CAS-002 Exam Questions
884 real CAS-002 exam questions with expert-verified answers and explanations. Page 10 of 18.
- Question #458Technical Integration of Enterprise Components
Which of the following types of redundancy permits software to run simultaneously on multiple geographically distributed locations, with voting on results?
process redundancyfault tolerancegeographic distributionvoting systems - Question #459Enterprise Security
Which of the following provides cryptographic security services for electronic messaging applications?
S/MIMEemail securitycryptographic serviceselectronic messaging - Question #460Technical Integration of Enterprise Components
Which of the following protocols is used by voice terminal to communicate with the VoIP server? Each correct answer represents a complete solution. Choose all that apply.
VoIP protocolsSIPH.323voice communications - Question #461Enterprise Security
Which of the following statements best describe delegation in a network? Each correct answer represents a complete solution. Choose two.
network delegationimpersonation tokensauthenticationaccess control - Question #462Research and Analysis
Angela is trying to ascertain the types of security hardware and software her client should implement. What should she do before deciding?
risk assessmentthreat analysissecurity planningvendor evaluation - Question #463Technical Integration of Enterprise Components
In which of the following phases of the System Development Life Cycle (SDLC) is the IT system designed, purchased, and programmed?
SDLCDevelopment/Acquisition phasesystem lifecycleIT procurement - Question #464Enterprise Security
Which of the following can monitor any application input, output, and/or system service calls made from, to, or by an application?
host-based firewallapplication monitoringsystem call interceptionendpoint security - Question #465Enterprise Security
Denish is the administrator for a cloud computing vendor. He is evaluating the security benefits and threats of cloud computing. Cloud computing has a number of challenges, which o...
cloud securityDDoS resiliencecloud vs traditional hostingavailability - Question #466Integration of Computing, Communications and Business Disciplines
Which of the following is a financial estimate whose purpose is to help consumers and enterprise managers determine direct and indirect costs of a product or system?
total cost of ownershipTCOcost analysisfinancial planning - Question #467Technical Integration of Enterprise Components
Which of the following statements are true about a smartphone? Each correct answer represents a complete solution. Choose two.
smartphonemobile devicesmobile platformsadvanced applications - Question #468Technical Integration of Enterprise Components
SCADA stands for supervisory control and data acquisition. Which of the following statements are true about SCADA? Each correct answer represents a complete solution. Choose all th...
SCADAindustrial control systemsprocess controlICS - Question #469Enterprise Security
ESA stands for Enterprise Security Architecture. What is the purpose of ESA?
Enterprise Security ArchitectureESAnetwork security frameworksecurity paradigms - Question #470Enterprise Security
Derrick works as a Security Administrator for a police station. He wants to determine the minimum CIA levels for his organization. Which of the following best represents the minimu...
CIA triadconfidentialityintegrityavailability classification - Question #471Enterprise Security
Which of the following elements of security means that the only authorized users are able to modify data?
integrityCIA triaddata modificationinformation security principles - Question #472Integration of Computing, Communications and Business Disciplines
You are completing the requirements for vendor selection and need to create a procurement form that will ask the vendor to provide only a price for commercial-off-the-shelf solutio...
request for quoteRFQprocurementCOTS - Question #473Integration of Computing, Communications and Business Disciplines
Your manager has approached you regarding her desire to outsource certain functions to an external firm. The manager would like for you to create a document for sending to three ve...
request for proposalRFPprocurementoutsourcing - Question #474Integration of Computing, Communications and Business Disciplines
Which of the following statements best describe the role of a programmer in an organization? Each correct answer represents a part of the solution. Choose two.
programmer rolesoftware developmentIT rolessystem design - Question #475Enterprise Security
Jane works as an administrator for a cloud computing company. Her company supports virtual servers from many organizations, in different industries. What is the most significant se...
cloud multi-tenancyregulatory complianceindustry regulationscloud security - Question #476Technical Integration of Enterprise Components
Which of the following are the security issues with COTS products? Each correct answer represents a complete solution. Choose all that apply.
COTS securitythird-party riskintegration risksvendor dependency - Question #477Research and Analysis
Which of the following is a process of discovering the technological principles of a device, object, or system through analysis of its structure, function, and operation?
reverse engineeringsystem analysistechnology analysisstructure examination - Question #478Enterprise Security
Which of the following attacks are computer threats that try to exploit computer application vulnerabilities that are unknown to others or undisclosed to the software developer?
zero-dayvulnerability exploitationunknown vulnerabilitiesattack types - Question #479Integration of Computing, Communications and Business Disciplines
A memorandum of understanding (MOU) includes various aspects that are helpful in defining a bilateral or multilateral agreement between two parties. which of the following are vari...
MOUmemorandum of understandinglegal agreementsbilateral agreements - Question #480Technical Integration of Enterprise Components
Which of the following solutions best accomplishes storage integration?
storage integrationcloud computingdata storagevirtualization - Question #481Enterprise Security
Which of the following is the process of digitally signing executables and scripts to confirm the software author and guarantee that the code has not been altered or corrupted sinc...
code signingcryptographic hashsoftware integritydigital signatures - Question #482Research and Analysis
As a network administrator, if you are experiencing intermittent security issues what is the first thing you should do?
troubleshooting methodologyproblem isolationincident responsesecurity operations - Question #483Enterprise Security
Which of the following security principles would be most helpful in preventing privilege escalation?
least privilegeprivilege escalationaccess controlsecurity principles - Question #484Technical Integration of Enterprise Components
Which of the following are the advantages of the Virtual Desktop Infrastructure (VDI)? Each correct answer represents a complete solution. Choose three.
