
CompTIAServer+
Domain 3Objective 4
Mitigation Strategies SK0-005 Practice Questions (Page 5)
Part of the Security and disaster recovery domain, which accounts for 24% of the SK0-005 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~8–14 in this domain), expect 1–2 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)
33questions here
7free pages
7concepts
24%of the exam
Questions 21–25
- 21
A SIEM administrator needs to configure the system to detect a potential brute-force attack on a critical database server. The attack is expected to involve multiple failed logins from different IP addresses over a short period. Which SIEM configuration is most appropriate?
Select an answer first - 22
How can a SIEM support incident response during a security breach?
Select an answer first - 23
Which SIEM feature is most useful for forensic investigations after an incident?
Select an answer first - 24
A security analyst is investigating a potential malware outbreak. The SIEM has collected logs from multiple sources. Which SIEM feature would help the analyst quickly identify all affected systems?
Select an answer first - 25
A server administrator notices that several file servers are exhibiting high CPU usage and slow response times. An antivirus scan reveals a file that replicates itself across network shares and modifies documents to include a malicious macro. The administrator needs to contain the spread and prevent recurrence. Which action should the administrator take FIRST?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SK0-005” is a trademark of its owner, used for identification only.