CompTIA Security+ Practice Test of the Day 260716

Welcome to today’s CompTIA Security+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 4.6 (Given a scenario, implement and maintain identity and access management) from the CompTIA Security+ SY0-701 objectives.

This beginner-level practice test is inspired by the CompTIA Security+ (SY0-701) exam and is designed to help you reinforce key cybersecurity concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Security+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Security+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Security+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Security+ Study Guide (2026)

CompTIA Security+ Practice Test of the Day 260716
10 questions • Single best answer
Question 1
A cloud security engineer at a SaaS startup wants employees to log in once and reach multiple web applications using XML-based assertions exchanged between an identity provider and service providers. Which standard supports this browser-based single sign-on?
    Question 2
    A developer needs a third-party application to reach a user's data on another service without sharing the user's password, using delegated authorization tokens instead. Which framework is designed for this delegated access?
      Question 3
      A security manager reviews accounts and finds users hold permissions far beyond their job duties. She wants each account limited to only the rights required to perform assigned tasks. Which principle should guide the remediation?
        Question 4
        An organization wants access decisions evaluated dynamically from characteristics such as department, device type, location, and time rather than fixed roles. Policies should combine multiple attributes at request time. Which access control model fits?
          Question 5
          A company wants administrators to receive elevated rights only for the brief window they perform a task, with access automatically revoked afterward. Standing privileged accounts should be eliminated. Which PAM approach accomplishes this?
            Question 6
            A user logs in with a password plus a one-time code from a hardware token they carry. A security analyst classifies the token for an authentication audit. Which factor category does the token represent?
              Question 7
              During an offboarding review, HR notes several terminated employees still have active accounts weeks after departure. The security team wants a process that promptly disables identities when workers leave. Which activity addresses this gap?
                Question 8
                Before issuing credentials, a bank must confirm that new customers are genuinely who they claim to be by validating government documents and personal information. Which IAM process establishes this confidence in an identity?
                  Question 9
                  A help desk sees users reusing weak passwords because they cannot remember many unique ones. Management wants a tool that generates and stores strong credentials in an encrypted vault for each site. Which solution helps?
                    Question 10
                    A university wants students to use their campus credentials to log in to external research portals run by partner institutions. Trust must be established so one organization accepts identities asserted by another. Which concept enables this?
                      Next step: Hands-on

                      Theory tested. Now put it into practice.

                      The exam checks what you know, but employers check what you can do.

                      HTB Academy’s guided labs cover the same ground hands-on, with you at the keyboard.

                      Build hands-on skills →

                      This is an affiliate link. If you sign up, The Cybersecurity Trail earns a commission at no cost to you.

                      Take more CompTIA Security+ practice tests

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top