TAKE CompTIA CASP CAS-004 PRACTICE QUESTIONS FOR AMAZING RESULTS [Q33-Q53]

Share

TAKE CompTIA CASP CAS-004 PRACTICE QUESTIONS FOR AMAZING RESULTS

 CompTIA CAS-004 Exam Dumps Are Essential To Get Good Marks

NEW QUESTION 33
A security architect works for a manufacturing organization that has many different branch offices. The architect is looking for a way to reduce traffic and ensure the branch offices receive the latest copy of revoked certificates issued by the CA at the organization's headquarters location. The solution must also have the lowest power requirement on the CA.
Which of the following is the BEST solution?

  • A. Deploy an RA on each branch office.
  • B. Use Delta CRLs at the branches.
  • C. Configure clients to use OCSP.
  • D. Send the new CRLs by using GPO.

Answer: C

 

NEW QUESTION 34
A Chief Information Officer (CIO) wants to implement a cloud solution that will satisfy the following requirements:
Support all phases of the SDLC.
Use tailored website portal software.
Allow the company to build and use its own gateway software.
Utilize its own data management platform.
Continue using agent-based security tools.
Which of the following cloud-computing models should the CIO implement?

  • A. IaaS
  • B. PaaS
  • C. MaaS
  • D. SaaS

Answer: A

 

NEW QUESTION 35
An organization is referencing NIST best practices for BCP creation while reviewing current internal organizational processes for mission-essential items.
Which of the following phases establishes the identification and prioritization of critical systems and functions?

  • A. Review a recent gap analysis.
  • B. Perform a cost-benefit analysis.
  • C. Conduct a business impact analysis.
  • D. Develop an exposure factor matrix.

Answer: C

 

NEW QUESTION 36
A junior developer is informed about the impact of new malware on an Advanced RISC Machine (ARM) CPU, and the code must be fixed accordingly. Based on the debug, the malware is able to insert itself in another process memory location.
Which of the following technologies can the developer enable on the ARM architecture to prevent this type of malware?

  • A. Execute never
  • B. Total memory encryption
  • C. Virtual memory encryption
  • D. No-execute

Answer: A

 

NEW QUESTION 37
A penetration tester obtained root access on a Windows server and, according to the rules of engagement, is permitted to perform post-exploitation for persistence.
Which of the following techniques would BEST support this?

  • A. Configuring systemd services to run automatically at startup
  • B. Exploiting an arbitrary code execution exploit
  • C. Creating a backdoor
  • D. Moving laterally to a more authoritative server/service

Answer: C

 

NEW QUESTION 38
A health company has reached the physical and computing capabilities in its datacenter, but the computing demand continues to increase. The infrastructure is fully virtualized and runs custom and commercial healthcare application that process sensitive health and payment information. Which of the following should the company implement to ensure it can meet the computing demand while complying with healthcare standard for virtualization and cloud computing?

  • A. Private SaaS solution in a single tenancy cloud.
  • B. SaaS solution in a community cloud
  • C. Hybrid IaaS solution in a single-tenancy cloud
  • D. Pass solution in a multinency cloud

Answer: A

 

NEW QUESTION 39
An organization is planning for disaster recovery and continuity of operations.
INSTRUCTIONS
Review the following scenarios and instructions. Match each relevant finding to the affected host.
After associating scenario 3 with the appropriate host(s), click the host to select the appropriate corrective action for that finding.
Each finding may be used more than once.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:

Explanation:

 

NEW QUESTION 40
A small company recently developed prototype technology for a military program. The company's security engineer is concerned about potential theft of the newly developed, proprietary information.
Which of the following should the security engineer do to BEST manage the threats proactively?

  • A. Update security awareness training to address new threats, such as best practices for data security.
  • B. Leverage the MITRE ATT&CK framework to map the TTR.
  • C. Use OSINT techniques to evaluate and analyze the threats.
  • D. Join an information-sharing community that is relevant to the company.

Answer: A

 

NEW QUESTION 41
Device event logs sources from MDM software as follows:

Which of the following security concerns and response actions would BEST address the risks posed by the device in the logs?

  • A. Resource leak; recover the device for analysis and clean up the local storage.
  • B. Falsified status reporting; remotely wipe the device.
  • C. Impossible travel; disable the device's account and access while investigating.
  • D. Malicious installation of an application; change the MDM configuration to remove application ID 1220.

Answer: D

 

NEW QUESTION 42
In preparation for the holiday season, a company redesigned the system that manages retail sales and moved it to a cloud service provider. The new infrastructure did not meet the company's availability requirements. During a postmortem analysis, the following issues were highlighted:
1. International users reported latency when images on the web page were initially loading.
2. During times of report processing, users reported issues with inventory when attempting to place orders.
3. Despite the fact that ten new API servers were added, the load across servers was heavy at peak times.
Which of the following infrastructure design changes would be BEST for the organization to implement to avoid these issues in the future?

