CAS-003 Exam Details

  • Exam Code
    :CAS-003
  • Exam Name
    :CompTIA Advanced Security Practitioner (CASP+)
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :791 Q&As
  • Last Updated
    :Jan 22, 2024

CompTIA CAS-003 Online Questions & Answers

  • Question 421:

    A cybersecurity consulting company supports a diverse customer base. Which of the following types of constraints is MOST important for the consultancy to consider when advising a regional healthcare provider versus a global conglomerate?

    A. Return on investment
    B. Regulatory standards
    C. Pre-existing service agreements
    D. Insider threats

  • Question 422:

    An infrastructure team within an energy organization is at the end of a procurement process and has selected a vendor's SaaS platform to deliver services. As part of the legal negotiation, there are a number of outstanding risks, including:

    1.

    There are clauses that confirm a data retention period in line with what is in the energy organization's security policy.

    2.

    The data will be hosted and managed outside of the energy organization's geographical location.

    The number of users accessing the system will be small, and no sensitive data will be hosted in the SaaS platform. Which of the following should the project's security consultant recommend as the NEXT step?

    A. Develop a security exemption, as the solution does not meet the security policies of the energy organization.
    B. Require a solution owner within the energy organization to accept the identified risks and consequences.
    C. Mititgate the risks by asking the vendor to accept the in-country privacy principles and modify the retention period.
    D. Review the procurement process to determine the lessons learned in relation to discovering risks toward the end of the process.

  • Question 423:

    A large hospital has implemented BYOD to allow doctors and specialists the ability to access patient medical records on their tablets. The doctors and specialists access patient records over the hospital's guest WiFi network which is isolated from the internal network with appropriate security controls. The patient records management system can be accessed from the guest network and require two factor authentication. Using a remote desktop type interface, the doctors and specialists can interact with the hospital's system. Cut and paste and printing functions are disabled to prevent the copying of data to BYOD devices. Which of the following are of MOST concern? (Select TWO).

    A. Privacy could be compromised as patient records can be viewed in uncontrolled areas.
    B. Device encryption has not been enabled and will result in a greater likelihood of data loss.
    C. The guest WiFi may be exploited allowing non-authorized individuals access to confidential patient data.
    D. Malware may be on BYOD devices which can extract data via key logging and screen scrapes.
    E. Remote wiping of devices should be enabled to ensure any lost device is rendered inoperable.

  • Question 424:

    The director of sales asked the development team for some small changes to increase the usability of an application used by the sales team. Prior security reviews of the code showed no significant vulnerabilities, and since the changes were small, they were given a peer review and then pushed to the live environment. Subsequent vulnerability scans now show numerous flaws that were not present in the previous versions of the code. Which of the following is an SDLC best practice that should have been followed?

    A. Versioning
    B. Regression testing
    C. Continuous integration
    D. Integration testing

  • Question 425:

    A newly hired systems administrator is trying to connect a new and fully updated, but very customized, Android device to access corporate resources. However, the MDM enrollment process continually fails. The administrator asks a security team member to look into the issue.

    Which of the following is the MOST likely reason the MDM is not allowing enrollment?

    A. The OS version is not compatible
    B. The OEM is prohibited
    C. The device does not support FDE
    D. The device is rooted

  • Question 426:

    A systems administrator at a medical imaging company discovers protected health information (PHI) on a general purpose file server. Which of the following steps should the administrator take NEXT?

    A. Isolate all of the PHI on its own VLAN and keep it segregated at Layer 2
    B. Immediately encrypt all PHI with AES 256
    C. Delete all PHI from the network until the legal department is consulted
    D. Consult the legal department to determine legal requirements

  • Question 427:

    A user workstation was infected with a new malware variant as a result of a drive-by download. The security administrator reviews key controls on the infected workstation and discovers the following: Which of the following would BEST prevent the problem from reoccurring in the future? (Choose two.)

    A. Install HIPS
    B. Enable DLP
    C. Install EDR
    D. Install HIDS
    E. Enable application blacklisting
    F. Improve patch management processes

  • Question 428:

    A security architect is reviewing the code for a company's financial website. The architect suggests adding the following HTML element, along with a server-side function, to generate a random number on the page used to initiate a funds transfer:

    Which of the following attacks is the security architect attempting to prevent?

    A. SQL injection
    B. XSRF
    C. XSS
    D. Clickjacking

  • Question 429:

    An organization has established the following controls matrix:

    The following control sets have been defined by the organization and are applied in aggregate fashion:

    Systems containing PII are protected with the minimum control set.

    Systems containing medical data are protected at the moderate level.

    Systems containing cardholder data are protected at the high level.

    The organization is preparing to deploy a system that protects the confidentially of a database containing PII and medical data from clients. Based on the controls classification, which of the following controls would BEST meet these

    requirements?

    A. Proximity card access to the server room, context-based authentication, UPS, and full-disk encryption for the database server.
    B. Cipher lock on the server room door, FDE, surge protector, and static analysis of all application code.
    C. Peer review of all application changes, static analysis of application code, UPS, and penetration testing of the complete system.
    D. Intrusion detection capabilities, network-based IPS, generator, and context-based authentication.

  • Question 430:

    A healthcare company wants to increase the value of the data it collects on its patients by making the data available to third-party researchers for a fee. Which of the following BEST mitigates the risk to the company?

    A. Log all access to the data and correlate with the researcher.
    B. Anonymize identifiable information using keyed strings
    C. Ensure all data is encrypted in transit to the researcher.
    D. Ensure all researchers sign and abide by non-disclosure agreements.
    E. Sanitize date and time stamp information in the records.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-003 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.