nerdexam
CompTIA

CAS-005 · Question #411

To prevent data breaches, security leaders at a company decide to expand user education to: - Create a healthy security culture. - Comply with regulatory requirements - Improve incident reporting…

The correct answer is C. Simulating a phishing campaign. Simulating a phishing campaign helps users recognize phishing attempts and enhances overall security awareness. It is a practical way to improve incident reporting and ensure that users understand common attack vectors. This directly supports creating a healthy security…

Submitted by chen.hong· Mar 6, 2026Governance, Risk, and Compliance

Question

To prevent data breaches, security leaders at a company decide to expand user education to:

  • Create a healthy security culture.
  • Comply with regulatory requirements
  • Improve incident reporting

Which of the following would best meet their objective?

Options

  • APerforming a DoS attack
  • BScheduling regular penetration tests
  • CSimulating a phishing campaign
  • DDeploying fake ransomware

How the community answered

(41 responses)
  • A
    5% (2)
  • B
    2% (1)
  • C
    83% (34)
  • D
    10% (4)

Explanation

Simulating a phishing campaign helps users recognize phishing attempts and enhances overall security awareness. It is a practical way to improve incident reporting and ensure that users understand common attack vectors. This directly supports creating a healthy security culture, complying with regulatory requirements related to security training, and improving the response to security incidents.

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice