Free CAS-004 Exam Braindumps (page: 43)

Page 43 of 140

An attacker infiltrated the code base of a hardware manufacturer and inserted malware before the code was compiled. The malicious code is now running at the hardware level across a number of industries and sectors.
Which of the following categories BEST describes this type of vendor risk?

  1. SDLC attack
  2. Side-load attack
  3. Remote code signing
  4. Supply chain attack

Answer(s): D



A company is adopting a new artificial-intelligence-based analytics SaaS solution. This is the company's first attempt at using a SaaS solution, and a security architect has been asked to determine any future risks.
Which of the following would be the GREATEST risk in adopting this solution?

  1. The inability to assign access controls to comply with company policy
  2. The inability to require the service provider process data in a specific country
  3. The inability to obtain company data when migrating to another service
  4. The inability to conduct security assessments against a service provider

Answer(s): C



A BIA of a popular online retailer identified several mission-essential functions that would take more than seven days to recover in the event of an outage.
Which of the following should be considered when setting priorities for the restoration of these functions?

  1. Supply chain issues
  2. Revenue generation
  3. Warm-site operations
  4. Scheduled impacts to future projects

Answer(s): B



A software development company makes its software version available to customers from a web portal. On several occasions, hackers were able to access the software repository to change the package that is automatically published on the website.
Which of the following would be the technique to ensure the software the users download is the official software released by the company?

  1. Distribute the software via a third-party repository.
  2. Close the web repository and deliver the software via email.
  3. Email the software link to all customers.
  4. Display the SHA checksum on the website.

Answer(s): D



Page 43 of 140



Post your Comments and Discuss CompTIA CAS-004 exam with other Community members:

michrle23 commented on November 08, 2024
The purchase and download is very streamlined. I was able to quickly pay and download my course content. I have now started preparing. Once I finish my exam I will share my experience of the exam.
PAKISTAN
upvote

Fatima commented on June 17, 2024
The purchase and download is very streamlined. I was able to quickly pay and download my course content. I have now started preparing. Once I finish my exam I will share my experience of the exam.
EUROPEAN UNION
upvote

Sysadmin commented on April 22, 2024
How can you report incorrect answers? #27 is incorrect. First and foremost is always stop the spread, and then access the damage.
UNITED STATES
upvote

Gord commented on March 19, 2024
I hardly submit reivews... but the team at Xcerts.com really deserve one. They are super professional and the quality of their study guides are good. I highly recommend it anyone preparing for their exams.
UNITED KINGDOM
upvote

9eagles commented on April 07, 2023
on question 10 and so far 2 wrong answers as evident in the included reference link.
Anonymous
upvote

Change commented on December 11, 2023
Are some answers wrong
UNITED STATES
upvote

makeel commented on December 10, 2023
the questions are the same exist of another website
Anonymous
upvote

SecPro commented on October 29, 2023
Great dumps, helped me pass the exam.
Anonymous
upvote