CAS-004 Exam Details

  • Exam Code
    :CAS-004
  • Exam Name
    :CompTIA Advanced Security Practitioner (CASP+)
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :792 Q&As
  • Last Updated
    :May 28, 2026

CompTIA CAS-004 Online Questions & Answers

  • Question 301:

    A security manager wants to standardize security settings, firmware, and software across a heterogeneous environment. Which of the following can be used in combination to meet these goals? (Choose three).

    A. Attestation services
    B. TPM
    C. HIPS software
    D. OOB management software
    E. Group Policy
    F. EDR software
    G. MDM software

  • Question 302:

    A security architect wants to ensure a remote host's identity and decides that pinning the X.509 certificate to the device is the most effective solution.

    Which of the following must happen first?

    A. Use Distinguished Encoding Rules (DER) for the certificate.
    B. Extract the private key from the certificate.
    C. Use an out-of-band method to obtain the certificate
    D. Compare the retrieved certificate with the embedded certificate.

  • Question 303:

    An organization is moving its intellectual property data from on premises to a CSP and wants to secure the data from theft. Which of the following can be used to mitigate this risk?

    A. An additional layer of encryption
    B. A third-party, data integrity monitoring solution
    C. A complete backup that is created before moving the data
    D. Additional application firewall rules specific to the migration

  • Question 304:

    The Chief Executive Officer of an online retailer notices a sudden drop in sales A security analyst at the retailer detects a redirection of unsecure web traffic to a competitor's site Which of the following would best prevent this type of attack?

    A. Enabling HSTS
    B. Configuring certificate pinning
    C. Enforcing DNSSEC
    D. Deploying certificate stapling

  • Question 305:

    An information security officer reviews a report and notices a steady increase in outbound network traffic over the past ten months. There is no clear explanation for the increase. The security officer interviews several business units and

    discovers an unsanctioned cloud storage provider was used to share marketing materials with potential customers.

    Which of the following services would be BEST for the security officer to recommend to the company?

    A. NIDS
    B. HIPS
    C. CASB
    D. SFTP

  • Question 306:

    Company A acquired Company . During an audit, a security engineer found Company B's environment was inadequately patched. In response, Company A placed a firewall between the two environments until Company B's infrastructure could be integrated into Company A's security program.

    Which of the following risk-handling techniques was used?

    A. Accept
    B. Avoid
    C. Transfer
    D. Mitigate

  • Question 307:

    A security analyst has been provided the following partial Snort IDS rule to review and add into the company's Snort IDS to identify a CVE:

    alert tcp any any -> $HOME_NET 3389 (flow:to_server,established; content:"MS_T120|00|"; fasc_pattern:only)

    Which of the following should the analyst recommend to mitigate this type of vulnerability?

    A. IPSec rules
    B. OS patching
    C. Two-factor authentication
    D. TCP wrappers

  • Question 308:

    A mobile application developer is creating a global, highly scalable, secure chat application. The developer would like to ensure the application is not susceptible to on-path attacks while the user is traveling in potentially hostile regions. Which of the following would BEST achieve that goal?

    A. Utilize the SAN certificate to enable a single certificate for all regions.
    B. Deploy client certificates to all devices in the network.
    C. Configure certificate pinning inside the application.
    D. Enable HSTS on the application's server side for all communication.

  • Question 309:

    The information security manager at a 24-hour manufacturing facility is reviewing a contract for potential risks to the organization. The contract pertains to the support of printers and multifunction devices during non-standard business hours. Which of the following will the security manager most likely identify as a risk?

    A. Print configurations settings for locked print jobs
    B. The lack of an NDA with the company that supports its devices
    C. The lack of an MSA to govern other services provided by the service provider
    D. The lack of chain of custody for devices prior to deployment at the company

  • Question 310:

    The results of an internal audit indicate several employees reused passwords that were previously included in a published list of compromised passwords. The company has the following employee password policy:

    Which of the following should be implemented to best address the password reuse issue? (Choose two.)

    A. Increase the minimum age to two days.
    B. Increase the history to 20.
    C. Increase the character length to 12.
    D. Add case-sensitive requirements to character class.
    E. Decrease the maximum age to 30 days.
    F. Remove the complexity requirements.
    G. Increase the maximum age to 120 days.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-004 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.