nerdexam
CompTIA

CAS-005 · Question #311

The device event logs sourced from MDM software are as follows: Which of the following security concerns and response actions would best address the risks posed by the device in the logs?

The correct answer is C. Impossible travel; disable the device's account and access while investigating. Due to line 4, a GPS spoofing could be in use either by the newly install app, or before the app

Submitted by tunde_lagos· Mar 6, 2026Security Operations

Question

The device event logs sourced from MDM software are as follows:

Which of the following security concerns and response actions would best address the risks posed by the device in the logs?

Exhibits

CAS-005 question #311 exhibit 1
CAS-005 question #311 exhibit 2

Options

  • AMalicious installation of an application; change the MDM configuration to remove application ID
  • BResource leak; recover the device for analysis and clean up the local storage
  • CImpossible travel; disable the device's account and access while investigating
  • DFalsified status reporting; remotely wipe the device

How the community answered

(50 responses)
  • A
    12% (6)
  • B
    4% (2)
  • C
    60% (30)
  • D
    24% (12)

Explanation

Due to line 4, a GPS spoofing could be in use either by the newly install app, or before the app

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice