Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIASecurity+

Domain 5Objective 3

Third-Party Risk SY0-701 Practice Questions (Page 2)

Part of the Security program management and oversight domain, which accounts for 20% of the SY0-701 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~7–12 in this domain), expect 1–2 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)

27questions here
6free pages
6concepts
20%of the exam

Questions 6–10

  1. 6foundation · easy

    Which activity is an example of ongoing vendor monitoring?

    Select an answer first
  2. 7application · medium

    A multinational corporation is evaluating a new payroll vendor that will process employee data for multiple countries. The vendor is based in a country with different data protection laws. Which of the following is the MOST important factor to consider during the vendor assessment?

    Select an answer first
  3. 8application · medium

    A company is hiring a third-party to conduct a social engineering assessment of its employees. The company wants to ensure that the assessment does not violate any laws or employee privacy rights. Which of the following should be included in the rules of engagement?

    Select an answer first
  4. 9expert · hard

    A large enterprise is evaluating a new SaaS vendor for its customer relationship management (CRM) system. The vendor will store customer data, including personal information. The enterprise's security team has limited time and resources. They have received a completed security questionnaire from the vendor, but the vendor has not provided any third-party audit reports. Which of the following is the BEST next step?

    Select an answer first
  5. 10expert · hard

    A company is contracting with a vendor that will provide remote support for its internal applications. The vendor will need to access the company's network via VPN. The company wants to ensure that the vendor's access is limited to only the necessary systems and timeframes. Which of the following is the BEST way to address this in the vendor agreement?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SY0-701” is a trademark of its owner, used for identification only.