CAS-005 Exam Details

  • Exam Code
    :CAS-005
  • Exam Name
    :CompTIA SecurityX
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :406 Q&As
  • Last Updated
    :May 28, 2026

CompTIA CAS-005 Online Questions & Answers

  • Question 251:

    SIMULATION

    An organization is planning for disaster recovery and continuity of operations, and has noted the following relevant findings:

    1.A natural disaster may disrupt operations at Site A, which would then cause an evacuation. Users are unable to log into the domain from-their workstations after relocating to Site B.

    2.A natural disaster may disrupt operations at Site A, which would then cause the pump room at Site B to become inoperable.

    3.A natural disaster may disrupt operations at Site A, which would then cause unreliable internet connectivity at Site B due to route flapping.

    INSTRUCTIONS

    Match each relevant finding to the affected host by clicking on the host name and selecting the appropriate number.

    For findings 1 and 2, select the items that should be replicated to Site B. For finding 3, select the item requiring configuration changes, then select the appropriate corrective action from the drop-down menu.

    A. See the complete solution below in Explanation.
    B. PlaceHolder
    C. PlaceHolder
    D. PlaceHolder

  • Question 252:

    A security review revealed that not all of the client proxy traffic is being captured. Which of the following architectural changes best enables the capture of traffic for analysis?

    A. Adding an additional proxy server to each segmented VLAN
    B. Setting up a reverse proxy for client logging at the gateway
    C. Configuring a span port on the perimeter firewall to ingest logs
    D. Enabling client device logging and system event auditing

  • Question 253:

    Which of the following tests explains why AI output could be inaccurate?

    A. Model poisoning
    B. Social engineering
    C. Output handling
    D. Prompt injections

  • Question 254:

    A developer needs to improve the cryptographic strength of a password-storage component in a web application without completely replacing the crypto-module. Which of the following is the most appropriate technique?

    A. Key splitting
    B. Key escrow
    C. Key rotation
    D. Key encryption
    E. Key stretching

  • Question 255:

    Which of the following provides the best solution for organizations that want to securely back up the MFA seeds for its employees in a central, offline location with minimal management overhead?

    A. Key escrow service
    B. Secrets management
    C. Encrypted database
    D. Hardware security module

  • Question 256:

    An organization recently implemented a policy that requires all passwords to be rotated every 90 days. An administrator observes a large volume of failed sign-on logs from multiple servers that are often accessed by users. The administrator determines users are disconnecting from the RDPsession but not logging off.

    Which of the following should the administrator do to prevent account lockouts?

    A. Increase the account lockout threshold.
    B. Enforce password complexity.
    C. Automate logout of inactive sessions.
    D. Extend the allowed session length.

  • Question 257:

    An organization wants to manage specialized endpoints and needs a solution that provides the ability to:

    1.Centrally manage configurations

    2.Push policies.

    3.Remotely wipe devices

    4.Maintain asset inventory

    Which of the following should the organization do to best meet these requirements?

    A. Use a configuration management database
    B. Implement a mobile device management solution.
    C. Configure contextual policy management
    D. Deploy a software asset manager

  • Question 258:

    A security engineer wants to improve the security of an application as part of the development pipeline. The engineer reviews the following component of an internally developed web application that allows employees to manipulate documents from a number of internal servers:

    response = requests.get(url)

    Users can specify the document to be parsed by passing the document URL to the application as a parameter. Which of the following is the best solution?

    A. Indexing
    B. Output encoding
    C. Code scanner
    D. Penetration testing

  • Question 259:

    A security architect must make sure that the least number of services as possible is exposed in order to limit an adversary's ability to access the systems. Which of the following should the architect do first?

    A. Enforce Secure Boot.
    B. Perform attack surface reduction.
    C. Disable third-party integrations.
    D. Limit access to the systems.

  • Question 260:

    A company has the following requirements for a cloud-based web application:

    1.

    Must authenticate customers

    2.

    Must prevent data exposure

    3.

    Must allow customer access to data throughout the cloud environment

    4.

    Must restrict access by specific regions

    Which of the following solutions best addresses these security requirements?

    A. Applying role-based access controls and configuring geolocation policies
    B. Replicating the data in each customer environment
    C. Hosting the data regionally and providing each customer with a unique link
    D. Moving to a cloud provider that operates only in one specific region

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CAS-005 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.