CAS-005 · Question #1
A company hosts a platform-as-a-service solution with a web-based front end, through which customers interact with data sets. A security administrator needs to deploy controls to prevent…
The correct answer is D. Creating WAF policies for relevant programming languages. A Web Application Firewall (WAF) provides specific protection against application-focused attacks (such as SQL injection, cross-site scripting, etc.) by analyzing and filtering HTTP requests. Creating WAF policies tailored to the application's programming languages will…
Question
A company hosts a platform-as-a-service solution with a web-based front end, through which customers interact with data sets. A security administrator needs to deploy controls to prevent application-focused attacks. Which of the following most directly supports the administrator’s objective?
Options
- Aimproving security dashboard visualization on SIEM
- BRotating API access and authorization keys every two months
- CImplementing application toad balancing and cross-region availability
- DCreating WAF policies for relevant programming languages
How the community answered
(41 responses)- A7% (3)
- B2% (1)
- C12% (5)
- D78% (32)
Explanation
A Web Application Firewall (WAF) provides specific protection against application-focused attacks (such as SQL injection, cross-site scripting, etc.) by analyzing and filtering HTTP requests. Creating WAF policies tailored to the application's programming languages will directly support the security administrator's objective of preventing application-specific attacks.
Community Discussion
No community discussion yet for this question.