CAS-004 Exam Details

  • Exam Code
    :CAS-004
  • Exam Name
    :CompTIA Advanced Security Practitioner (CASP+)
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :792 Q&As
  • Last Updated
    :May 28, 2026

CompTIA CAS-004 Online Questions & Answers

  • Question 661:

    A host on a company's network has been infected by a worm that appears to be spreading via SMB. A security analyst has been tasked with containing the incident while also maintaining evidence for a subsequent investigation and malware analysis.

    Which of the following steps would be best to perform FIRST?

    A. Turn off the infected host immediately.
    B. Run a full anti-malware scan on the infected host.
    C. Modify the smb.conf file of the host to prevent outgoing SMB connections.
    D. Isolate the infected host from the network by removing all network connections.

  • Question 662:

    An enterprise is undergoing an audit to review change management activities when promoting code to production. The audit reveals the following:

    1.Some developers can directly publish code to the production environment.

    2.Static code reviews are performed adequately.

    3.Vulnerability scanning occurs on a regularly scheduled basis per policy.

    Which of the following should be noted as a recommendation within the audit report?

    A. Implement short maintenance windows.
    B. Perform periodic account reviews.
    C. Implement job rotation.
    D. Improve separation of duties.

  • Question 663:

    An application developer is including third-party background security fixes in an application. The fixes seem to resolve a currently identified security issue. However, when the application is released to the public, report come In that a previously vulnerability has returned. Which of the following should the developer integrate into the process to BEST prevent this type of behavior?

    A. Peer review
    B. Regression testing
    C. User acceptance
    D. Dynamic analysis

  • Question 664:

    An organization established an agreement with a partner company for specialized help desk services. A senior security officer within the organization Is tasked with providing documentation required to set up a dedicated VPN between the two entities. Which of the following should be required?

    A. SLA
    B. ISA
    C. NDA
    D. MOU

  • Question 665:

    To bring digital evidence in a court of law, the evidence must be:

    A. material.
    B. tangible.
    C. consistent.
    D. conserved.

  • Question 666:

    A company has a website with a huge database. The company wants to ensure that a DR site could be brought online quickly in the event of a failover, and end users would miss no more than 30 minutes of data. Which of the following should the company do to meet these objectives?

    A. Build a content caching system at the DR site.
    B. Store the nightly full backups at the DR site.
    C. Increase the network bandwidth to the DR site.
    D. Implement real-time replication for the DR site.

  • Question 667:

    Within change management, winch of the following ensures functions are earned out by multiple employees?

    A. Least privilege
    B. Mandatory vacation
    C. Separator of duties
    D. Job rotation

  • Question 668:

    A company has retained the services of a consultant to perform a security assessment. As part of the assessment, the consultant recommends engaging with others in the industry to collaborate in regards to emerging attacks. Which of the following would BEST enable this activity?

    A. ISAC
    B. OSINT
    C. CVSS
    D. Threat modeling

  • Question 669:

    Which of the following agreements includes no penalties and can be signed by two entities that are working together toward the same goal?

    A. MOU
    B. NDA
    C. SLA
    D. ISA

  • Question 670:

    Which of the following BEST sets expectation between the security team and business units within an organization?

    A. Risk assessment
    B. Memorandum of understanding
    C. Business impact analysis
    D. Business partnership agreement
    E. Services level agreement

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-004 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.