CAS-002 Exam Questions
884 real CAS-002 exam questions with expert-verified answers and explanations. Page 7 of 18.
- Question #307Technical Integration of Enterprise Components
The IT manager is evaluating IPS products to determine which would be most effective at stopping network traffic that contains anomalous content on networks that carry very specifi...
IPSsignature-based detectionprotocol-specific trafficintrusion prevention - Question #308Enterprise Security
A company is in the process of implementing a new front end user interface for its customers, the goal is to provide them with more self service functionality. The application has...
SDLgrey box testingstatic code analysisapplication security testing - Question #309Technical Integration of Enterprise Components
What item below is not associated with Session Initiation Protocol (SIP)?
SIPVoIPsignaling protocoluser agent - Question #310Enterprise Security
Which of the following is a feature of Asymmetric cryptography?
asymmetric cryptographypublic key infrastructureencryptionauthentication - Question #311Technical Integration of Enterprise Components
What provides for fault tolerance and higher performance when databases are clustered?
database clusteringfault toleranceOLTPhigh availability - Question #312Enterprise Security
Which of these malicious agents are capable of distributing themselves without the use of a host file?
malwarewormself-propagationhost-file independence - Question #313Technical Integration of Enterprise Components
Networks have different types of topologies. Which topology is a single cable running the entire length of the network?
network topologybus topologynetwork infrastructure - Question #314Enterprise Security
Which of the following is a term used to define a collection of software robots-or bots-that run autonomously and automatically and may harm your computer?
botnetmalwarebotsautomated attacks - Question #315Enterprise Security
Which technology uses a person's physical characteristics to establish identity?
biometricsauthenticationidentity verificationphysical characteristics - Question #316Integration of Computing, Communications and Business Disciplines
Jim's company is paying Chris's company to develop software and a third party keeps a copy of the source code. What should Jim have in place for protection?
software escrowthird-party risksource code protectionvendor management - Question #317Integration of Computing, Communications and Business Disciplines
Software development methods provide software developers and vendor guidelines for program creation. What software development method is generally implemented in scenarios requirin...
Extreme Programmingagile methodologyrapid developmentSDLC - Question #318Technical Integration of Enterprise Components
What is created when RAM and secondary storage is combined?
virtual memoryRAMsecondary storagememory management - Question #319Research and Analysis
A security analyst is tasked to create an executive briefing, which explains the activity and motivation of a cyber adversary. Which of the following is the MOST important content...
threat intelligenceexecutive briefingthreat actor motivationattack impact - Question #320Technical Integration of Enterprise Components
A small retail company recently deployed a new point of sale (POS) system to all 67 stores. The core of the POS is an extranet site, accessible only from retail stores and the corp...
POS securityUTM firewallsplit-tunnel VPNnetwork performance - Question #321Technical Integration of Enterprise Components
The security engineer receives an incident ticket from the helpdesk stating that DNS lookup requests are no longer working from the office. The network team has ensured that Layer...
NMAPport scanningDNS troubleshootingnetwork diagnostics - Question #322Enterprise Security
The audit department at a company requires proof of exploitation when conducting internal network penetration tests. Which of the following provides the MOST conclusive proof of co...
penetration testingproof of exploitationpacket captureevidence integrity - Question #323Enterprise Security
During a software development project review, the cryptographic engineer advises the project manager that security can be greatly improved by significantly slowing down the runtime...
key stretchingpassword hashingPBKDFcryptographic iteration - Question #324Integration of Computing, Communications and Business Disciplines
A security manager has received the following email from the Chief Financial Officer (CFO): "While I am concerned about the security of the proprietary financial data in our ERP ap...
remote access policysecurity governanceVPNpolicy revision - Question #325Enterprise Security
Every year, the accounts payable employee, Ann, takes a week off work for a vacation. She typically completes her responsibilities remotely during this week. Which of the following...
job rotationinsider threataccess control auditseparation of duties - Question #326Technical Integration of Enterprise Components
An industry organization has implemented a system to allow trusted authentication between all of its partners. The system consists of a web of trusted RADIUS servers communicating...
RADIUSman-in-the-middle attackTLS enforcementauthentication protocols - Question #327Enterprise Security
A security administrator needs to deploy a remote access solution for both staff and contractors. Management favors remote desktop due to ease of use. The current risk assessment s...
screened subnettwo-factor authenticationremote desktopnetwork segmentation - Question #329Research and Analysis
A security engineer at a bank has detected a Zeus variant, which relies on covert communication channels to receive new instructions and updates from the malware developers. As a r...
steganographycovert channelsmalware communicationC2 evasion - Question #330Research and Analysis
A forensic analyst receives a hard drive containing malware quarantined by the antivirus application. After creating an image and determining the directory location of the malware...
file system timelinedigital forensicsmalware analysistimestamp analysis - Question #331Research and Analysis
A high-tech company dealing with sensitive data seized the mobile device of an employee suspected of leaking company secrets to a competitive organization. Which of the following i...
mobile forensicsevidence handlingchain of custodydevice isolation - Question #332Research and Analysis
Due to compliance regulations, a company requires a yearly penetration test. The Chief Information Security Officer (CISO) has asked that it be done under a black box methodology....
black box penetration testingsecurity assessment methodologythreat simulationpen test types - Question #333Integration of Computing, Communications and Business Disciplines
A company has received the contract to begin developing a new suite of software tools to replace an aging collaboration solution. The original collaboration solution has been in pl...
