CompTIA Security+ (SY0-701) Practice Test: a 360-question practice bank for the real IT Certification standard, 4 full papers of 90 questions each with no repeats, every question citing the real regulation it comes from.
Every question in this bank cites a real source -- primarily SY0-701 (100%) of this exam's citations.
Correct answer: C. Physical
Correct. A badge reader is a physical control: it restricts physical access to a space. The category axis (technical, managerial, operational, physical) describes what kind of thing the control is, separate from its function. Source: SY0-701 objective 1.1.
Correct answer: A. Deterrent
Correct. A deterrent control discourages an attacker from acting by making the attempt seem risky, even when it cannot physically stop or record anything. The sign only changes the attacker's decision. Source: SY0-701 objective 1.1.
Correct answer: B. Compensating
Correct. A compensating control is put in place when the primary control cannot be applied, providing an alternative that reduces the same risk. The segment plus jump host stands in for the missing MFA. Source: SY0-701 objective 1.1.
Correct answer: B. Managerial category, directive type
Correct. A written policy is a managerial (administrative) control, and because it instructs staff on required behavior it functions as a directive control. Category and type are two separate axes and this item asks for both. Source: SY0-701 objective 1.1.
Correct answer: C. Corrective
Correct. Corrective controls act after an incident to restore systems to a working state or limit further damage. Reimaging infected hosts is a textbook corrective action. Source: SY0-701 objective 1.1.