CompTIA Tech+ Practice Questions: Security

34 free, exam-style CompTIA Tech+ (FC0-U71) practice questions covering Security. Each question shows the correct answer and a clear explanation. Ready for the real thing? Take the full timed quiz below.

🚀 Take the full CompTIA Tech+ quiz 📘 CompTIA Tech+ study guide

Q1. What is the main purpose of a firewall?

Explanation: A firewall prevents unauthorized access to or from a network. Learn more.

Q2. Which of the following is a strong password practice?

Explanation: Strong passwords include a mix of character types for better security. Learn more.

Q3. Which protocol is used for secure web browsing?

Explanation: HTTPS (HyperText Transfer Protocol Secure) encrypts web traffic. Learn more.

Q4. Which of the following is a common method of securing wireless networks?

Explanation: WEP (Wired Equivalent Privacy) is an older wireless security protocol (though WPA/WPA2 is more secure). Learn more.

Q5. What is the main risk of using public Wi-Fi?

Explanation: Public Wi-Fi is often unencrypted, making data vulnerable to eavesdropping. Learn more.

Q6. What is the purpose of a VPN?

Explanation: VPNs (Virtual Private Networks) encrypt data to protect privacy over public networks. Learn more.

Q7. Which of these is a characteristic of a strong password?

Explanation: Long passwords (12+ characters) with complexity are more secure. Learn more.

Q8. What is the purpose of multi-factor authentication?

Explanation: MFA requires two or more verification factors for better security. Learn more.

Q9. Which of these is an example of social engineering?

Explanation: Phishing manipulates people into revealing sensitive information. Learn more.

Q10. What is the primary purpose of data encryption?

Explanation: Encryption scrambles data to protect confidentiality. Learn more.

Q11. Which of these is a common symptom of malware infection?

Explanation: Pop-ups and system slowdowns are common malware signs. Learn more.

Q12. What does 'BYOD' stand for in IT security?

Explanation: BYOD refers to employees using personal devices for work. Learn more.

Q13. What is the purpose of a firewall?

Explanation: Firewalls filter traffic based on security rules. Learn more.

Q14. Which of these is a type of malware?

Explanation: Ransomware encrypts files and demands payment. Learn more.

Q15. What is the purpose of an SSL certificate?

Explanation: SSL certificates authenticate websites and enable HTTPS encryption. Learn more.

Q16. Which of these is a physical security control?

Explanation: Physical controls include guards, locks, and badge readers. Learn more.

Q17. What is the principle of least privilege?

Explanation: Least privilege minimizes access to reduce security risks. Learn more.

Q18. Which of these is a characteristic of a strong password?

Explanation: Long passwords (12+ characters) with complexity are more secure. Learn more.

Q19. What is the purpose of multi-factor authentication?

Explanation: MFA requires two or more verification factors for better security. Learn more.

Q20. Which of these is an example of social engineering?

Explanation: Phishing manipulates people into revealing sensitive information. Learn more.

Q21. What is the primary purpose of data encryption?

Explanation: Encryption scrambles data to protect confidentiality. Learn more.

Q22. Which of these is a common symptom of malware infection?

Explanation: Pop-ups and system slowdowns are common malware signs. Learn more.

Q23. What does 'BYOD' stand for in IT security?

Explanation: BYOD refers to employees using personal devices for work. Learn more.

Q24. What is the purpose of a firewall?

Explanation: Firewalls filter traffic based on security rules. Learn more.

Q25. Which of these is a type of malware?

Explanation: Ransomware encrypts files and demands payment. Learn more.

Q26. What is the purpose of an SSL certificate?

Explanation: SSL certificates authenticate websites and enable HTTPS encryption. Learn more.

Q27. Which of these is a physical security control?

Explanation: Physical controls include guards, locks, and badge readers. Learn more.

Q28. What is the principle of least privilege?

Explanation: Least privilege minimizes access to reduce security risks. Learn more.

Q29. Which practice helps protect an account if a password is stolen?

Explanation: Multi-factor authentication requires another proof beyond the password, reducing account takeover risk. Learn more.

Q30. Which attack tries to trick a user into giving away sensitive information?

Explanation: Phishing uses deceptive messages or sites to steal credentials or other sensitive information. Learn more.

Q31. Which type of account should be used for everyday work instead of an administrator account?

Explanation: Using a standard account for daily work reduces damage from mistakes or malware. Learn more.

Q32. Which software type protects against malicious programs?

Explanation: Antimalware software detects, blocks, and removes malicious software. Learn more.

Q33. Which term means making data unreadable without a key?

Explanation: Encryption transforms data so it cannot be read without the proper key. Learn more.

Q34. Which action should be taken when an email attachment is unexpected and suspicious?

Explanation: Unexpected attachments can contain malware or phishing content and should be handled through reporting procedures. Learn more.

More CompTIA Tech+ practice topics