nerdexam
CompTIA

CAS-001 · Question #13

After implementing port security, restricting all network traffic into and out of a network, migrating to IPv6, installing NIDS, firewalls, spam and application filters, a security administer is…

The correct answer is A. Anti-malware/virus/spyware/spam software, as well as a host based firewall and strong, two-factor. Option A covers the broadest and most complete set of endpoint security software: anti-malware, anti-virus, anti-spyware, and anti-spam address all major malware categories; a host-based firewall controls traffic at the endpoint level; and strong two-factor authentication…

Enterprise Security

Question

After implementing port security, restricting all network traffic into and out of a network, migrating to IPv6, installing NIDS, firewalls, spam and application filters, a security administer is convinced that the network is secure. The administrator now focuses on securing the hosts on the network, starting with the servers. Which of the following is the MOST complete list of end-point security software the administrator could plan to implement?

Options

  • AAnti-malware/virus/spyware/spam software, as well as a host based firewall and strong, two-factor
  • BAnti-virus/spyware/spam software, as well as a host based IDS, firewall, and strong three-factor
  • CAnti-malware/virus/spyware/spam software, as well as a host based firewall and biometric authentication.
  • DAnti-malware/spam software, as well as a host based firewall and strong, three-factor authentication.

How the community answered

(35 responses)
  • A
    71% (25)
  • B
    3% (1)
  • C
    9% (3)
  • D
    17% (6)

Explanation

Option A covers the broadest and most complete set of endpoint security software: anti-malware, anti-virus, anti-spyware, and anti-spam address all major malware categories; a host-based firewall controls traffic at the endpoint level; and strong two-factor authentication secures access. Option B omits 'anti-malware' as a distinct category from anti-virus, and while it adds a host-based IDS, three-factor authentication on servers adds complexity without meaningful security gain in this context. Option C substitutes biometric authentication for multi-factor authentication, which is a single-factor control on its own. Option D omits anti-virus and anti-spyware from the list. The question asks for the MOST COMPLETE list of endpoint security software, and Option A covers all major software categories comprehensively.

Topics

#endpoint security#anti-malware#host-based firewall#multi-factor authentication

Community Discussion

No community discussion yet for this question.

Full CAS-001 Practice