Exit demo CAS-005 CompTIA SecurityX PDF format · free preview

CompTIA CAS-005 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/cas-005.html

Question 1
Single choice

A company wants to install a three-tier approach to separate the web, database, and application servers.
A security administrator must harden the environment which of the following is the best solution?

A.

Deploying a VPN to prevent remote locations from accessing server VLANs

B.

Configuring a SASb solution to restrict users to server communication

C.

Implementing microsegmentation on the server VLANs

D.

Installing a firewall and making it the network core

Question 2
Single choice

A company wants to implement hardware security key authentication for accessing sensitive information systems. The goal is to prevent unauthorized users from gaining access with a stolen password.

Which of the following models should the company implement to best solve this issue?

A.

Rule based

B.

Time-based

C.

Role based

D.

Context-based

Question 3
Single choice

A systems administrator wants to use existing resources to automate reporting from disparate security appliances that do not currently communicate.

Which of the following is the best way to meet this objective?

A.

Configuring an API Integration to aggregate the different data sets

B.

Combining back-end application storage into a single, relational database

C.

Purchasing and deploying commercial off the shelf aggregation software

D.

Migrating application usage logs to on-premises storage

Question 4
Single choice

A security analyst received a report that an internal web page is down after a company-wide update to the web browser Given the following error message:

Your connection is not private.
Attackers might be trying to steal your information for
www.internalwebsite.company.com.NET::ERR_CERT_WEAK_SIGNATURE_ALGORITHM

Which of the following is the best way to fix this issue?

A.

Rewriting any legacy web functions

B.

Disabling all deprecated ciphers

C.

Blocking all non-essential pons

D.

Discontinuing the use of self-signed certificates

Question 5
Single choice

A company detects suspicious activity associated with external connections Security detection tools are unable to categorize this activity.

Which of the following is the best solution to help the company overcome this challenge?

A.

Implement an Interactive honeypot

B.

Map network traffic to known loCs.

C.

Monitor the dark web

D.

implement UEBA

Question 6
Single choice

A security analyst is reviewing the following event timeline from an COR solution:

Which of the following most likely has occurred and needs to be fixed?

A.

The Dl P has failed to block malicious exfiltration and data tagging is not being utilized property

B.

An EDR bypass was utilized by a threat actor and updates must be installed by the administrator.

C.

A logic law has introduced a TOCTOU vulnerability and must be addressed by the COR vendor

D.

A potential insider threat is being investigated and will be addressed by the senior management team.

Question 7
Single choice

A network engineer must ensure that always-on VPN access is enabled Curt restricted to company assets

Which of the following best describes what the engineer needs to do?

A.

Generate device certificates using the specific template settings needed

B.

Modify signing certificates in order to support IKE version 2

C.

Create a wildcard certificate for connections from public networks

D.

Add the VPN hostname as a SAN entry on the root certificate

Question 8
Single choice

A security analyst received a notification from a cloud service provider regarding an attack detected on a web server The cloud service provider shared the following information about the attack:

1. The attack came from inside the network.
2. The attacking source IP was from the internal vulnerability scanners.
3. The scanner is not configured to target the cloud servers.

Which of the following actions should the security analyst take first?

A.

Create an allow list for the vulnerability scanner IPs m order to avoid false positives

B.

Configure the scan policy to avoid targeting an out-of-scope host

C.

Set network behavior analysis rules

D.

Quarantine the scanner sensor to perform a forensic analysis

Question 9
Single choice

A security professional is investigating a trend in vulnerability findings for newly deployed cloud systems.
Given the following output:

Which of the following actions would address the root cause of this issue?

A.

Automating the patching system to update base Images

B.

Recompiling the affected programs with the most current patches

C.

Disabling unused/unneeded ports on all servers

D.

Deploying a WAF with virtual patching upstream of the affected systems

Question 10
Single choice

A company's security policy states that any publicly available server must be patched within 12 hours after a patch is released. A recent llS zero-day vulnerability was discovered that affects all versions of the Windows Server OS:

Which of the following hosts should a security analyst patch first once a patch is available?

A.

1

B.

2

C.

3

D.

4

E.

5

F.

6

Showing 10 of 430 questions · Unlock the full set