CAS-003 Exam Questions
947 real CAS-003 exam questions with expert-verified answers and explanations. Page 15 of 19.
- Question #719Research, Development and Collaboration
While the code is still in the development environment, a security architect is testing the code stored in the code repository to ensure the top ten OWASP secure coding practices a...
static code analysisOWASPSASTsecure coding - Question #720Enterprise Security Operations
An information security officer reviews a report and notices a steady increase in outbound network traffic over the past ten months. There is no clear explanation for the increase....
CASBshadow ITcloud storageDLP - Question #721Research, Development and Collaboration
An application has been through a peer review and regression testing and is prepared for release. A security engineer is asked to analyze an application binary to look for potentia...
fuzzingbinary analysisbuffer overflowinput sanitation - Question #722Research, Development and Collaboration
A researcher is working to identify what appears to be a new variant of an existing piece of malware commonly used in ransomware attacks. While it is not identical to the malware p...
malware analysissandboxransomwarecode comparison - Question #724Enterprise Security Operations
A security engineer reviews the table below: The engineer realizes there is an active attack occurring on the network. Which of the following would BEST reduce the risk of this att...
port securityMAC floodingDHCP starvationnetwork attack - Question #725Technical Integration of Enterprise Security
A legal services company wants to ensure emails to clients maintain integrity in transit. Which of the following would BEST meet this requirement? (Select TWO)
email integritydigital signaturesPKIS/MIME - Question #727Enterprise Security Operations
The Chief Information Security Officer (CISO) of a new company is looking for a comprehensive assessment of the company's application services. Which of the following would provide...
white-box testingpenetration testingapplication securityvulnerability assessment - Question #728Technical Integration of Enterprise Security
An organization is creating requirements for new laptops that will be issued to staff One of the company's key security objectives is to ensure the laptops nave hardware-enforced d...
TPMsecure bootdata-at-rest encryptionhardware security - Question #729Risk Management
Within change management, which of the following ensures functions are earned out by multiple employees?
separation of dutieschange managementleast privilegeaccess control - Question #730Technical Integration of Enterprise Security
An administrator wants to ensure hard drives cannot be removed from hosts and men installed into and read by unauthorized hosts. Which of the following techniques would BEST suppor...
TPMfull disk encryptionsealed storagephysical security - Question #731Risk Management
A security administrator is confirming specific ports and IP addresses that are monitored by the IPS- IDS system as well as the firewall placement on the perimeter network between...
ISAinterconnection securitybusiness partnernetwork monitoring - Question #733Enterprise Security Operations
A security analyst is comparing two virtual servers that were bum from the same image and patched at the same regular intervals. Server A is used to host a public-facing website, a...
server forensicsattack detectionlog analysisanomaly detection - Question #735Enterprise Security Operations
A system administrator recently conducted a vulnerability scan of the internet. Subsequently, the organization was successfully attacked by an adversary. Which of the following in...
vulnerability scanningpatch managementscan coveragesecurity operations - Question #736Enterprise Security Operations
A company recently deployed an agent-based DLP solution to all laptop in the environment. The DLP solution is configured to restrict the following: - USB ports - FTP connections -...
DLPapplication whitelistingdata exfiltrationinsider threat - Question #737Enterprise Security Operations
A security is testing a server finds the following in the output of a vulnerability scan: PORT STATE SERVICE 139/top open netbios-ssn Host script results: I samba-vuln-cve-2018-126...
exploitation frameworkCVEpenetration testingSamba vulnerability - Question #738Risk Management
Which of the following is the MOST likely reason an organization would decide to use a BYOD policy?
BYODmobile device managementcost managementsecurity policy - Question #739Research, Development and Collaboration
A network service on a production system keeps crashing at random times. The systems administrator suspects a bug in the listener is causing the service to crash, resuming in the a...
fuzzingDoScrash reproductionvulnerability research - Question #740Risk Management
A company runs a well -attended, on-premises fitness club for its employees, about 200 of them each day. Employees want to sync center's login and attendance program with their sma...
privacy requirementsmobile securitybiometric authenticationdata protection - Question #741Risk Management
Which of the following is MOST likely to be included in a security services SLA with a third-party vendor?
SLAthird-party riskpatch managementvendor management - Question #742Enterprise Security Operations
While traveling to another state, the Chief Financial (CFO) forgot to submit payroll for the company. The CFO quickly gained to the corporate through the high-speed wireless networ...
VPN enforcementwireless securityremote accessmalware - Question #743Risk Management
A security manager wants to implement a policy that will management with the ability to monitor employees' activities with minimum impact to productivity. Which of the following po...
mandatory vacationinsider threatemployee monitoringaccess control policy - Question #744Enterprise Security Architecture
A company has made it a spending priority to implement security architectures that will be resilient during an attack. Recent incidents have involved attackers leveraging latent vu...
enterprise resilienceVPN securitycryptographic vulnerabilitiesdefense in depth - Question #745Technical Integration of Enterprise Security
Users of a newly deployed VoIP solution report multiple instances of dropped or garbled calls. Thirty users connect to the primary site via a site-to-site VPN, and the primary site...
VoIPQoSsite-to-site VPNnetwork configuration - Question #746Technical Integration of Enterprise Security
A developer has executed code for a website that allows users to search for employees' phone numbers by last name. The query string sent by the browser is as follows: The developer...
XSSoutput encodinginput validationweb application security - Question #747Enterprise Security Operations
A security analyst receives an email from a peer that includes a sample of code from a piece of malware found in an application running in the organization's staging environment. D...
MFAcredential theftcode repository securityaccess control - Question #748Risk Management
The Chief Executive Officer (CEO) of a company has considered implementing a cost-saving measure that might result in new risk to the company. When deciding whether to implement th...
risk registerrisk governancerisk reportingexecutive risk management - Question #749Enterprise Security Operations
While an employee is on vacation, suspicion arises that the employee has been involved in malicious activity on the network. The security engineer is concerned the investigation ma...
digital forensicsinsider threat investigationevidence integrityincident response - Question #751Risk Management
When of the following is the BEST reason to implement a separation of duties policy?
separation of dutiesfraud preventionaccess controlsecurity policy - Question #752Enterprise Security Operations
Ann, a user' brings her laptop to an analyst after noticing it has been operating very slowly. The security analyst examines the laptop and obtains the following output. Which of t...
malware analysisendpoint securityincident responseprocess investigation - Question #753Enterprise Security Operations
A hospital is deploying new imaging softwares that requires a web server for access to image for both local and remote users. The web server allows user authentication via secure L...
nmapport scanningweb server hardeningnetwork reconnaissance - Question #754Risk Management
The government is concerned with remote military missions being negatively impacted by the use of technology that may fail to protect operational security. To remediate this concer...
operational securitygeolocation metadatasocial media riskOPSEC - Question #755Risk Management
A company's Chief Information Security Officer (CISO) is working with the product owners to perform a business impact assessment. The product owners provide feedback related to the...
business impact assessmentrisk rankingrisk assessmentlikelihood vs magnitude - Question #756Enterprise Security Architecture
A security administrator wants to implement an MDM solution to secure access to company email and files in a BYOD environment. The solution must support the following requirements:...
MDMBYODcontainerizationmobile security - Question #757Enterprise Security Architecture
A company's IT department currently performs traditional patching, and the servers have a significant longevity that may span over five years. A security architect is moving the co...
immutable infrastructureautomated deploymentsserver lifecycleDevSecOps - Question #758Enterprise Security Operations
A security analyst is reviewing an endpoint that was found to have a rookit installed. The rootkit survived multiple attempts to clean the endpoints, as well as an attempt to reins...
rootkit persistencemeasured bootTPMsecure boot - Question #760Enterprise Security Architecture
A corporation with a BYOD policy is very concerned about issues that may arise from data ownership. The corporation is investigating a new MDM solution and has gathered the followi...
MDMBYODcontainerizationPKI/SCEP - Question #761Enterprise Security Architecture
During the migration of a company's human resources application to a PaaS provider, the Chief Privacy Officer (CPO) expresses concern the vendor's staff may be able to access data...
PaaS securityCASBdata privacycloud vendor risk - Question #762Enterprise Security Operations
A company's claims processed department has a mobile workforce that receives a large number of email submissions from personal email addresses. An employees recently received an em...
email securitysandboxingcontent filteringmalware prevention - Question #763Technical Integration of Enterprise Security
A company suspects a web server may have been infiltrated by a rival corporation. The security engineer reviews the web server logs and finds the following: The security engineer l...
command injectionweb application securityinput validationsecure coding - Question #764Enterprise Security Operations
A penetration tester is trying to gain access to a building after hours as part of a physical assessment of an office complex. The tester notes that each employee touches a badge n...
physical penetration testingRFID cloningaccess controlsocial engineering - Question #765Enterprise Security Operations
A server was compromised recently, and two unauthorized daemons were set up to listen for incoming connections. In addition, CPU cycles were being used by an additional unauthorize...
SELinuxmandatory access controlhost hardeningunauthorized daemons - Question #766Enterprise Security Architecture
A security researcher at an organization is reviewing potential threats to the VoIP phone system infrastructure, which uses a gigabit Internet connection. The researcher finds a vu...
IPSVoIP securityvendor selectionnetwork security - Question #767Enterprise Security Architecture
A pharmaceutical company is considering moving its technology operations from on-premises to externally-hosted to reduce costs while improving security and resiliency. These operat...
cloud deployment modelssingle tenancyprivate cloudIaaS - Question #768Risk Management
A security engineer is managing operational, excess, and available equipment for a customer. Three pieces of expensive leased equipment, which are supporting a highly confidential...
asset disposaldata sanitizationleased equipmentdecommissioning - Question #769Enterprise Security Operations
A power outage is caused by a severe thunderstorm and a facility is on generator power. The CISO decides to activate a plan and shut down non-critical systems to reduce power consu...
COOPbusiness continuitycritical systemscontinuity of operations - Question #770Research, Development and Collaboration
What will dictate the level of association between methods of access, elements, an organization of data elements and processing alternatives?
software designdata structurescohesioncoupling - Question #771Research, Development and Collaboration
The methods of software development provide vendor and software developers guidelines for the creation of the program. Name the method (software development) that is usually implem...
agile methodologyextreme programmingSDLCsoftware development models - Question #772Risk Management
Jim's company hires Chris's company in order to develop software. However, a 3rd party has a source code copy. What should be in place by Jim's company for protection?
software escrowsource code protectionvendor riskthird-party agreements - Question #773Enterprise Security Operations
hich of the term is used to describe software bots or robots collection which runs automatically and autonomously and can harm the computer?
botnetmalware taxonomyautomated threatsthreat definitions - Question #774Technical Integration of Enterprise Security
What provides for higher performance and fault tolerance in case databases are clustered?
database clusteringOLTPfault tolerancehigh availability