nerdexam
CompTIA

CAS-005 · Question #239

An organization is implementing advanced security controls associated with the execution of software applications on corporate endpoints. The organization must implement a deny-all…

The correct answer is B. MDM. MDM is correct because it is the only listed solution capable of enforcing cross-platform application allowlisting, which matches the required deny-all, permit-by-exception approach.).

Submitted by tarun92· Mar 6, 2026Security Engineering

Question

An organization is implementing advanced security controls associated with the execution of software applications on corporate endpoints. The organization must implement a deny-all, permit-by-exception approach to software authorization for all systems regardless of OS. Which of the following should be implemented to meet these requirements?

Options

  • ASELinux
  • BMDM
  • CXDR
  • DBlock list
  • EAtomic execution

How the community answered

(21 responses)
  • A
    5% (1)
  • B
    86% (18)
  • E
    10% (2)

Explanation

MDM is correct because it is the only listed solution capable of enforcing cross-platform application allowlisting, which matches the required deny-all, permit-by-exception approach.).

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice