Free CAS-004 Exam Braindumps

Pass your CompTIA Advanced Security Practitioner (CASP+) Exam exam with these free Questions and Answers

Page 13 of 69
QUESTION 56

A threat hunting team receives a report about possible APT activity in the network. Which of the following threat management frameworks should the team implement?

  1. A. NIST SP 800-53
  2. B. MITRE ATT&CK
  3. C. The Cyber Kill Chain
  4. D. The Diamond Model of Intrusion Analysis

Correct Answer: A

QUESTION 57

After a security incident, a network security engineer discovers that a portion of the company’s sensitive external traffic has been redirected through a secondary ISP that is not normally used.
Which of the following would BEST secure the routes while allowing the network to function in the event of a single provider failure?

  1. A. Disable BGP and implement a single static route for each internal network.
  2. B. Implement a BGP route reflector.
  3. C. Implement an inbound BGP prefix list.
  4. D. Disable BGP and implement OSPF.

Correct Answer: C
Defenses against BGP hijacks include IP prefix filtering, meaning IP address announcements are sent and accepted only from a small set of well-defined autonomous systems, and monitoring Internet traffic to identify signs of abnormal traffic flows.

QUESTION 58

A security architect for a large, multinational manufacturer needs to design and implement a security solution to monitor traffic.
When designing the solution, which of the following threats should the security architect focus on to prevent attacks against the network?

  1. A. Packets that are the wrong size or length
  2. B. Use of any non-DNP3 communication on a DNP3 port
  3. C. Multiple solicited responses over time
  4. D. Application of an unsupported encryption algorithm

Correct Answer: C

QUESTION 59

An organization developed a social media application that is used by customers in multiple remote geographic locations around the world. The organization’s headquarters and only datacenter are located in New York City. The Chief Information Security Officer wants to ensure the following requirements are met for the social media application:
Low latency for all mobile users to improve the users’ experience SSL offloading to improve web server performance
Protection against DoS and DDoS attacks High availability
Which of the following should the organization implement to BEST ensure all requirements are met?

  1. A. A cache server farm in its datacenter
  2. B. A load-balanced group of reverse proxy servers with SSL acceleration
  3. C. A CDN with the origin set to its datacenter
  4. D. Dual gigabit-speed Internet connections with managed DDoS prevention

Correct Answer: B

QUESTION 60

A systems administrator is in the process of hardening the host systems before connecting to the network. The administrator wants to add protection to the boot loader to ensure the hosts are secure before the OS fully boots.
Which of the following would provide the BEST boot loader protection?

  1. A. TPM
  2. B. HSM
  3. C. PKI
  4. D. UEFI/BIOS

Correct Answer: D

Page 13 of 69

Post your Comments and Discuss CompTIA CAS-004 exam with other Community members: