Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIASecurity+

Domain 3Objective 3

Data Protection SY0-701 Practice Questions (Page 4)

Part of the Security architecture domain, which accounts for 18% of the SY0-701 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–11 in this domain), expect 2–3 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)

30questions here
6free pages
7concepts
18%of the exam

Questions 16–20

  1. 16application · medium

    A healthcare organization stores patient intake forms as PDF documents in a document management system. Each form contains a patient's name, date of birth, and medical history in labeled fields. The organization also maintains a separate relational database that links patient IDs to appointment times and billing codes. An analyst needs to apply different security controls to these two data stores. How should the analyst categorize the data in the document management system and the relational database, respectively?

    Select an answer first
  2. 17application · medium

    A cloud storage provider offers a feature that allows customers to encrypt their data before uploading it to the cloud. The provider does not have access to the encryption keys. What is this an example of?

    Select an answer first
  3. 18expert · hard

    A security analyst is verifying the integrity of a critical database backup. The analyst has the original SHA-256 hash of the backup file. After downloading the backup from a remote storage location, the analyst calculates the hash of the downloaded file and finds it does not match the original. What is the most likely cause of this mismatch?

    Select an answer first
  4. 19foundation · easy

    A security analyst is reviewing the data inventory and encounters a CSV file containing customer records with fields such as name, address, and phone number. Which data type best describes this file?

    Select an answer first
  5. 20application · medium

    A retail company collects customer data from multiple sources: a loyalty program database (with customer IDs, names, and purchase history), a web analytics tool that generates clickstream logs, and a mobile app that sends JSON payloads with user preferences. The data protection officer needs to classify these data types. How should the officer categorize the clickstream logs and the JSON payloads, respectively?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SY0-701” is a trademark of its owner, used for identification only.