Free CompTIA CAS-004 Exam Questions (page: 27)

Which of the following is the MOST important cloud-specific risk from the CSP's viewpoint?

  1. Isolation control failure
  2. Management plane breach
  3. Insecure data deletion
  4. Resource exhaustion

Answer(s): B



An organization is developing a disaster recovery plan that requires data to be backed up and available at a moment's notice.
Which of the following should the organization consider FIRST to address this requirement?

  1. Implement a change management plan to ensure systems are using the appropriate versions.
  2. Hire additional on-call staff to be deployed if an event occurs.
  3. Design an appropriate warm site for business continuity.
  4. Identify critical business processes and determine associated software and hardware requirements.

Answer(s): D


Reference:

https://searchdisasterrecovery.techtarget.com/definition/warm-site



Leveraging cryptographic solutions to protect data that is in use ensures the data is encrypted:

  1. when it is passed across a local network.
  2. in memory during processing
  3. when it is written to a system's solid-state drive.
  4. by an enterprise hardware security module.

Answer(s): B



A Chief Information Officer (CIO) wants to implement a cloud solution that will satisfy the following requirements:
-Support all phases of the SDLC.
-Use tailored website portal software.
-Allow the company to build and use its own gateway software.
-Utilize its own data management platform.
-Continue using agent-based security tools.
Which of the following cloud-computing models should the CIO implement?

  1. SaaS
  2. PaaS
  3. MaaS
  4. IaaS

Answer(s): B


Reference:

https://www.bmc.com/blogs/saas-vs-paas-vs-iaas-whats-the-difference-and-how-to-choose/



Viewing page 27 of 159



Post your Comments and Discuss CompTIA CAS-004 exam prep with other Community members:

CAS-004 Exam Discussions & Posts