CompTIA Security+ Practice Test of the Day 260617

Welcome to today’s CompTIA Security+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 4.5 (Given a scenario, modify enterprise capabilities to enhance security) from the CompTIA Security+ SY0-701 objectives.

This beginner-level practice test is inspired by the CompTIA Security+ (SY0-701) exam and is designed to help you reinforce key cybersecurity concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Security+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Security+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Security+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Security+ Study Guide (2026)

CompTIA Security+ Practice Test of the Day 260617
10 questions • Single best answer
Question 1
A network engineer at a government agency wants to verify a sender's mail server is authorized to send for a domain using a published list of permitted IPs. Which email mechanism does this?
    Question 2
    A security team wants endpoints to be monitored continuously for malicious behavior with the ability to investigate and respond to threats. Which capability best fits?
      Question 3
      An administrator wants to block users from reaching known malicious websites by intercepting and evaluating domain lookups. Which control accomplishes this?
        Question 4
        A Windows administrator must apply consistent security settings across thousands of domain workstations from a central point. Which mechanism is most appropriate?
          Question 5
          A firewall administrator needs to permit only inbound HTTPS while denying all other inbound traffic to a web server. Which firewall element defines this behavior?
            Question 6
            A monitoring tool detects an intrusion attempt and actively drops the malicious packets inline before they reach the target. Which system behaves this way?
              Question 7
              An organization wants to ensure only compliant, authenticated devices can join the corporate LAN, quarantining noncompliant ones. Which control enforces this?
                Question 8
                A security analyst wants to detect when critical system files are altered unexpectedly, signaling possible tampering. Which capability provides this?
                  Question 9
                  A company routes all web traffic through a single device that inspects URLs, categorizes content, and applies block rules. Which deployment is described?
                    Question 10
                    A team replaces legacy plaintext services by selecting encrypted alternatives such as SSH and HTTPS across the environment. Which practice does this represent?
                      Cybersecurity Acronyms Desk Mat

                      Tired of Googling acronyms while practicing/studying?
                      Keep them all under your keyboard.

                      📋 GET_THE_DESK_MAT

                      Take more CompTIA Security+ practice tests

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top