CompTIA Security+ Practice Test of the Day 260719

Welcome to today’s CompTIA Security+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 4.9 (Given a scenario, use data sources to support an investigation) from the CompTIA Security+ SY0-701 objectives.

This beginner-level practice test is inspired by the CompTIA Security+ (SY0-701) exam and is designed to help you reinforce key cybersecurity concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Security+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Security+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Security+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Security+ Study Guide (2026)

CompTIA Security+ Practice Test of the Day 260719
10 questions • Single best answer
Question 1
A forensic analyst at a government agency needs to confirm whether a host communicated with a blocked external IP and which ports were used at the perimeter. Which log source best shows allowed and denied connections at the boundary?
    Question 2
    To reconstruct the exact contents of a suspicious session, an analyst needs the full payload of network traffic, not just summary records. Which data source provides this complete recorded traffic for deep analysis?
      Question 3
      An investigator wants to see which processes executed and which files changed directly on a compromised workstation. Perimeter devices lack this host-level detail. Which log source records this local activity?
        Question 4
        Analyzing a phishing email, an analyst examines header fields, timestamps, and routing information rather than the message body. Which type of data describes this information about the message itself?
          Question 5
          During an investigation, a team wants to know which weaknesses existed on the breached server that an attacker might have exploited. Which data source identifies missing patches and misconfigurations on that host?
            Question 6
            To trace suspicious activity inside a custom web platform, an analyst reviews records the software itself generated about user actions and errors. Which log source captures this software-specific activity?
              Question 7
              An investigator needs to see failed and successful login events and privilege changes recorded by the Windows operating system on a server. Which log source contains these authentication and audit events?
                Question 8
                A SOC manager wants a consolidated visual view summarizing key metrics and active alerts across tools for quick situational awareness during an incident. Which data source presents this at-a-glance visualization?
                  Question 9
                  An analyst wants to review which signatures fired and what malicious patterns a detection sensor observed inline during the attack window. Which log source records these alerts?
                    Question 10
                    Rather than manually compiling data, an analyst relies on scheduled outputs that tools generate and deliver periodically summarizing security posture. Which data source provides these recurring generated summaries?
                      Next step: Hands-on

                      Theory tested. Now put it into practice.

                      The exam checks what you know, but employers check what you can do.

                      HTB Academy’s guided labs cover the same ground hands-on, with you at the keyboard.

                      Build hands-on skills →

                      This is an affiliate link. If you sign up, The Cybersecurity Trail earns a commission at no cost to you.

                      Take more CompTIA Security+ practice tests

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top