Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIASecurity+

Domain 5Objective 1

Security Governance SY0-701 Practice Questions (Page 3)

Part of the Security program management and oversight domain, which accounts for 20% of the SY0-701 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~7–12 in this domain), expect 1–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)

30questions here
6free pages
8concepts
20%of the exam

Questions 11–15

  1. 11foundation · easy

    Which external factor most directly requires an organization to implement specific data protection controls?

    Select an answer first
  2. 12expert · hard

    A multinational corporation is restructuring its security governance. Currently, each regional office has its own security team that sets local policies, leading to inconsistent security postures. The new CISO wants to ensure global compliance with regulatory requirements while still allowing regional flexibility for local laws. Which governance structure best achieves this balance?

    Select an answer first
  3. 13application · medium

    A healthcare organization is updating its security governance framework. The compliance officer notes that the organization must align with HIPAA, which requires specific safeguards for electronic protected health information (ePHI). The organization also operates in a state with stricter data breach notification laws. What is the most appropriate action for the governance committee?

    Select an answer first
  4. 14application · medium

    A mid-sized company is establishing a security governance structure. The CEO wants to ensure that security decisions are made with input from various departments, but also wants a single point of accountability. Which structure would best meet these needs?

    Select an answer first
  5. 15application · medium

    A software development company wants to ensure that all applications use a consistent, secure authentication method. The security team has decided that all new applications must use OAuth 2.0 with PKCE for mobile clients. Which governance document should formally mandate this requirement?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SY0-701” is a trademark of its owner, used for identification only.