nerdexam
CompTIA

CS0-003 · Question #262

A company has the following security requirements: - No public IPs - All data secured at rest - No insecure ports/protocols After a cloud scan is completed a security analyst receives reports that…

The correct answer is A. VM_PRD_DB. In Option A the Encryption says NO, and Port 80 is HTTP which by itself is not the problem but when the web server is serving requests over and unencrypted network, or when the data is unencrypted then... there's a problem. Also the IP is public. this violates all the rules…

Submitted by yuriko_h· Mar 6, 2026Vulnerability Management

Question

A company has the following security requirements:

  • No public IPs
  • All data secured at rest
  • No insecure ports/protocols

After a cloud scan is completed a security analyst receives reports that several misconfigurations are putting the company at risk. Given the following cloud scanner output:

Which of the following should the analyst recommend be updated first to meet the security requirements and reduce risks?

Exhibit

CS0-003 question #262 exhibit

Options

  • AVM_PRD_DB
  • BVM_DEV_DB
  • CVM_DEV_Web02
  • DVM_PRD_Web01

How the community answered

(52 responses)
  • A
    73% (38)
  • B
    15% (8)
  • C
    4% (2)
  • D
    8% (4)

Explanation

In Option A the Encryption says NO, and Port 80 is HTTP which by itself is not the problem but when the web server is serving requests over and unencrypted network, or when the data is unencrypted then... there's a problem. Also the IP is public. this violates all the rules stated

Topics

#Cloud security#Vulnerability prioritization#Security misconfiguration#Data at rest encryption

Community Discussion

No community discussion yet for this question.

Full CS0-003 Practice