nerdexam
ExamsCAS-003Questions#403
CompTIA

CAS-003 · Question #403

CAS-003 Question #403: Real Exam Question with Answer & Explanation

The correct answer is D: 1. Outages would be likely to occur for systems or applications with hard-coded proxy information.. When all internal proxies are decommissioned, any system or application configured with hard-coded internal proxy addresses will immediately fail to route traffic, causing service outages. This is a concrete, predictable, and high-likelihood operational risk that directly changes

Question

A large company with a very complex IT environment is considering a move from an on-premises, internally managed proxy to a cloud-based proxy solution managed by an external vendor. The current proxy provides caching, content filtering, malware analysis, and URL categorization for all staff connected behind the proxy. Staff members connect directly to the Internet outside of the corporate network. The cloud-based version of the solution would provide content filtering, TLS decryption, malware analysis, and URL categorization. After migrating to the cloud solution, all internal proxies would be decomissioned. Which of the following would MOST likely change the company's risk profile?

Options

  • A
    1. There would be a loss of internal intellectual knowledge regarding proxy configurations and
  • B
    1. The external vendor would have access to inbound and outbound gateway traffic.
  • C
    1. The loss of local caching would dramatically increase ISP changes and impact existing
  • D
    1. Outages would be likely to occur for systems or applications with hard-coded proxy information.

Explanation

When all internal proxies are decommissioned, any system or application configured with hard-coded internal proxy addresses will immediately fail to route traffic, causing service outages. This is a concrete, predictable, and high-likelihood operational risk that directly changes the company's risk profile. Option A (loss of internal knowledge) is a long-term concern but not an immediate risk profile change. Option B (vendor access to traffic) is a valid third-party risk but is an accepted and expected trade-off of cloud proxy adoption, not unique to this migration. Option C (loss of caching increasing ISP costs) is a financial impact, not a security risk profile change. Option D represents the most immediate and likely disruption that changes what the organization is exposed to.

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice