nerdexam
CompTIA

CAS-005 · Question #263

A security architect must make sure that the least number of services as possible is exposed in order to limit an adversary's ability to access the systems. Which of the following should the…

The correct answer is B. Perform attack surface reduction. Attack surface reduction focuses on minimizing unnecessary services, open ports, and vulnerabilities, reducing the exposure to potential adversaries. This aligns with zero trust and least privilege principles.

Submitted by omar99· Mar 6, 2026Security Architecture

Question

A security architect must make sure that the least number of services as possible is exposed in order to limit an adversary's ability to access the systems. Which of the following should the architect do first?

Options

  • AEnforce Secure Boot.
  • BPerform attack surface reduction.
  • CDisable third-party integrations.
  • DLimit access to the systems.

How the community answered

(49 responses)
  • A
    2% (1)
  • B
    90% (44)
  • C
    2% (1)
  • D
    6% (3)

Explanation

Attack surface reduction focuses on minimizing unnecessary services, open ports, and vulnerabilities, reducing the exposure to potential adversaries. This aligns with zero trust and least privilege principles.

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice