Exit demo CAS-002 CompTIA Advanced Security Practitioner (CASP+) PDF format · free preview

CompTIA CAS-002 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/cas-002.html

Question 1
Single choice

About twice a year a switch fails in a company's network center. Under the maintenance contract, the switch would be replaced in two hours losing the business $1,000 per hour. The cost of a spare switch is $3,000 with a 12-hour delivery time and would eliminate downtime costs if purchased ahead of time. The maintenance contract is $1,500 per year.

Which of the following is true in this scenario?

A.

It is more cost-effective to eliminate the maintenance contract and purchase a replacement upon failure.

B.

It is more cost-effective to purchase a spare switch prior to an outage and eliminate the maintenance contract.

C.

It is more cost-effective to keep the maintenance contract instead of purchasing a spare switch prior to an outage.

D.

It is more cost-effective to purchase a spare switch prior to an outage and keep the maintenance contract.

Question 2
Single choice

The security administrator is responsible for the confidentiality of all corporate data. The company's servers are located in a datacenter run by a different vendor. The vendor datacenter hosts servers for many different clients, all of whom have access to the datacenter. None of the racks are physically secured. Recently, the company has been the victim of several attacks involving data injection and exfiltatration. The security administrator suspects these attacks are due to several new network based attacks facilitated by having physical access to a system.

Which of the following BEST describes how to adapt to the threat?

A.

Apply port security to all switches, switch to SCP, and implement IPSec tunnels between devices.

B.

Apply two factor authentication, require point to point VPNs, and enable log auditing on all devices.

C.

Apply port security to all routers, switch to telnet, and implement point to point VPNs on all servers.

D.

Apply three factor authentication, implement IPSec, and enable SNMP.

Question 3
Single choice

Several business units have requested the ability to use collaborative web-based meeting places with third party vendors. Generally these require user registration, installation of client-based ActiveX or Java applets, and also the ability for the user to share their desktop in read-only or read-write mode.
In order to ensure that information security is not compromised, which of the following controls is BEST suited to this situation?

A.

Disallow the use of web-based meetings as this could lead to vulnerable client-side components being installed, or a malicious third party gaining read-write control over an internal workstation.

B.

Hire an outside consultant firm to perform both a quantitative and a qualitative risk-based assessment.
Based on the outcomes, if any risks are identified then do not allow web-based meetings. If no risks are identified then go forward and allow for these meetings to occur.

C.

Allow the use of web-based meetings, but put controls in place to ensure that the use of these meetings is logged and tracked.

D.

Evaluate several meeting providers. Ensure that client-side components do not introduce undue security risks. Ensure that the read-write desktop mode can either be prevented or strongly audited.

Question 4
Single choice

A large corporation which is heavily reliant on IT platforms and systems is in financial difficulty and needs to drastically reduce costs in the short term to survive. The Chief Financial Officer (CFO) has mandated that all IT and architectural functions will be outsourced and a mixture of providers will be selected. One provider will manage the desktops for five years, another provider will manage the network for ten years, another provider will be responsible for security for four years, and an offshore provider will perform day to day business processing functions for two years. At the end of each contract the incumbent may be renewed or a new provider may be selected.

Which of the following are the MOST likely risk implications of the CFO's business decision?

A.

Strategic architecture will be adversely impacted through the segregation of duties between the providers. Vendor management costs will remain unchanged.
The risk position of the organization will decline as specialists now maintain the environment. The implementation of security controls and security updates will improve. Internal knowledge of IT systems will improve as providers maintain system documentation.

B.

Strategic architecture will improve as more time can be dedicated to strategy. System stability will improve as providers use specialists and tested processes to maintain systems. Vendor management costs will increase and the organization's flexibility to react to new market conditions will be reduced slightly. Internal knowledge of IT systems will improve as providers maintain system documentation.
The risk position of the organization will remain unchanged.

C.

Strategic architecture will not be impacted in the short term, but will be adversely impacted in the long term through the segregation of duties between the providers. Vendor management costs will stay the same and the organization's flexibility to react to new market conditions will be improved through best of breed technology implementations.
Internal knowledge of IT systems will decline over time. The implementation of security controls and security updates will not change.

D.

Strategic architecture will be adversely impacted through the segregation of duties between the providers. Vendor management costs will increase and the organization's flexibility to react to new market conditions will be reduced. Internal knowledge of IT systems will decline and decrease future platform development. The implementation of security controls and security updates will take longer as
responsibility crosses multiple boundaries.

Question 5
Single choice

A developer is coding the crypto routine of an application that will be installed on a standard headless and diskless server connected to a NAS housed in the datacenter. The developer has written the following six lines of code to add entropy to the routine:

1 - If VIDEO input exists, use video data for entropy

2 - If AUDIO input exists, use audio data for entropy 3 - If MOUSE input exists, use mouse data for entropy

4 - IF KEYBOARD input exists, use keyboard data for entropy

5 - IF IDE input exists, use IDE data for entropy

6 - IF NETWORK input exists, use network data for entropy

Which of the following lines of code will result in the STRONGEST seed when combined?

A.

2 and 1

B.

3 and 5

C.

5 and 2

D.

6 and 4

Question 6
Single choice

A team of security engineers has applied regulatory and corporate guidance to the design of a corporate network. The engineers have generated an SRTM based on their work and a thorough analysis of the complete set of functional and performance requirements in the network specification.

Which of the following BEST describes the purpose of an SRTM in this scenario?

A.

To ensure the security of the network is documented prior to customer delivery

B.

To document the source of all functional requirements applicable to the network

C.

To facilitate the creation of performance testing metrics and test plans

D.

To allow certifiers to verify the network meets applicable security requirements

Question 7
Single choice

A security administrator must implement a SCADA style network overlay to ensure secure remote management of all network management and infrastructure devices.

Which of the following BEST describes the rationale behind this architecture?

A.

A physically isolated network that allows for secure metric collection.

B.

A physically isolated network with inband management that uses two factor authentication.

C.

A logically isolated network with inband management that uses secure two factor authentication.

D.

An isolated network that provides secure out-of-band remote management.

Question 8
Single choice

A financial institution wants to reduce the costs associated with managing and troubleshooting employees' desktops and applications, while keeping employees from copying data onto external storage. The Chief Information Officer (CIO) has asked the security team to evaluate four solutions submitted by the change management group.

Which of the following BEST accomplishes this task?

A.

Implement desktop virtualization and encrypt all sensitive data at rest and in transit.

B.

Implement server virtualization and move the application from the desktop to the server.

C.

Implement VDI and disable hardware and storage mapping from the thin client.

D.

Move the critical applications to a private cloud and disable VPN and tunneling.

Question 9
Multiple choice

A corporation has expanded for the first time by integrating several newly acquired businesses.

Which of the following are the FIRST tasks that the security team should undertake? (Select TWO).

A.

Remove acquired companies Internet access.

B.

Federate identity management systems.

C.

Install firewalls between the businesses.

D.

Re-image all end user computers to a standard image.

E.

Develop interconnection policy.

F.

Conduct a risk analysis of each acquired company's networks.

Question 10
Single choice

A security manager is developing new policies and procedures.

Which of the following is a best practice in end user security?

A.

Employee identity badges and physical access controls to ensure only staff are allowed onsite.

B.

A training program that is consistent, ongoing, and relevant.

C.

Access controls to prevent end users from gaining access to confidential data.

D.

Access controls for computer systems and networks with two-factor authentication.

Showing 10 of 732 questions · Unlock the full set