Book Image

CompTIA Security+: SY0-601 Certification Guide - Second Edition

By : Ian Neil
Book Image

CompTIA Security+: SY0-601 Certification Guide - Second Edition

By: Ian Neil

Overview of this book

The CompTIA Security+ certification validates the fundamental knowledge required to perform core security functions and pursue a career in IT security. Authored by Ian Neil, a world-class CompTIA certification trainer, this book is a best-in-class study guide that fully covers the CompTIA Security+ 601 exam objectives. Complete with chapter review questions, realistic mock exams, and worked solutions, this guide will help you master the core concepts to pass the exam the first time you take it. With the help of relevant examples, you'll learn fundamental security concepts from certificates and encryption to identity and access management (IAM). As you progress, you'll delve into the important domains of the exam, including cloud security, threats, attacks and vulnerabilities, technologies and tools, architecture and design, risk management, cryptography, and public key infrastructure (PKI). You can access extra practice materials, including flashcards, performance-based questions, practical labs, mock exams, key terms glossary, and exam tips on the author's website at securityplus.training. By the end of this Security+ book, you'll have gained the knowledge and understanding to take the CompTIA exam with confidence.
Table of Contents (24 chapters)
1
Objectives for the CompTIA Security+ 601 exam
Free Chapter
2
Section 1: Security Aims and Objectives
7
Section 2: Monitoring the Security Infrastructure
12
Section 3: Protecting the Security Environment
17
Section 4: Mock Tests
18
Chapter 13: Mock Exam 1
19
Mock Exam 1 Solutions
20
Chapter 14: Mock Exam 2
21
Mock Exam 2 Solutions

Chapter 12 – Dealing with Incident Response Procedures

  1. RAID 5 has a minimum of three disks, and you can afford to lose one disk without losing data. It has single parity.
  2. RAID 6 has a minimum of four disks. It can afford to lose two disks as it has double parity.
  3. RAID 5 has single parity and can lose one disk, whereas RAID 6 has double parity and can lose two disks.
  4. A diskless virtual host will get its disk space from a SAN.
  5. A SAN will use fast disks, such as SSDs.
  6. Cloud storage for personal users could be iCloud, Google Drive, Microsoft OneDrive, or Dropbox.
  7. Eradication refers to the removal of viruses and reduction of the services being used. The domain controller should be isolated, and this is the containment phase. The virus would be removed in the eradication phase, and then be placed back online. This is the recovery phase.
  8. A simulation is where the IRP team is given a specific scenario to deal with.
  9. This is an aid to help prepare...