CompTIA Security+ Practice Test of the Day 090125

Welcome to today’s CompTIA Security+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 1.2 (Summarize fundamental security concepts) from the CompTIA Security+ SY0-701 objectives.

This beginner-level practice test is inspired by the CompTIA Security+ (SY0-701) exam and is designed to help you reinforce key cybersecurity concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Security+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Security+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Security+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Security+ Study Guide (2026)

CompTIA Security+ Practice Test of the Day 090125
10 questions • Single best answer
Question 1
An employee accidentally overwrites a critical database table with incorrect values during a batch update. The data is now inaccurate but remains accessible and no unauthorized party viewed it. Which CIA triad principle was MOST directly violated?
    Question 2
    A legal team investigating an insider threat needs to prove a specific employee sent an email authorizing a fraudulent fund transfer. The email system uses S/MIME digital signatures on all outbound messages. Which security concept MOST directly supports proving the email's origin?
      Question 3
      A network administrator remotely connects to a network device and makes configuration changes. The SIEM records the admin's username, commands issued, source IP address, and timestamp of each change. Which AAA component BEST describes this logging behavior?
        Question 4
        In a Zero Trust architecture, the control plane makes policy decisions and the data plane enforces them. A policy denies database access to devices failing a health check. The component that receives the access request and enforces the deny decision in real time operates in which plane?
          Question 5
          A security team configures DNS so that queries for known C2 server domains are redirected to a controlled server that logs connections and returns null responses, preventing malware from reaching its operator. Which deception and disruption technology is described?
            Question 6
            A security team embeds a fake AWS access key in a publicly accessible GitHub repository. The key is actively monitored, and any attempt to use it generates an immediate alert to the SOC. Which deception technology BEST represents the embedded fake credential?
              Question 7
              A corporate campus installs reinforced concrete pillars at the entrance to its parking structure to prevent vehicles from being used as weapons or driven into the building. Which physical security control is described?
                Question 8
                A Zero Trust architecture is redesigned so users can only access the specific applications required for their role, eliminating broad internal network access. Users can no longer browse freely across internal segments. Which Zero Trust concept BEST describes this design principle?
                  Question 9
                  After reviewing a financial institution's security program, auditors find it lacks DLP tools, insider threat monitoring, and a formal incident response plan. A consultant documents the difference between the current state and NIST CSF requirements. Which process BEST describes the consultant's activity?
                    Question 10
                    A user attempts to access a restricted payroll application. The system first verifies the user's identity using MFA, then checks whether the user's role includes payroll permissions before granting entry. The permission check after identity verification represents which AAA component?
                      Cybersecurity Acronyms Desk Mat

                      Tired of Googling acronyms while practicing/studying?
                      Keep them all under your keyboard.

                      📋 GET_THE_DESK_MAT

                      Take more CompTIA Security+ practice tests

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top