Leads4pass > CompTIA > CompTIA Certifications > CAS-005 > CAS-005 Online Practice Questions and Answers

CAS-005 Online Practice Questions and Answers

Questions 4

A security review revealed that not all of the client proxy traffic is being captured. Which of the following architectural changes best enables the capture of traffic for analysis?

A. Adding an additional proxy server to each segmented VLAN

B. Setting up a reverse proxy for client logging at the gateway

C. Configuring a span port on the perimeter firewall to ingest logs

D. Enabling client device logging and system event auditing

Buy Now
Questions 5

A security engineer wants to reduce the attack surface of a public-facing containerized application

Which of the following will best reduce the application's privilege escalation attack surface?

A. Implementing the following commands in the Dockerfile: RUN echo user:x:1000:1000iuser:/home/user:/dew/null > /ete/passwd

B. Installing an EDR on the container's host with reporting configured to log to a centralized SIFM and Implementing the following alerting rules TF PBOCESS_USEB=rooC ALERT_TYPE=critical

C. Designing a muiticontainer solution, with one set of containers that runs the mam application, and another set oi containers that perform automatic remediation by replacing compromised containers or disabling compromised accounts

D. Running the container in an isolated network and placing a load balancer in a public- facing network. Adding the following ACL to the load balancer: PZRKZI HTTES from 0-0.0.0.0/0 pert 443

Buy Now
Questions 6

An organization wants to create a threat model to identity vulnerabilities in its infrastructure.

Which of the following, should be prioritized first?

A. External-facing Infrastructure with known exploited vulnerabilities

B. Internal infrastructure with high-seventy and Known exploited vulnerabilities

C. External facing Infrastructure with a low risk score and no known exploited vulnerabilities

D. External-facing infrastructure with a high risk score that can only be exploited with local access to the resource

Buy Now
Questions 7

Users are experiencing a variety of issues when trying to access corporate resources examples include

1.

Connectivity issues between local computers and file servers within branch offices

2.

Inability to download corporate applications on mobile endpoints wtiilc working remotely

3.

Certificate errors when accessing internal web applications

Which of the following actions are the most relevant when troubleshooting the reported issues? (Select two).

A. Review VPN throughput

B. Check IPS rules

C. Restore static content on lite CDN.

D. Enable secure authentication using NAC

E. Implement advanced WAF rules.

F. Validate MDM asset compliance

Buy Now
Questions 8

A company receives several complaints from customers regarding its website. An engineer implements a parser for the web server logs that generates the following output:

which of the following should the company implement to best resolve the issue?

A. IDS

B. CDN

C. WAF

D. NAC

Buy Now
Questions 9

Within a SCADA a business needs access to the historian server in order together metric about the functionality of the environment.

Which of the following actions should be taken to address this requirement?

A. Isolating the historian server for connections only from The SCADA environment

B. Publishing the C$ share from SCADA to the enterprise

C. Deploying a screened subnet between 11 and SCADA

D. Adding the business workstations to the SCADA domain

Buy Now
Questions 10

A systems administrator wants to reduce the number of failed patch deployments in an organization. The administrator discovers that system owners modify systems or applications in an ad hoc manner.

Which of the following is the best way to reduce the number of failed patch deployments?

A. Compliance tracking

B. Situational awareness

C. Change management

D. Quality assurance

Buy Now
Questions 11

A security architect is establishing requirements to design resilience in un enterprise system trial will be extended to other physical locations.

The system must:

1.

Be survivable to one environmental catastrophe

2.

Re recoverable within 24 hours of critical loss of availability

3.

Be resilient to active exploitation of one site-to-site VPN solution

Which of the following actions should the architect take to meet these requirements? (Choose two)

A. Load-balance connection attempts and data Ingress at internet gateways

B. Allocate fully redundant and geographically distributed standby sites.

C. Employ layering of routers from diverse vendors

D. Lease space to establish cold sites throughout other countries

E. Use orchestration to procure, provision, and transfer application workloads lo cloud services

F. Implement full weekly backups to be stored off-site for each of the company's sites

Buy Now
Questions 12

An analyst determined that the current process for manually handling phishing attacks within the company is ineffective. The analyst is developing a new process to ensure phishing attempts are handled internally in an appropriate and timely manner. One of the analyst's requirements is that a blocklist be updated automatically when phishing attempts are identified. Which of the following would help satisfy this requirement?

A. SOAR

B. MSSP

C. Containerization

D. Virtualization

E. MDR deployment

Buy Now
Questions 13

The Chief Information Security Officer (CISO) is working with a new company and needs a legal document to ensure all parties understand their roles during an assessment. Which of the following should the CISO have each party sign?

A. SLA

B. ISA

C. Permissions and access

D. Rules of engagement

Buy Now
Exam Code: CAS-005
Exam Name: CompTIA SecurityX
Last Update: Jun 10, 2026
Questions: 406
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99