Free CAS-003 Exam Braindumps (page: 55)

Page 55 of 137

A Chief Information Security Officer (CISO) requests the following external hosted services be scanned for malware, unsecured PII, and healthcare data:

-Corporate intranet site
-Online storage application
-Email and collaboration suite

Security policy also is updated to allow the security team to scan and detect any bulk downloads of corporate data from the company’s intranet and online storage site. Which of the following is needed to comply with the corporate security policy and the CISO’s request?

  1. Port scanner
  2. CASB
  3. DLP agent
  4. Application sandbox
  5. SCAP scanner

Answer(s): B



Several recent ransomware outbreaks at a company have cost a significant amount of lost revenue. The security team needs to find a technical control mechanism that will meet the following requirements and aid in preventing these outbreaks:

-Stop malicious software that does not match a signature
-Report on instances of suspicious behavior
-Protect from previously unknown threats
-Augment existing security capabilities

Which of the following tools would BEST meet these requirements?

  1. Host-based firewall
  2. EDR
  3. HIPS
  4. Patch management

Answer(s): B



A company that has been breached multiple times is looking to protect cardholder data. The previous undetected attacks all mimicked normal administrative-type behavior. The company must deploy a host solution to meet the following requirements:

-Detect administrative actions
-Block unwanted MD5 hashes
-Provide alerts
-Stop exfiltration of cardholder data

Which of the following solutions would BEST meet these requirements? (Choose two.)

  1. AV
  2. EDR
  3. HIDS
  4. DLP
  5. HIPS
  6. EFS

Answer(s): B,D



A security engineer is employed by a hospital that was recently purchased by a corporation. Throughout the acquisition process, all data on the virtualized file servers must be shared by departments within both organizations. The security engineer considers data ownership to determine:

  1. the amount of data to be moved.
  2. the frequency of data backups.
  3. which users will have access to which data
  4. when the file server will be decommissioned

Answer(s): C



Page 55 of 137



Post your Comments and Discuss CompTIA CAS-003 exam with other Community members:

Nathan commented on April 20, 2020
I appreicate that you provide the Xengine software for free. But are you planning to keep it free! I really hope so!
GERMANY
upvote