ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 316 - CAS-004 discussion

Report
Export

A company wants to implement a new website that will be accessible via browsers with no mobile applications available. The new website will allow customers to submit sensitive medical information securely and receive online medical advice. The company already has multiple other websites where it provides various public health data and information. The new website must implement the following:

* The highest form Of web identity validation

* Encryption of all web transactions

* The strongest encryption in-transit

* Logical separation based on data sensitivity

Other things that should be considered include:

* The company operates multiple other websites that use encryption.

* The company wants to minimize total expenditure.

* The company wants to minimize complexity

Which of the following should the company implement on its new website? (Select TWO).

A.
Wildcard certificate
Answers
A.
Wildcard certificate
B.
EV certificate
Answers
B.
EV certificate
C.
Mutual authentication
Answers
C.
Mutual authentication
D.
Certificate pinning
Answers
D.
Certificate pinning
E.
SSO
Answers
E.
SSO
F.
HSTS
Answers
F.
HSTS
Suggested answer: B, F

Explanation:

The company should implement an EV certificate and HSTS on its new website. An EV certificate provides the highest level of web identity validation by requiring extensive verification of the organization's identity and domain ownership. HSTS enforces encryption of all web transactions by redirecting HTTP requests to HTTPS and preventing users from accepting invalid certificates. These solutions would enhance the security and trustworthiness of the website without increasing complexity or expenditure significantly. Verified

Reference:

https://www.entrust.com/digital-security/certificate-solutions/products/digital-certificates/tls-ssl-certificates

https://learn.microsoft.com/en-us/azure/active-directory/develop/access-tokens

asked 02/10/2024
Rohit Kumar
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first