Labour Day Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

CompTIA CASP CAS-003 Exam Questions and Answers PDF

Page: 5 / 25
Question 20

A global company has decided to implement a cross-platform baseline of security settings for all company laptops. A security engineer is planning and executing the project. Which of the following should the security engineer recommend?

Options:

A.

Replace each laptop in the company's environment with a standardized laptop that is preconfigured to match the baseline settings

B.

Create batch script files that will enable the baseline security settings and distribute them to global employees for execution

C.

Send each laptop to a regional IT office to be reimaged with the new baseline security settings enabled and then redeployed

D.

Establish GPO configurations for each baseline setting, test that each works as expected, and have each setting deployed to the laptops.

E.

Leverage an MDM solution to apply the baseline settings and deploy continuous monitoring of security configurations.

Question 21

A networking administrator was recently promoted to security administrator in an organization that handles highly sensitive data. The Chief Information Security Officer (CISO) has just asked for all IT security personnel to review a zero-day vulnerability and exploit for specific application servers to help mitigate the organization’s exposure to that risk. Which of the following should the new security administrator review to gain more information? (Choose three.)

Options:

A.

CVE database

B.

Recent security industry conferences

C.

Security vendor pages

D.

Known vendor threat models

E.

Secure routing metrics

F.

Server’s vendor documentation

G.

Verified security forums

Question 22

A manufacturing company recently recovered from an attack on its ICS devices. It has since reduced the attack surface by isolating the affected components. The company now wants to implement detection capabilities. It is considering a system that is based on machine learning. Which of the following features would BEST describe the driver to adopt such nascent technology over mainstream commercial IDSs?

Options:

A.

Trains on normal behavior and identifies deviations therefrom

B.

Identifies and triggers upon known bad signatures and behaviors

C.

Classifies traffic based on logical protocols and messaging formats

D.

Automatically reconfigures ICS devices based on observed behavior

Question 23

A cybersecurity analyst is conducting packet analysis on the following:

Which of the following is occurring in the given packet capture?

Options:

A.

ARP spoofing

B.

Broadcast storm

C.

Smurf attack

D.

Network enurneration

E.

Zero-day exploit

Page: 5 / 25
Exam Code: CAS-003
Exam Name: CompTIA Advanced Security Practitioner (CASP) Exam
Last Update: Apr 14, 2023
Questions: 683
CAS-003 pdf

CAS-003 PDF

$28  $80
CAS-003 Engine

CAS-003 Testing Engine

$33.25  $95
CAS-003 PDF + Engine

CAS-003 PDF + Testing Engine

$45.5  $130