ExamGecko
Home / CompTIA / CAS-004 / List of questions
Ask Question

CompTIA CAS-004 Practice Test - Questions Answers, Page 28

Add to Whishlist

List of questions

Question 271

Report Export Collapse

A cloud security engineer is setting up a cloud-hosted WAF. The engineer needs to implement a solution to protect the multiple websites the organization hosts. The organization websites are:

* www.mycompany.org

* www.mycompany.com

* campus.mycompany.com

* wiki. mycompany.org

The solution must save costs and be able to protect all websites. Users should be able to notify the cloud security engineer of any on-path attacks. Which of the following is the BEST solution?

Become a Premium Member for full access
  Unlock Premium Member

Question 272

Report Export Collapse

A cloud security architect has been tasked with selecting the appropriate solution given the following:

* The solution must allow the lowest RTO possible.

* The solution must have the least shared responsibility possible.

Patching should be a responsibility of the CSP.

Which of the following solutions can BEST fulfill the requirements?

Become a Premium Member for full access
  Unlock Premium Member

Question 273

Report Export Collapse

A security manager has written an incident response playbook for insider attacks and is ready to begin testing it. Which of the following should the manager conduct to test the playbook?

Become a Premium Member for full access
  Unlock Premium Member

Question 274

Report Export Collapse

An IPSec solution is being deployed. The configuration files for both the VPN

concentrator and the AAA server are shown in the diagram.

Complete the configuration files to meet the following requirements:

* The EAP method must use mutual certificate-based authentication (With

issued client certificates).

* The IKEv2 Cipher suite must be configured to the MOST secure

authenticated mode of operation,

* The secret must contain at least one uppercase character, one lowercase

character, one numeric character, and one special character, and it must

meet a minimum length requirement of eight characters,

INSTRUCTIONS

Click on the AAA server and VPN concentrator to complete the configuration.

Fill in the appropriate fields and make selections from the drop-down menus.

CompTIA CAS-004 image Question 274 94242 10022024175035000000

VPN Concentrator:

CompTIA CAS-004 image Question 274 94242 10022024175035000000

AAA Server:

CompTIA CAS-004 image Question 274 94242 10022024175035000000

Become a Premium Member for full access
  Unlock Premium Member

Question 275

Report Export Collapse

In a cloud environment, the provider offers relief to an organization's teams by sharing in many of the operational duties. In a shared responsibility model, which of the following responsibilities belongs to the provider in a Paas implementation?

Become a Premium Member for full access
  Unlock Premium Member

Question 276

Report Export Collapse

A security architect recommends replacing the company's monolithic software application with a containerized solution. Historically, secrets have been stored in the application's configuration files. Which of the following changes should the security architect make in the new system?

Become a Premium Member for full access
  Unlock Premium Member

Question 277

Report Export Collapse

The CI/CD pipeline requires code to have close to zero defects and zero vulnerabilities. The current process for any code releases into production uses two-week Agile sprints. Which of the following would BEST meet the requirement?

Become a Premium Member for full access
  Unlock Premium Member

Question 278

Report Export Collapse

Which of the following BEST describes a common use case for homomorphic encryption?

Become a Premium Member for full access
  Unlock Premium Member

Question 279

Report Export Collapse

Which of the following describes the system responsible for storing private encryption/decryption files with a third party to ensure these files are stored safely?

Become a Premium Member for full access
  Unlock Premium Member

Question 280

Report Export Collapse

An organization is looking to establish more robust security measures by implementing PKI. Which of the following should the security analyst implement when considering mutual authentication?

Become a Premium Member for full access
  Unlock Premium Member
Total 578 questions
Go to page: of 58
Search

Related questions