A security architect is designing a solution for a new customer who requires significant security capabilities in its environment. The customer has provided the architect with the following set of requirements:
1.Capable of early detection of advanced persistent threats.
2.Must be transparent to users and cause no performance degradation.
3.Allow integration with production and development networks seamlessly.
4.Enable the security team to hunt and investigate live exploitation techniques.
Which of the following technologies BEST meets the customer's requirements for security capabilities?
A. Threat IntelligenceA company is in the process of refreshing its entire infrastructure. The company has a business-critical process running on an old 2008 Windows server. If this server fails, the company would lose millions of dollars in revenue. Which of the following actions should the company should take?
A. Accept the risk as the cost of doing businessA security engineer is reviewing Apache web server logs and has identified the following pattern in the log:
GET https://example.com/image5/../../etc/passwd HTTP/1.1 200 OK The engineer has also reviewed IDS and firewall logs and established a correlation to an external IP address.
Which of the following can be determined regarding the vulnerability and response?
A. A cross-site scripting attack was successful at reading the /etc/passwd file, and the system should avoid passing user-supplied input to REST API.A shipping company that is trying to eliminate entire classes of threats is developing an SELinux policy to ensure its custom Android devices are used exclusively for package tracking.
After compiling and implementing the policy, in which of the following modes must the company ensure the devices are configured to run?
A. ProtectingA company's Chief Information Security Officer wants to prevent the company from being the target of ransomware. The company's IT assets need to be protected. Which of the following are the MOST secure options to address these concerns? (Choose three.)
A. AntivirusA security engineer needs to recommend a solution that will meet the following requirements:
1.Identify sensitive data in the provider's network
2.Maintain compliance with company and regulatory guidelines
3.Detect and respond to insider threats, privileged user threats, and compromised accounts
4.Enforce datacentric security, such as encryption, tokenization, and access control
Which of the following solutions should the security engineer recommend to address these requirements?
A. WAFA security architect is tasked with scoping a penetration test that will start next month. The architect wants to define what security controls will be impacted. Which of the following would be the BEST document to consult?
A. Rules of engagementA cyberanalyst for a government agency is concerned about how Pll is protected A supervisor indicates that a Privacy Impact Assessment must be done. Which of the following describes a function of a Privacy Impact Assessment?
A. To validate the project participantsA recent data breach stemmed from unauthorized access to an employee's company account with a cloud-based productivity suite. The attacker exploited excessive permissions granted to a third-party OAuth application to collect sensitive information.
Which of the following BEST mitigates inappropriate access and permissions issues?
A. SIEMCompany A acquired Company
B. During an initial assessment, the companies discover they are using the same SSO system. To help users with the transition. Company A is requiring the following:
1.Before the merger is complete, users from both companies should use a single set of usernames and passwords.
2.Users in the same departments should have the same set of rights and privileges, but they should have different sets of rights and privileges if they have different IPs.
3.Users from Company B should be able to access Company A's available resources.
Which of the following are the BEST solutions? (Choose two.)
A. Installing new Group Policy Object policiesNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-004 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.