  • A. Serve static content via distributed CDNs, create a read replica of the central database and pull reports from there, and auto-scale API servers based on performance.
  • B. Serve static-content object storage across different regions, increase the instance size on the managed relational database, and distribute the ten API servers across multiple regions.
  • C. Increase the bandwidth for the server that delivers images, use a CDN, change the database to a non-relational database, and split the ten API servers across two load balancers.
  • D. Serve images from an object storage bucket with infrequent read times, replicate the database across different regions, and dynamically create API servers based on load.

Answer: A

 

NEW QUESTION 43
A developer wants to maintain integrity to each module of a program and ensure the code cannot be altered by malicious users.
Which of the following would be BEST for the developer to perform? (Choose two.)

  • A. Encrypt with 3DES.
  • B. Utilize code signing by a trusted third party.
  • C. Make the DACL read-only.
  • D. Verify MD5 hashes.
  • E. Compress the program with a password.
  • F. Implement certificate-based authentication.

Answer: B,F

 

NEW QUESTION 44
The Chief information Officer (CIO) wants to establish a non-banding agreement with a third party that outlines the objectives of the mutual arrangement dealing with data transfers between both organizations before establishing a format partnership. Which of the follow would MOST likely be used?

  • A. OLA
  • B. NDA
  • C. SLA
  • D. MOU

Answer: D

 

NEW QUESTION 45
A high-severity vulnerability was found on a web application and introduced to the enterprise. The vulnerability could allow an unauthorized user to utilize an open-source library to view privileged user information. The enterprise is unwilling to accept the risk, but the developers cannot fix the issue right away.
Which of the following should be implemented to reduce the risk to an acceptable level until the issue can be fixed?

  • A. Change privileged usernames, review the OS logs, and deploy hardware tokens.
  • B. Deploy a VPN, configure an official open-source library repository, and perform a full application review for vulnerabilities.
  • C. Implement MFA, review the application logs, and deploy a WAF.
  • D. Scan the code with a static code analyzer, change privileged user passwords, and provide security training.

Answer: B

 

NEW QUESTION 46
A company provides guest WiFi access to the internet and physically separates the guest network from the company's internal WIFI. Due to a recent incident in which an attacker gained access to the compay's intend WIFI, the company plans to configure WPA2 Enterprise in an EAP- TLS configuration. Which of the following must be installed on authorized hosts for this new configuration to work properly?

  • A. Active Directory OPOs
  • B. PKI certificates
  • C. Host-based firewall
  • D. NAC persistent agent

Answer: B

 

NEW QUESTION 47
A customer reports being unable to connect to a website at www.test.com to consume services. The customer notices the web application has the following published cipher suite:

Which of the following is the MOST likely cause of the customer's inability to connect?

  • A. Weak ciphers are being used.
  • B. The public key should be using ECDSA.
  • C. The server name should be test.com.
  • D. The default should be on port 80.

Answer: A

 

NEW QUESTION 48
A company's SOC has received threat intelligence about an active campaign utilizing a specific vulnerability. The company would like to determine whether it is vulnerable to this active campaign.
Which of the following should the company use to make this determination?

  • A. Log analysis within the SIEM tool
  • B. Threat hunting
  • C. A system penetration test
  • D. The Cyber Kill Chain

Answer: C

 

NEW QUESTION 49
A company is implementing SSL inspection. During the next six months, multiple web applications that will be separated out with subdomains will be deployed.
Which of the following will allow the inspection of the data without multiple certificate deployments?

  • A. Include all available cipher suites.
  • B. Create a wildcard certificate.
  • C. Implement certificate pinning.
  • D. Use a third-party CA.

Answer: C

 

NEW QUESTION 50
A technician is reviewing the logs and notices a large number of files were transferred to remote sites over the course of three months. This activity then stopped. The files were transferred via TLS-protected HTTP sessions from systems that do not send traffic to those sites.
The technician will define this threat as:

  • A. a decrypting RSA using obsolete and weakened encryption attack.
  • B. an advanced persistent threat.
  • C. a zero-day attack.
  • D. an on-path attack.

Answer: B

 

NEW QUESTION 51
Which of the following is required for an organization to meet the ISO 27018 standard?

  • A. All network traffic must be inspected.
  • B. GDPR equivalent standards must be met
  • C. COBIT equivalent standards must be met
  • D. All Pll must be encrypted.

Answer: D

 

NEW QUESTION 52
During a system penetration test, a security engineer successfully gained access to a shell on a Linux host as a standard user and wants to elevate the privilege levels.
Which of the following is a valid Linux post-exploitation method to use to accomplish this goal?

  • A. Initiate unquoted service path exploits.
  • B. Spawn a shell using sudo and an escape string such as sudo vim -c '!sh'.
  • C. Read the /etc/passwd file to extract the usernames.
  • D. Use the UNION operator to extract the database schema.
  • E. Perform ASIC password cracking on the host.

Answer: B

 

NEW QUESTION 53
......


Following is the info about the Passing Score, Duration & Questions for the CompTIA CAS-004 Exam

  • Time Duration: 165 minutes

  • Number of Questions: 90 questions

  • Languages: English, Japanese

  • The passing score: it's pass/fail only.

 

Latest CompTIA CAS-004 Dumps with Test Engine and PDF (New Questions): https://practicetorrent.exam4pdf.com/CAS-004-dumps-torrent.html