SDLCagile methodologysoftware development modelsrisk-driven development - Question #334Technical Integration of Enterprise Components
A company has migrated its data and application hosting to a cloud service provider (CSP). To meet its future needs, the company considers an IdP. Why might the company want to sel...
identity federationIdPcircle of trustcloud identity management - Question #335Integration of Computing, Communications and Business Disciplines
A company is in the process of outsourcing its customer relationship management system to a cloud provider. It will host the entire organization's customer database. The database w...
cloud due diligenceright to auditthird-party riskvendor security assessment - Question #336Technical Integration of Enterprise Components
A security administrator was doing a packet capture and noticed a system communicating with an address within the 2001::/32 prefix. The network administrator confirms there is no I...
IPv6Teredo tunnelingnetwork securityfirewall rules - Question #337Research and Analysis
A security manager has started a new job and has identified that a key application for a new client does not have an accreditation status and is currently not meeting the complianc...
security accreditationSRTMrisk assessment methodologycompliance - Question #338Enterprise Security
A software project manager has been provided with a requirement from the customer to place limits on the types of transactions a given user can initiate without external interactio...
separation of dutiesdual controltransaction authorizationaccess control - Question #339Technical Integration of Enterprise Components
Two universities are making their 802.11n wireless networks available to the other university's students. The infrastructure will pass the student's credentials back to the home sc...
WPA2 EnterpriseEAP-PEAPRADIUS federationwireless authentication - Question #340Enterprise Security
A developer is determining the best way to improve security within the code being developed. The developer is focusing on input fields where customers enter their credit card detai...
input validationregular expressionssecure codinginjection prevention - Question #341Integration of Computing, Communications and Business Disciplines
The helpdesk manager wants to find a solution that will enable the helpdesk staff to better serve company employees who call with computer-related problems. The helpdesk staff is c...
desktop sharingremote supportinstant messagingtelecommuter tools - Question #342Research and Analysis
An administrator is trying to categorize the security impact of a database server in the case of a security event. There are three databases on the server. Current Financial Data =...
FIPS 199security categorizationaggregate impactdata classification - Question #343Technical Integration of Enterprise Components
Two separate companies are in the process of integrating their authentication infrastructure into a unified single sign-on system. Currently, both companies use an AD backend and t...
SSO integrationTOTPActive Directory federationtwo-factor authentication - Question #344Enterprise Security
After a security incident, an administrator would like to implement policies that would help reduce fraud and the potential for collusion between employees. Which of the following...
job rotationfraud preventioninsider threat controlspersonnel security - Question #345Enterprise Security
A security administrator is investigating the compromise of a software distribution website. Forensic analysis shows that several popular files are infected with malicious code. Ho...
hash collisioncryptographic integritymalware evasionhash function weaknesses - Question #346Technical Integration of Enterprise Components
An IT administrator has been tasked with implementing an appliance-based web proxy server to control external content accessed by internal staff. Concerned with the threat of corpo...
HSMDLPSSL inspectioncertificate protection - Question #347Technical Integration of Enterprise Components
During a recent audit of servers, a company discovered that a network administrator, who required remote access, had deployed an unauthorized remote access application that communi...
SSL VPNSAML federationunauthorized remote accessfirewall bypass - Question #348Research and Analysis
A small company's Chief Executive Officer (CEO) has asked its Chief Security Officer (CSO) to improve the company's security posture with regard to targeted attacks. Which of the f...
threat intelligencethreat feedstargeted attackssecurity posture - Question #349Integration of Computing, Communications and Business Disciplines
Executive management is asking for a new manufacturing control and workflow automation solution. This application will facilitate management of proprietary information and closely...
data governancecloud SaaS integrationaccess controlproprietary data - Question #350Technical Integration of Enterprise Components
Company XYZ is building a new customer facing website which must access some corporate resources. The company already has an internal facing web server and a separate server suppor...
DMZnetwork segmentationweb server securitynetwork architecture - Question #351Enterprise Security
A security engineer is a new member to a configuration board at the request of management. The company has two new major IT projects starting this year and wants to plan security i...
NIST RMFsecurity assessmentcontrol baselinesystem categorization - Question #352Enterprise Security
The Chief Information Security Officer (CISO) is asking for ways to protect against zero-day exploits. The CISO is concerned that an unrecognized threat could compromise corporate...
zero-day exploitsbehavior-based IPSthreat intelligencenetwork security - Question #353Integration of Computing, Communications and Business Disciplines
The Chief Information Security Officer (CISO) at a company knows that many users store business documents on public cloud-based storage; and realizes this is a risk to the company....
risk managementrisk mitigationcloud storagesecurity awareness training - Question #354Enterprise Security
The risk manager has requested a security solution that is centrally managed, can easily be updated, and protects end users' workstations from both known and unknown malicious atta...
HIPSendpoint protectionhost-based securitycentralized management - Question #355Enterprise Security
Joe, a hacker, has discovered he can specifically craft a webpage that when viewed in a browser crashes the browser and then allows him to gain remote code execution in the context...
use-after-freeheap memory corruptionbrowser exploitmemory safety - Question #356Research and Analysis
Ann, a systems engineer, is working to identify an unknown node on the corporate network. To begin her investigative work, she runs the following nmap command string: user@hostname...
OS fingerprintingnmapnetwork reconnaissanceport analysis - Question #357Integration of Computing, Communications and Business Disciplines
The sales team is considering the deployment of a new CRM solution within the enterprise. The IT and Security teams are members of the project; however, neither team has expertise...
vendor selectionRFP processenterprise procurementCRM deployment