CompTIA Security+ Practice Test of the Day 072325

Welcome to today’s CompTIA Security+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 4.2 (Explain the security implications of proper hardware, software, and data asset management) from the CompTIA Security+ SY0-701 objectives.

This beginner-level practice test is inspired by the CompTIA Security+ (SY0-701) exam and is designed to help you reinforce key cybersecurity concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Security+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Security+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Security+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Security+ Study Guide (2026)

CompTIA Security+ Practice Test of the Day 072325
10 questions • Single best answer
Question 1
An IT technician is decommissioning old hard drives from retired workstations. Compliance policy requires that no data can be recovered from any drive. She uses a DoD-standard tool to overwrite every sector multiple times with random patterns before the drives are disposed of. Which sanitization method is being used?
    Question 2
    A healthcare organization retires a fleet of tablets that nurses used to access patient records. The security team runs an overwriting tool on each device, then contracts a third-party firm to physically shred all of them. The vendor provides a signed document confirming the destruction was performed. Which asset decommissioning element does the signed document represent?
      Question 3
      A security analyst discovers that several servers running in a data center do not appear in the CMDB and were never formally registered. An attacker exploited one of these untracked servers to pivot deeper into the network. Which asset management practice, if implemented, would have MOST directly prevented this gap?
        Question 4
        A company's procurement policy requires that all new software purchases be reviewed by the security team before a license is acquired to ensure the product does not introduce unacceptable risk. A department manager orders a cloud-based project tool directly with a personal credit card to avoid the process. Which risk does this action MOST directly introduce?
          Question 5
          During an audit, an assessor finds that dozens of old employee laptops were donated to a local school without any data removal process. Several laptops still contain cached credentials and sensitive project files. Which decommissioning step was skipped?
            Question 6
            A financial institution assigns each server a unique asset tag and tracks it in a centralized system that records the owner, location, installed software, and last-known configuration. Which asset management function does this BEST describe?
              Question 7
              An organization's asset policy states that each device must have a designated individual responsible for its security posture, patch status, and proper decommissioning. This person is responsible for decisions about the device throughout its lifecycle. Which assignment/accounting concept does this describe?
                Question 8
                A legal team places a formal hold on all email and files related to an ongoing litigation matter, preventing employees from deleting or modifying those records even if the organization's normal data retention schedule would otherwise allow it. Which concept is the legal team applying?
                  Question 9
                  A government contractor physically destroys SSDs from classified systems using an industrial shredder that reduces them to small fragments too small to reassemble. Which data destruction method is being used, and why is it preferred over overwriting for SSDs?
                    Question 10
                    A company issues corporate laptops to employees but allows limited personal use. The organization owns and manages the devices, installs required security software, and retains full control over the configuration. Employees may install approved personal apps within defined boundaries. Which mobile deployment model does this describe?
                      Cybersecurity Acronyms Desk Mat

                      Tired of Googling acronyms while practicing/studying?
                      Keep them all under your keyboard.

                      📋 GET_THE_DESK_MAT

                      Take more CompTIA Security+ practice tests

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top