
CompTIASecurity+
Domain 4Objective 3
Vulnerability Management SY0-701 Practice Questions (Page 4)
Part of the Security operations domain, which accounts for 28% of the SY0-701 exam. CompTIA does not publish an official question count, but from its 90-minute exam (~35–60 total, ~10–17 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
5concepts
28%of the exam
Questions 16–20
- 16
A vulnerability scan has identified a critical vulnerability in a legacy system that is no longer supported by the vendor. The system is critical to operations and cannot be replaced in the short term. The security team has implemented a virtual patch using an IPS. What is the most important next step?
Select an answer first - 17
Which of the following is a common method used to validate that a vulnerability has been remediated?
Select an answer first - 18
A vulnerability scan identified a medium-severity vulnerability in a web server. The security team has applied a configuration change to mitigate the issue. What is the next step in the vulnerability management process?
Select an answer first - 19
A company's vulnerability scanner has identified a critical remote code execution vulnerability in a legacy application that cannot be patched because the vendor no longer provides updates. The application is business-critical and cannot be taken offline. Which remediation strategy should the security team implement first?
Select an answer first - 20
What is the purpose of a remediation plan?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “SY0-701” is a trademark of its owner, used for identification only.