CompTIA CAS-005 - Questions & Answers
Free preview · every answer includes a full explanation
Product page: https://prepkeys.com/cas-005.html
A company wants to install a three-tier approach to separate the web, database, and application servers.
A security administrator must harden the environment which of the following is the best solution?
A company wants to implement hardware security key authentication for accessing sensitive information systems. The goal is to prevent unauthorized users from gaining access with a stolen password.
Which of the following models should the company implement to best solve this issue?
A systems administrator wants to use existing resources to automate reporting from disparate security appliances that do not currently communicate.
Which of the following is the best way to meet this objective?
A security analyst received a report that an internal web page is down after a company-wide update to the web browser Given the following error message:
Your connection is not private.
Attackers might be trying to steal your information for
www.internalwebsite.company.com.NET::ERR_CERT_WEAK_SIGNATURE_ALGORITHM
Which of the following is the best way to fix this issue?
A company detects suspicious activity associated with external connections Security detection tools are unable to categorize this activity.
Which of the following is the best solution to help the company overcome this challenge?
A security analyst is reviewing the following event timeline from an COR solution:

Which of the following most likely has occurred and needs to be fixed?
A network engineer must ensure that always-on VPN access is enabled Curt restricted to company assets
Which of the following best describes what the engineer needs to do?
A security analyst received a notification from a cloud service provider regarding an attack detected on a web server The cloud service provider shared the following information about the attack:
1. The attack came from inside the network.
2. The attacking source IP was from the internal vulnerability scanners.
3. The scanner is not configured to target the cloud servers.
Which of the following actions should the security analyst take first?
A security professional is investigating a trend in vulnerability findings for newly deployed cloud systems.
Given the following output:

Which of the following actions would address the root cause of this issue?
A company's security policy states that any publicly available server must be patched within 12 hours after a patch is released. A recent llS zero-day vulnerability was discovered that affects all versions of the Windows Server OS:

Which of the following hosts should a security analyst patch first once a patch is available?