VDIvirtual desktop infrastructurecloud computingcost efficiency - Question #485Enterprise Security
Susan is trying to find a solution that will verify emails come from the source claimed. Which of the following solutions is most likely to accomplish this?
digital signaturesemail authenticationnon-repudiationPKI - Question #486Enterprise Security
Continuous Monitoring is the fourth phase of the Security Certification and Accreditation process, which of the following activities can be involved in the Continuous Monitoring pr...
continuous monitoringsecurity accreditationconfiguration managementstatus reporting - Question #487Integration of Computing, Communications and Business Disciplines
Which of the following terms suggests that the supplier of an application program or system provides all the hardware and software components and resources to meet the customers re...
end-to-end solutionvendor managementprocurementCOTS - Question #488Technical Integration of Enterprise Components
A user can divide network traffic into which of the following classes of service? Each correct answer represents a complete solution. Choose three.
QoStraffic classificationvoice payloadvideo payload - Question #489Technical Integration of Enterprise Components
Which of the following types of scalability is for distributed systems to expand and contract its resource pool to hold heavier loads?
load scalabilitydistributed systemsresource managementcloud scalability - Question #490Enterprise Security
What security objectives does cryptography meet: Each correct answer represents a complete solution. Choose all that apply.
cryptographyauthenticationconfidentialitydata integrity - Question #491Integration of Computing, Communications and Business Disciplines
Which of the following is a document used to solicit proposals from prospective sellers which require a significant amount of negotiation?
RFPprocurementvendor selectioncontract negotiation - Question #492Enterprise Security
Which of the following are the key security activities for the initiation phase? Each correct answer represents a complete solution. Choose two.
SDLCinitiation phasesecurity requirementsprivacy requirements - Question #493Technical Integration of Enterprise Components
Which of the following security services will you use for enabling message-level security for Web services?
WS-Securityweb servicesmessage-level securitySOA - Question #494Technical Integration of Enterprise Components
Which of the following counters measures the rate at which the bytes are sent through or received by a network?
network monitoringperformance countersbandwidthnetwork interface - Question #495Research and Analysis
John is a security administrator for a large retail company. He wishes to address new threats, what is the most important step for him to take in addressing new threats?
risk assessmentthreat managementvulnerability assessmentsecurity governance - Question #496Enterprise Security
Mark, a malicious hacker, submits Cross-Site Scripting (XSS) exploit code to the Website of the Internet forum for online discussion. When a user visits the infected Web page, the...
persistent XSScross-site scriptingweb application securityinjection attacks - Question #497Integration of Computing, Communications and Business Disciplines
Which of the following are the main aims of Change Management? Each correct answer represents a complete solution. Choose all that apply.
change managementITILservice continuityresource utilization - Question #498Technical Integration of Enterprise Components
Software and systems as a service in the cloud provide flexibility for administrators. The administrator can create, shutdown, and restart virtual servers as needed. However this f...
VM sprawlcloud computingvirtualizationresource management - Question #499Enterprise Security
Which of the following is a security incident in which sensitive or confidential data is copied, transmitted, viewed, or stolen by unauthorized person?
data breachunauthorized accessdata securityincident classification - Question #500Enterprise Security
You are responsible for evaluating, recommending, and directing changes to the Corporate Security Manager in order to ensure the security of assets, facilities, and employees of th...
physical securitysecurity rolesasset protectionorganizational security - Question #501Enterprise Security
Which of the following is a deterministic algorithm to generate a sequence of numbers with little or no discernible pattern in the numbers, apart from broad statistical properties?
PRNGrandom number generationcryptographyalgorithm types - Question #502Enterprise Security
Which of the following are the examples of the biometric identifiers? Each correct answer represents a complete solution, Choose three.
biometricsauthenticationphysical identifiersaccess control - Question #503Enterprise Security
Which of the following are the benefits of the Single sign-on? Each correct answer represents a complete solution. Choose three.
SSOidentity managementauthenticationcompliance - Question #504Enterprise Security
John has been granted standard user access to an ecommerce portal. After logging in. he has access to administrative privileges. What is this called?
privilege escalationaccess controlauthorizationinsider threat - Question #505Research and Analysis
Which of the following statements are true about Risk analysis? Each correct answer represents a complete solution. Choose three.
risk analysisrisk managementsecurity policythreat quantification - Question #506Technical Integration of Enterprise Components
Mark is responsible for secure programming at his company. He wants to implement steps to validate the security of software design. At what phase in the SDLC should he implement de...
SDLCsecure designsoftware securitydesign validation - Question #507Technical Integration of Enterprise Components
Maria is concerned about outside parties attempting to access her companies network via the wireless connection. Where should she place the WAP?
wireless securityWAP placementnetwork designRF coverage