nerdexam
CompTIA

CAS-005 · Question #6

A security officer received several complaints from users about excessive MFA push notifications at night. The security team investigates and suspects malicious activities regarding user account…

The correct answer is D. Configuring prompt-driven MFA. Prompt-driven MFA means that MFA prompts are triggered only when there is suspicious activity or a specific need for authentication, rather than being sent regularly. This approach would reduce the excessive notifications while still ensuring security, addressing the user's…

Submitted by zhang_li· Mar 6, 2026Security Engineering

Question

A security officer received several complaints from users about excessive MFA push notifications at night. The security team investigates and suspects malicious activities regarding user account authentication. Which of the following is the best way for the security officer to restrict MFA notifications?

Options

  • AProvisioning FID02 devices
  • BDeploying a text message based on MFA
  • CEnabling OTP via email
  • DConfiguring prompt-driven MFA

How the community answered

(49 responses)
  • A
    8% (4)
  • B
    10% (5)
  • C
    4% (2)
  • D
    78% (38)

Explanation

Prompt-driven MFA means that MFA prompts are triggered only when there is suspicious activity or a specific need for authentication, rather than being sent regularly. This approach would reduce the excessive notifications while still ensuring security, addressing the user's complaints

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice