewanttorecognizethethousandsofdedicatedindividualswhostrivetoprotectournationalassetsbutwhoseldomreceivepraiseandoftenareonlynoticedwhenanincidentoccurs.Toyou,wesaythankyouforajobwelldone!

Page 10

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 10 preview image

Loading page image...

ABOUTTHEAUTHORSDr.Wm.ArthurConklin,CompTIASecurity+,CISSP,GICSP,GRID,GCIP,GCFA,GCIA,GCDA,CSSLP,CRISC,isaprofessoranddirectorattheCenterforInformationSecurityResearchandEducationintheCollegeofTechnologyattheUniversityofHouston.Heholdstwoterminaldegrees—aPhDinbusinessadministration(specializingininformationsecurity)fromtheUniversityofTexasatSanAntonio(UTSA)andanelectricalengineerdegree(specializinginspacesystemsengineering)fromtheNavalPostgraduateSchoolinMonterey,California.HeisafellowofISSAand(CS)2AIaswellasaseniormemberofASQ,IEEE,andACM.Hisresearchinterestsincludetheuseofsystemstheorytoexploreinformationsecurity,specificallyincyber-physicalsystems.HehasastronginterestincybersecurityeducationandisinvolvedwiththeNSA/DHSCentersofAcademicExcellenceinCyberDefense(CAECD)andtheNISTNationalInitiativeforCybersecurityEducation(NICE)CybersecurityWorkforceFramework(NICEFramework).Hehascoauthoredsixsecuritybooksandnumerousacademicarticlesassociatedwithinformationsecurity.Heisco-chairofthesteeringcommitteefortheDHS-sponsoredIndustrialControlSystemsJointWorkingGroup(ICSJWG)effortsassociatedwithworkforcedevelopmentandcybersecurityaspectsofindustrialcontrolsystems.Hehasanextensivebackgroundinsecurecodingandhasbeenco-chairoftheDHS/DoDSoftwareAssuranceForumWorkingGroupforworkforceeducation,training,anddevelopment.Dr.GregoryWhitehasbeeninvolvedincomputerandnetworksecuritysince1986.Hespent19yearsonactivedutywiththeUnitedStatesAirForceand11yearsintheAirForceReservesinavarietyofcomputerandsecuritypositions.HeobtainedhisPhDincomputersciencefromTexasA&MUniversityin1995.Hisdissertationtopicwasintheareaofcomputernetworkintrusiondetection,andhecontinuestoconductresearchinthisareatoday.HeiscurrentlythedirectorfortheCenterforInfrastructureAssurance

Page 11

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 11 preview image

Loading page image...

andSecurity(CIAS)andisaprofessorofcomputerscienceattheUniversityofTexasatSanAntonio(UTSA).Dr.Whitehaswrittenandpresentednumerousarticlesandconferencepapersonsecurity.Heisalsothecoauthorofsixtextbooksoncomputerandnetworksecurityandhaswrittenchaptersfortwoothersecuritybooks.Dr.Whitecontinuestobeactiveinsecurityresearch.Hiscurrentresearchinitiativesincludeeffortsincommunityincidentresponse,intrusiondetection,andsecureinformationsharing.ChuckCothren,CISSP,isManagerofDevelopmentOperationsatIonicSecurity,applyingover20yearsofinformationsecurityexperienceinconsulting,research,andenterpriseenvironments.Hehasassistedclientsinavarietyofindustries,includinghealthcare,banking,informationtechnology,retail,andmanufacturing.Headvisesclientsontopicssuchassecurityarchitecture,penetrationtesting,training,consultantmanagement,datalossprevention,andencryption.HeiscoauthorofthebooksVoiceandDataSecurityandPrinciplesofComputerSecurity.RogerL.Davis,CISSP,CISM,CISA,isaSeniorCustomerSuccessAccountManagerforMicrosoftsupportingenterprise-levelcompanies.HehasservedaspresidentoftheUtahchapteroftheInformationSystemsSecurityAssociation(ISSA)andvariousboardpositionsfortheUtahchapteroftheInformationSystemsAuditandControlAssociation(ISACA).HeisaretiredAirForcelieutenantcolonelwith40yearsofmilitaryandinformationsystems/securityexperience.Mr.DavisservedonthefacultyofBrighamYoungUniversityandtheAirForceInstituteofTechnology.HecoauthoredMcGraw-Hill’sPrinciplesofComputerSecurityandVoiceandDataSecurity.Heholdsamaster’sdegreeincomputersciencefromGeorgeWashingtonUniversity,abachelor’sdegreeincomputersciencefromBrighamYoungUniversity,andperformedpost-graduatestudiesinelectricalengineeringandcomputerscienceattheUniversityofColorado.DwayneWilliams,CISSP,CASP,isAssociateDirector,TechnologyandResearch,fortheCenterforInfrastructureAssuranceandSecurity(CIAS)attheUniversityofTexasatSanAntonioandisDirectoroftheNationalCollegiateCyberDefenseCompetition.Mr.Williamshasover24yearsofexperienceininformationsystemsandnetworksecurity.HisexperienceincludessixyearsofcommissionedmilitaryserviceasaCommunications-ComputerInformationSystemsOfficerintheUnitedStatesAirForce,specializinginnetworksecurity,corporateinformationprotection,intrusiondetectionsystems,incidentresponse,andVPNtechnology.Priortojoining

Page 12

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 12 preview image

Loading page image...

theCIAS,heservedasDirectorofConsultingforSecureLogixCorporation,wherehedirectedandprovidedsecurityassessmentandintegrationservicestoFortune100,government,publicutility,oilandgas,financial,andtechnologyclients.Mr.Williamsgraduatedin1993fromBaylorUniversitywithaBachelorofArtsincomputerscience.Mr.WilliamsisacoauthorofVoiceandDataSecurityandPrinciplesofComputerSecurity.AbouttheTechnicalEditorChrisCrayton,MCSE,isanauthor,technicalconsultant,andtrainer.Hehasworkedasacomputertechnologyandnetworkinginstructor,informationsecuritydirector,networkadministrator,networkengineer,andPCspecialist.ChrishasauthoredseveralprintandonlinebooksonPCrepair,CompTIAA+,CompTIASecurity+,andMicrosoftWindows.Hehasalsoservedastechnicaleditorandcontentcontributoronnumeroustechnicaltitlesforseveraloftheleadingpublishingcompanies.Heholdsnumerousindustrycertifications,hasbeenrecognizedwithmanyprofessionalteachingawards,andhasservedasastate-levelSkillsUSAcompetitionjudge.

Page 13

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 13 preview image

Loading page image...

CONTENTSATAGLANCEPartIThreats,Attacks,andVulnerabilitiesChapter1SocialEngineeringTechniquesChapter2TypeofAttackIndicatorsChapter3__ApplicationAttackIndicatorsChapter4NetworkAttackIndicatorsChapter5ThreatActors,Vectors,andIntelligenceSourcesChapter6VulnerabilitiesChapter7SecurityAssessmentsChapter8PenetrationTestingPartITArchitectureandDesignChapter9EnterpriseSecurityArchitectureChapter10_VirtualizationandCloudSecurityChapter11SecureApplicationDevelopment,Deployment,andAutomationConceptsChapter12AuthenticationandAuthorizationChapter13_CybersecurityResilienceChapter14EmbeddedandSpecializedSystemsChapter15_PhysicalSecurityControlsChapter16CryptographicConceptsPartITIImplementation

Page 14

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 14 preview image

Loading page image...

Chapter17_SecureProtocolsChapter18HostandApplicationSecurityChapter19SecureNetworkDesignChapter20WirelessSecurityChapter21SecureMobileSolutionsChapter22ImplementingCloudSecurityChapter23_IdentityandAccountManagementControlsChapter24ImplementAuthenticationandAuthorizationChapter25_PublicKeyInfrastructurePartIV_OperationsandIncidentResponseChapter26_Tools/AssessOrganizationalSecurityChapter27IncidentResponsePolicies,Processes,andProceduresChapter28_InvestigationsChapter29MitigationTechniquesandControlsChapter30_DigitalForensicsPartV_Governance,Risk,andComplianceChapter31_SecurityControlsChapter32_Regulations,Standards,andFrameworksChapter33_OrganizationalPoliciesChapter34RiskManagementChapter35_PrivacyPartVIAppendixesandGlossaryAppendixAOSIModelandInternetProtocolsAppendixB_AbouttheOnlineContent

Page 15

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 15 preview image

Loading page image...

GlossaryIndex

Page 16

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 16 preview image

Loading page image...

CONTENTSPrefaceAcknowledgmentsIntroductionObjectiveMap:ExamSY0-601PartIThreats,Attacks,andVulnerabilitiesChapter1SocialEngineeringTechniquesSocialEngineeringMethodsToolsPhishingSmishingVishingSpamSpamoverInstantMessaging(SPIM)SpearPhishingDumpsterDivingShoulderSurfingPharmingTailgatingElicitingInformationWhalingPrependingIdentityFraudInvoiceScamsCredentialHarvestingReconnaissanceHoax

Page 17

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 17 preview image

Loading page image...

ImpersonationThird-PartyAuthorizationContractors/OutsidePartiesOnlineAttacksDefensesWateringHoleAttackTyposquattingPretextingInfluenceCampaignsPrinciples(ReasonsforEffectiveness)AuthorityIntimidationConsensusScarcityFamiliarityTrustUrgencyDefensesChapterReviewQuestionsAnswersChapter2TypeofAttackIndicatorsMalwareRansomwareTrojansWormsPotentiallyUnwantedProgramsFilelessVirusesCommandandControlBotsCrypto-malwareLogicBombsSpywareKeyloggersRemote-AccessTrojans(RATS)

Page 18

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 18 preview image

Loading page image...

RootkitBackdoorsPasswordAttacksSprayingDictionaryBruteForceRainbowTablesPlaintext/UnencryptedPhysicalAttacksMaliciousUniversalSerialBus(USB)CableMaliciousFlashDrivesCardCloningSkimmingAdversarialArtificialIntelligence(AI)TaintedTrainingDataforMachineLearning(ML)SecurityofMachineLearningAlgorithmsSupply-ChainAttacksCloud-Basedvs.On-PremisesAttacksCryptographicAttacksBirthdayCollisionDowngradeChapterReviewQuestionsAnswersChapter3__ApplicationAttackIndicatorsPrivilegeEscalationCross-SiteScriptingInjectionAttacksStructuredQueryLanguage(SQL)Dynamic-LinkLibrary(DLL)LightweightDirectoryAccessProtocol(LDAP)ExtensibleMarkupLanguage(XML)Pointer/ObjectDereferenceDirectoryTraversal

Page 19

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 19 preview image

Loading page image...

BufferOverflowRaceConditionTimeofCheck/TimeofUseImproperErrorHandlingImproperInputHandlingReplayAttacksSessionReplayIntegerOverflowRequestForgeryServer-SideRequestForgeryCross-SiteRequestForgeryApplicationProgrammingInterface(API)AttacksResourceExhaustionMemoryLeakSecureSocketsLayer(SSL)StrippingDriverManipulationShimmingRefactoringPasstheHashChapterReviewQuestionsAnswersChapter4NetworkAttackIndicatorsWirelessEvilTwinRogueAccessPointBluesnarfingBluejackingDisassociationJammingRadioFrequencyIdentification(RFID)NearFieldCommunication(NFC)InitializationVector(IV)On-pathAttackLayer2Attacks

Page 20

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 20 preview image

Loading page image...

AddressResolutionProtocol(ARP)PoisoningMediaAccessControl(MAC)FloodingMACCloningDomainNameSystem(DNS)DomainHijackingDNSPoisoningUniversalResourceLocator(URL)RedirectionDomainReputationDistributedDenial-of-Service(DDoS)NetworkApplicationOperationalTechnology(OT)MaliciousCodeandScriptExecutionPowerShellPythonBashMacrosVisualBasicforApplications(VBA)ChapterReviewQuestionsAnswersChapter5__ThreatActors,Vectors,andIntelligenceSourcesActorsandThreatsAdvancedPersistentThreats(APTs)InsiderThreatsStateActorsHacktivistsScriptKiddiesCriminalSyndicatesHackersShadowITCompetitorsAttributesofActorsInternal/ExternalLevelofSophistication/Capability

Page 21

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 21 preview image

Loading page image...

Resources/FundingIntent/MotivationVectorsDirectAccessWirelessE-mailSupplyChainSocialMediaRemovableMediaCloudThreatIntelligenceSourcesOpenSourceIntelligence(OSINT)Closed/ProprietaryVulnerabilityDatabasesPublic/PrivateInformationSharingCentersDarkWebIndicatorsofCompromiseAutomatedIndicatorSharing(AIS)StructuredThreatInformationExpression(STIX)/TrustedAutomatedExchangeofIntelligenceInformation(TAXI)PredictiveAnalysisThreatMapsFile/CodeRepositoriesResearchSourcesVendorWebsitesVulnerabilityFeedsConferencesAcademicJournalsRequestsforComment(RFCs)LocalIndustryGroupsSocialMediaThreatFeedsAdversaryTactics,Techniques,andProcedures(TTPs)ChapterReview

Page 22

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 22 preview image

Loading page image...

QuestionsAnswersChapter6__VulnerabilitiesCloud-basedvs.On-premisesVulnerabilitiesZeroDayWeakConfigurationsOpenPermissionsUnsecureRootAccountsErrorsWeakEncryptionUnsecureProtocolsDefaultSettingsOpenPortsandServicesThird-PartyRisksVendorManagementSupplyChainOutsourcedCodeDevelopmentDataStorageImproperorWeakPatchManagementFirmwareOperatingSystem(OS)ApplicationsLegacyPlatformsImpactsDataLossDataBreachesDataExfiltrationIdentityTheftFinancialReputationAvailabilityLossChapterReviewQuestionsAnswers

Page 23

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 23 preview image

Loading page image...

Chapter7SecurityAssessmentsThreatHuntingIntelligenceFusionThreatFeedsAdvisoriesandBulletinsManeuverVulnerabilityScansFalsePositivesFalseNegativesLogReviewsCredentialedvs.Non-CredentialedIntrusivevs.Non-IntrusiveApplicationWebApplicationNetworkCommonVulnerabilitiesandExposures(CVE)/CommonVulnerabilityScoringSystem(CVSS)ConfigurationReviewSyslog/SecurityInformationandEventManagement(SIEM)ReviewReportsPacketCaptureDataInputsUserBehaviorAnalysisSentimentAnalysisSecurityMonitoringLogAggregationLogCollectorsSecurityOrchestration,Automation,andResponse(SOAR)ChapterReviewQuestionsAnswersChapter8PenetrationTestingPenetrationTestingKnownEnvironmentUnknownEnvironment

Page 24

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 24 preview image

Loading page image...

PartiallyKnownEnvironmentRulesofEngagementLateralMovementPrivilegeEscalationPersistenceCleanupBugBountyPivotingPassiveandActiveReconnaissanceDronesWarFlyingWarDrivingFootprintingOSINTExerciseTypesRedTeamBlueTeamWhiteTeamPurpleTeamChapterReviewQuestionsAnswersPartITArchitectureandDesignChapter9EnterpriseSecurityArchitectureConfigurationManagementDiagramsBaselineConfigurationStandardNamingConventionsInternetProtocol(IP)SchemaDataSovereigntyDataProtectionDataLossPrevention(DLP)MaskingEncryption

Page 25

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 25 preview image

Loading page image...

AtRestInTransit/MotionInProcessingTokenizationRightsManagementGeographicalConsiderationsResponseandRecoveryControlsSecureSocketsLayer(SSL)/TransportLayerSecurity(TLS)InspectionHashingAPIConsiderationsSiteResiliencyHotSitesWarmSitesColdSitesDeceptionandDisruptionHoneypotsHoneyfilesHoneynetsFakeTelemetryDNSSinkholeChapterReviewQuestionsAnswersChapter10_VirtualizationandCloudSecurityCloudModelsInfrastructureasaService(IaaS)PlatformasaService(PaaS)SoftwareasaService(SaaS)AnythingasaService(XaaS)LevelofControlintheHostingModelsPublicCommunityPrivateHybrid

Page 26

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 26 preview image

Loading page image...

CloudServiceProvidersManagedServiceProvider(MSP)/ManagedSecurityServiceProvider(MSSP)On-Premisesvs.Off-PremisesFogComputingEdgeComputingThinClientContainersMicroservices/APIInfrastructureasCodeSoftware-DefinedNetworking(SDN)Software-DefinedVisibility(SDV)ServerlessArchitectureServicesIntegrationResourcePoliciesTransitGatewayVirtualizationTypelTypeIIVirtualMachine(VM)SprawlAvoidanceVMEscapeProtectionChapterReviewQuestionsAnswersChapter11SecureApplicationDevelopment,Deployment,andAutomationConceptsEnvironmentDevelopmentTestStagingProductionQualityAssurance(QA)ProvisioningandDeprovisioningIntegrityMeasurementSecureCodingTechniques

Page 27

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 27 preview image

Loading page image...

NormalizationStoredProceduresObfuscation/CamouflageCodeReuseandDeadCodeServer-Sidevs.Client-SideExecutionandValidationMemoryManagementUseofThird-PartyLibrariesandSoftwareDevelopmentKits(SDKs)DataExposureOpenWebApplicationSecurityProject(OWASP)SoftwareDiversityCompilersBinariesAutomation/ScriptingAutomatedCoursesofActionContinuousMonitoringContinuousValidationContinuousIntegrationContinuousDeliveryContinuousDeploymentElasticityScalabilityVersionControlChapterReviewQuestionsAnswersChapter12AuthenticationandAuthorizationAuthenticationMethodsDirectoryServicesFederationAttestationTechnologiesSmartCardAuthenticationBiometricsFingerprint

Page 28

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 28 preview image

Loading page image...

RetinaIrisFacialVoiceVeinGaitAnalysisEfficacyRatesFalseAcceptanceFalseRejectionCrossoverErrorRateMultifactorAuthentication(MFA)FactorsandAttributesFactorsAttributesAuthentication,Authorization,andAccounting(AAA)Cloudvs.On-premisesRequirementsChapterReviewQuestionsAnswersChapter13_CybersecurityResilienceRedundancyGeographicDispersalDiskNetworkPowerReplicationStorageAreaNetwork(SAN)VMOn-premisesvs.CloudBackupTypesFullIncrementalSnapshotDifferentialTapeDisk

Page 29

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 29 preview image

Loading page image...

CopyNetworkAttachedStorage(NAS)StorageAreaNetwork(SAN)CloudImageOnlinevs.OfflineDistanceConsiderationsNonpersistenceReverttoKnownStateLastKnown-GoodConfigurationLiveBootMediaHighAvailabilityScalabilityRestorationOrderDiversityTechnologiesVendorsCryptoControlsChapterReviewQuestionsAnswersChapter14EmbeddedandSpecializedSystemsEmbeddedSystemsRaspberryPiFieldProgrammableGateArrays(FPGAs)ArduinoSupervisoryControlandDataAcquisition(SCADA)/IndustrialControlSystem(ICS)FacilitiesIndustrialManufacturingEnergyLogisticsInternetofThings(IoT)

Page 30

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 30 preview image

Loading page image...

SensorsSmartDevicesWearablesFacilityAutomationWeakDefaultsSpecializedSystemsMedicalSystemsVehicleSystemsAircraftSystemsSmartMetersVoiceoverIP(VoIP)Heating,Ventilation,AirConditioning(HVAC)DronesMultifunctionPrinters(MEPs)Real-timeOperatingSystems(RTOSs)SurveillanceSystemsSystemonaChip(SoC)CommunicationConsiderations5GNarrow-BandRadioBasebandRadioSubscriberIdentityModule(SIM)CardsZigbeeConstraintsPowerComputeNetworkCryptographicFunctionsInabilitytoPatchAuthenticationRangeCostImpliedTrustChapterReviewQuestions

Page 31

CompTIA Security+ All-in-One SY0-601 Exam Guide, 6th Edition (2021) - Page 31 preview image

Loading page image...

AnswersChapter15_PhysicalSecurityControlsBollards/BarricadesAccessControlVestibulesBadgesAlarmsSignageCamerasMotionRecognitionObjectDetectionClosed-CircuitTelevision(CCTV)IndustrialCamouflagePersonnelGuardsRobotSentriesReceptionTwo-PersonIntegrity/ControlLocksBiometricsElectronicPhysicalCableLocksUSBDataBlockerLightingFencingFireSuppressionSensorsMotionDetectionNoiseDetectionProximityReaderMoistureDetectionCardsTemperatureDronesVisitorLogs
Preview Mode

This document has 1093 pages. Sign in to access the full document!

Study Now!

XY-Copilot AI
Unlimited Access
Secure Payment
Instant Access
24/7 Support
Document Chat

Document Details

Related Documents

View all