최신CompTIA SecurityX Certification - CAS-005무료샘플문제
문제1
An organization is required to:
- Respond to internal and external inquiries in a timely manner
- Provide transparency.
- Comply with regulatory requirements
The organization has not experienced any reportable breaches but wants to be prepared if a breach occurs in the future. Which of the following is the best way for the organization to prepare?
An organization is required to:
- Respond to internal and external inquiries in a timely manner
- Provide transparency.
- Comply with regulatory requirements
The organization has not experienced any reportable breaches but wants to be prepared if a breach occurs in the future. Which of the following is the best way for the organization to prepare?
정답: A
설명: (KoreaDumps 회원만 볼 수 있음)
문제2
A systems administrator at a web-hosting provider has been tasked with renewing the public certificates of all customer sites. Which of the following would best support multiple domain names while minimizing the amount of certificates needed?
A systems administrator at a web-hosting provider has been tasked with renewing the public certificates of all customer sites. Which of the following would best support multiple domain names while minimizing the amount of certificates needed?
정답: A
설명: (KoreaDumps 회원만 볼 수 있음)
문제3
A company is concerned about the security of customer data. The IT department has configured all web applications with appropriate access controls to restrict to only authorized users. Which of the following solutions addresses this concern?
A company is concerned about the security of customer data. The IT department has configured all web applications with appropriate access controls to restrict to only authorized users. Which of the following solutions addresses this concern?
정답: C
설명: (KoreaDumps 회원만 볼 수 있음)
문제4
A security engineer needs 10 secure the OT environment based on me following requirements:
- Isolate the OT network segment
- Restrict Internet access.
- Apply security updates two workstations
- Provide remote access to third-party vendors
Which of the following design strategies should the engineer implement to best meet these requirements?
A security engineer needs 10 secure the OT environment based on me following requirements:
- Isolate the OT network segment
- Restrict Internet access.
- Apply security updates two workstations
- Provide remote access to third-party vendors
Which of the following design strategies should the engineer implement to best meet these requirements?
정답: D
설명: (KoreaDumps 회원만 볼 수 있음)
문제5
A security engineer is reviewing the results of an annual penetration test. The report lists one of the results as "critical severity" on several domain-joined workstations:
SSL/TLS Weak Protocols Supported TLS 1.0, TLS 1.1
Which of the following should the security engineer implement to remediate this finding in the most centralized manner?
A security engineer is reviewing the results of an annual penetration test. The report lists one of the results as "critical severity" on several domain-joined workstations:
SSL/TLS Weak Protocols Supported TLS 1.0, TLS 1.1
Which of the following should the security engineer implement to remediate this finding in the most centralized manner?
정답: C
설명: (KoreaDumps 회원만 볼 수 있음)
문제6
In order to follow new regulations, the Chief Information Security Officer plans to use a defense- in-depth approach for a perimeter network. Which of the following protections would best achieve this goal?
In order to follow new regulations, the Chief Information Security Officer plans to use a defense- in-depth approach for a perimeter network. Which of the following protections would best achieve this goal?
정답: A
설명: (KoreaDumps 회원만 볼 수 있음)
문제7
A company is rewriting a vulnerable application and adding the mprotect()system call in multiple parts of the application's code that was being leveraged by a recent exploitation tool.
Which of the following should be enabled to ensure the application can leverage the new system call against similar attacks in the future?
A company is rewriting a vulnerable application and adding the mprotect()system call in multiple parts of the application's code that was being leveraged by a recent exploitation tool.
Which of the following should be enabled to ensure the application can leverage the new system call against similar attacks in the future?
정답: C
설명: (KoreaDumps 회원만 볼 수 있음)
문제8
An organization has been using self-managed encryption keys rather than the free keys managed by the cloud provider. The Chief Information Security Officer (CISO) reviews the monthly bill and realizes the self-managed keys are more costly than anticipated. Which of the following should the CISO recommend to reduce costs while maintaining a strong security posture?
An organization has been using self-managed encryption keys rather than the free keys managed by the cloud provider. The Chief Information Security Officer (CISO) reviews the monthly bill and realizes the self-managed keys are more costly than anticipated. Which of the following should the CISO recommend to reduce costs while maintaining a strong security posture?
정답: C
설명: (KoreaDumps 회원만 볼 수 있음)
문제9
An architect is securing an external infrastructure to support external services. The following components are in use:
- One Kubernetes cluster with multiple pods and nodes for back-end
services
- Two VM Linux instances as the web tier
- One SQL-based database
The company only has funding for two controls and must prioritize resilience. Which of the following are the most effective controls for the company to implement to meet this goal? (Choose two.)
An architect is securing an external infrastructure to support external services. The following components are in use:
- One Kubernetes cluster with multiple pods and nodes for back-end
services
- Two VM Linux instances as the web tier
- One SQL-based database
The company only has funding for two controls and must prioritize resilience. Which of the following are the most effective controls for the company to implement to meet this goal? (Choose two.)
정답: A,E
설명: (KoreaDumps 회원만 볼 수 있음)