CAS-002 Exam Details

  • Exam Code
    :CAS-002
  • Exam Name
    :CompTIA Advanced Security Practitioner (CASP+)
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :733 Q&As
  • Last Updated
    :Jan 22, 2024

CompTIA CAS-002 Online Questions & Answers

  • Question 261:

    A system administrator has installed a new Internet facing secure web application that consists of a Linux web server and Windows SQL server into a new corporate site. The administrator wants to place the servers in the most logical network security zones and implement the appropriate security controls. Which of the following scenarios BEST accomplishes this goal?

    A. Create an Internet zone, DMZ, and Internal zone on the firewall. Place the web server in the DMZ. Configure IPtables to allow TCP 80 and 443. Set SELinux to permissive. Place the SQL server in the internal zone. Configure the Windows firewall to allow TCP 80 and 443. Configure the Internet zone with ACLs of allow 80 and 443 destination DMZ.
    B. Create an Internet zone, DMZ, and Internal zone on the firewall. Place the web server in the DMZ. Configure IPtables to allow TCP 443. Set enforcement threshold on SELinux to one. Place the SQL server in the internal zone. Configure the Windows firewall to allow TCP 1433 and 1443. Configure the Internet zone with ACLs of allow 443 destination DMZ.
    C. Create an Internet zone and two DMZ zones on the firewall. Place the web server in the DMZ one. Set the enforcement threshold on SELinux to 100, and configure IPtables to allow TCP 80 and 443. Place the SQL server in DMZ two. Configure the Windows firewall to allow TCP 80 and 443. Configure the Internet zone with an ACL of allow 443 destination ANY.
    D. Create an Internet zone and two DMZ zones on the firewall. Place the web server in DMZ one. Set enforcement threshold on SELinux to zero, and configure IPtables to allow TCP 80 and 443. Place the SQL server in DMZ two. Configure the Internet zone ACLs with allow 80, 443, 1433, and 1443 destination ANY.

  • Question 262:

    Joe, a penetration tester, is tasked with testing the security robustness of the protocol between a mobile web application and a RESTful application server. Which of the following security tools would be required to assess the security between the mobile web application and the RESTful application server? (Select TWO).

    A. Jailbroken mobile device
    B. Reconnaissance tools
    C. Network enumerator
    D. HTTP interceptor
    E. Vulnerability scanner
    F. Password cracker

  • Question 263:

    An administrator notices the following file in the Linux server's /tmp directory.

    -rwsr-xr-x. 4 root root 234223 Jun 6 22:52 bash*

    Which of the following should be done to prevent further attacks of this nature?

    A. Never mount the /tmp directory over NFS
    B. Stop the rpcidmapd service from running
    C. Mount all tmp directories nosuid, noexec
    D. Restrict access to the /tmp directory

  • Question 264:

    A security administrator is tasked with securing a company's headquarters and branch offices move to unified communications. The Chief Information Officer (CIO) wants to integrate the corporate users' email, voice mail, telephony, presence and corporate messaging to internal computers, mobile users, and devices. Which of the following actions would BEST meet the CIO's goals while providing maximum unified communications security?

    A. Create presence groups, restrict IM protocols to the internal networks, encrypt remote devices, and restrict access to services to local network and VPN clients.
    B. Enable discretionary email forwarding restrictions, utilize QoS and Secure RTP, allow external IM protocols only over TLS, and allow port 2000 incoming to the internal firewall interface for secure SIP
    C. Set presence to invisible by default, restrict IM to invite only, implement QoS on SIP and RTP traffic, discretionary email forwarding, and full disk encryption.
    D. Establish presence privacy groups, restrict all IM protocols, allow secure RTP on session border gateways, enable full disk encryptions, and transport encryption for email security.

  • Question 265:

    Which of the following represents important technical controls for securing a SAN storage infrastructure? (Select TWO).

    A. Synchronous copy of data
    B. RAID configuration
    C. Data de-duplication
    D. Storage pool space allocation
    E. Port scanning
    F. LUN masking/mapping
    G. Port mapping

  • Question 266:

    A growing corporation is responding to the needs of its employees to access corporate email and other resources while traveling. The company is implementing remote access for company laptops. Which of the following security systems should be implemented for remote access? (Select TWO).

    A. Virtual Private Network
    B. Secure Sockets Layer for web servers
    C. Network monitoring
    D. Multifactor authentication for users
    E. Full disk encryption
    F. Intrusion detection systems

  • Question 267:

    A penetration tester is inspecting traffic on a new mobile banking application and sends the following web request:

    POST http://www.example.com/resources/NewBankAccount HTTP/1.1

    Content-type: application/json

    {

    "account":

    [

    { "creditAccount":"Credit Card Rewards account"} { "salesLeadRef":"www.example.com/badcontent/ exploitme.exe"}

    ],

    "customer":

    [

    { "name":"Joe Citizen"} { "custRef":"3153151"}

    ]

    }

    The banking website responds with:

    HTTP/1.1 200 OK

    {

    "newAccountDetails":

    [

    { "cardNumber":"1234123412341234"} { "cardExpiry":"2020-12-31"}

    { "cardCVV":"909"}

    ],

    "marketingCookieTracker":"JSESSIONID=000000001"

    "returnCode":"Account added successfully"

    }

    Which of the following are security weaknesses in this example? (Select TWO).

    A. Missing input validation on some fields
    B. Vulnerable to SQL injection
    C. Sensitive details communicated in clear-text
    D. Vulnerable to XSS
    E. Vulnerable to malware file uploads
    F. JSON/REST is not as secure as XML

  • Question 268:

    A data breach occurred which impacted the HR and payroll system. It is believed that an attack from within the organization resulted in the data breach. Which of the following should be performed FIRST after the data breach occurred?

    A. Assess system status
    B. Restore from backup tapes
    C. Conduct a business impact analysis
    D. Review NIDS logs

  • Question 269:

    A mature organization with legacy information systems has incorporated numerous new processes and dependencies to manage security as its networks and infrastructure are modernized. The Chief Information Office has become increasingly frustrated with frequent releases, stating that the organization needs everything to work completely, and the vendor should already have those desires built into the software product. The vendor has been in constant communication with personnel and groups within the organization to understand its business process and capture new software requirements from users. Which of the following methods of software development is this organization's configuration management process using?

    A. Agile
    B. SDL
    C. Waterfall
    D. Joint application development

  • Question 270:

    There has been a recent security breach which has led to the release of sensitive customer information. As part of improving security and reducing the disclosure of customer data, a training company has been employed to educate staff. Which of the following should be the primary focus of the privacy compliance training program?

    A. Explain how customer data is gathered, used, disclosed, and managed.
    B. Remind staff of the company's data handling policy and have staff sign an NDA.
    C. Focus on explaining the "how" and "why" customer data is being collected.
    D. Republish the data classification and the confidentiality policy.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-002 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.