Practice for the CompTIA A+ Core 2 exam with 17 exam-style practice questions, instant answer reveals, and concise explanations of every correct answer. Topics include: Which mobile device strategy is most likely to introduce vulnerable devices to a corporate network?. Follow @CertPunch and visit certpunch.com for more certification practice exams and study content.
Prefer hands-on? Take this round as an interactive practice test — answer every question, get instant feedback, and see your score: Start the CompTIA A+ Core 2 practice test →
What you will practice
- Which mobile device strategy is most likely to introduce vulnerable devices to a corporate network?
- Which of the following BEST describes the process of documenting everyone who has physical access or possessi…
- Which of the following features is supported by Kerberos but not by RADIUS?
- Which of the following backup rotation schemes uses a three-tiered approach to ensure at least one monthly fu…
- Jason checks the Dion Training server room and finds that it currently has only 10% humidity. Which of the fo…
- A web server has a planned firmware upgrade for Saturday evening. During the upgrade, the power to the buildi…
Answers and explanations
Tap a question to expand the answer and the exam reasoning. Try to commit to your own pick first.
Q1. Which mobile device strategy is most likely to introduce vulnerable devices to a corporate network?
Answer: D. BYOD
Bring your own device (BYOD) allows personal devices to access corporate networks, which can introduce vulnerabilities because IT has less control over patching and security. For the exam, remember that MDM, COPE, and CYOD provide centralized management, whereas BYOD relies heavily on end-user compliance.
Q2. Which of the following BEST describes the process of documenting everyone who has physical access or possession of evidence?
Answer: D. Chain of custody
A chain of custody tracks the handling, transfer, and physical possession of evidence to preserve its integrity for legal proceedings. A legal hold only preserves data from deletion, while financial responsibility and secure copy protocol do not track evidence handling at all.
Q3. Which of the following features is supported by Kerberos but not by RADIUS?
Answer: A. Tickets used to identify authenticated users
Kerberos relies on a system of encrypted tickets to prove user identity over an unsecured network. While single sign-on is supported by both Kerberos and RADIUS, the ticketing mechanism itself is the defining, exclusive feature of the Kerberos protocol on the exam.
Q4. Which of the following backup rotation schemes uses a three-tiered approach to ensure at least one monthly full backup is conducted?
Answer: B. Grandfather-father-son
The grandfather-father-son scheme is a three-tiered backup rotation using daily, weekly, and monthly cycles to ensure regular full backups. The 3-2-1 rule is a data preservation strategy, not a rotation schedule, and Tower of Hanoi relies on complex media set rotations.
Q5. Jason checks the Dion Training server room and finds that it currently has only 10% humidity. Which of the following risks to the servers could occur due to this low humidity level?
Answer: D. Accidental static discharge
Low humidity increases the risk of accidental electrostatic discharge, which can severely damage sensitive server components. High humidity, conversely, promotes corrosion on metal contacts, so server rooms must maintain humidity levels between forty and sixty percent to balance both risks.
Q6. A web server has a planned firmware upgrade for Saturday evening. During the upgrade, the power to the building is lost, and the firmware upgrade fails. Which of the following plans should be implemented to revert to the most recent workin…
Answer: B. Rollback plan
A rollback plan provides the exact steps needed to restore a system to its previous state following a failed update or aborted implementation. A contingency plan handles broader disaster recovery, whereas a backup plan focuses strictly on restoring lost data, not reverting firmware changes.
Q7. Your friend is concerned that someone might be listening to her daily conversations when her smartphone is still in her purse. Which of the following threats is this an example of?
Answer: A. Unauthorized microphone activation
Unauthorized microphone activation best matches the scenario because malware can silently use the phone's mic to eavesdrop. Unintended Bluetooth pairing fails since that involves unauthorized data connections rather than listening to conversations.
Q8. Which of the following types of attacks occurs when an attacker specifically targets the CEO, CFO, CIO, and other board members during their attack?
Answer: D. Whaling
Whaling is correct because it is a specialized phishing attack that targets high-profile executives like CEOs. Spear phishing is a strong distractor but covers any targeted individual rather than focusing specifically on senior leadership.
Q9. The video editor at Dion Training is having issues with her workstation. The workstation is running Windows 10 and is failing to boot up properly. A technician wants to replace the existing operating system files with a new copy of the sam…
Answer: C. Repair installation
A repair installation replaces corrupted Windows system files while keeping user data and apps intact. An in-place upgrade is the strongest distractor, but it moves the system to a newer operating system version rather than simply repairing the current one.
Q10. Which of the following Windows tools can a technician use to gather information about a workstation and create a comprehensive list of hardware, system components, and the software environment used by that workstation?
Answer: B. msinfo32.exe
The msinfo32 utility creates a comprehensive list of hardware resources and the software environment. Device Manager is the strongest distractor, but it primarily displays status and drivers for hardware devices rather than a full system software summary.
Q11. Which of the following types of screen locks uses a biometric authentication mechanism that relies upon mapping the geography of a user's eyes, nose, mouth, and other features before granting access to a mobile device?
Answer: B. FaceID
FaceID maps facial geography using infrared scanning to grant mobile device access. TouchID is a strong distractor because it is also biometric, but it relies on fingerprint mapping rather than analyzing facial features like the eyes, nose, and mouth.
Q12. A research team is developing a predictive analytics model for industry trends. They have the option to train their AI using publicly available data or a proprietary dataset compiled from verified sources within their organization. The acc…
Answer: B. Data source
Data source is correct because verified proprietary information directly improves AI reliability. Processor speed is a strong distractor, but hardware performance only affects how fast the model trains rather than the actual trustworthiness of the data.
Q13. Which of the following physical security controls would be the most effective in preventing an attacker from driving a vehicle through the glass doors at the front of the organization's headquarters?
Answer: A. Bollards
Bollards are heavy physical posts specifically designed to stop a vehicle from ramming into building entrances. An access control vestibule is the strongest distractor, but it primarily stops individuals from tailgating rather than stopping a moving car.
Q14. Which of the following sections of the Control Panel should a technician use to edit the account profile related to a user's Microsoft Outlook client?
Answer: C. Mail
The Mail applet in the Windows Control Panel manages Microsoft Outlook profiles, allowing technicians to configure or delete user email settings. User Accounts handles Windows logon credentials, not application-specific Outlook profiles.
Q15. Samuel's computer is taking a very long time to boot up, and he has asked for your help speeding it up. Which TWO of the following actions should you perform to BEST resolve this issue with the least amount of expense?
Answer: C,E. Defragment the hard drive || Remove unnecessary applications from startup
Defragmenting the hard drive and removing unnecessary startup applications are free methods that effectively reduce system boot times. Upgrading to an SSD or adding RAM also improves performance, but these cost money.
Q16. Your company recently downloaded and installed the latest audio card driver for all of its workstations. Now, several users have had their usernames and passwords for several websites compromised. You believe the two issues are related. If…
Answer: C. Keylogger
A keylogger captures user keystrokes to steal credentials, which explains the compromised usernames and passwords following the driver update. Ransomware encrypts files, worms replicate independently, and standard viruses usually disrupt system operations.
Q17. An IT department is implementing a change management process to minimize disruptions when modifying systems. They need to classify changes based on impact and urgency, such as distinguishing a routine printer driver update from a major net…
Answer: A. Identifying the change type
Identifying the change type allows IT to categorize modifications by impact and urgency, ensuring proper change management procedures. Security audits, least privilege, and acceptable use policies are vital security controls but do not classify system changes.
More CompTIA A+ Core 2 drills and other practice exams are on @CertPunch. New rounds drop every few days at certpunch.com.