CAS-005試験無料問題集「CompTIA SecurityX Certification 認定」
A manufacturing plant is updating its IT services. During discussions, the senior management team created the following list of considerations:
- Staff turnover is high and seasonal.
- Extreme conditions often damage endpoints.
- Losses from downtime must be minimized.
- Regulatory data retention requirements exist.
Which of the following best addresses the considerations?
- Staff turnover is high and seasonal.
- Extreme conditions often damage endpoints.
- Losses from downtime must be minimized.
- Regulatory data retention requirements exist.
Which of the following best addresses the considerations?
正解:B
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A penetration tester discovers a condition that causes unexpected behavior in a web application.
This results in the dump of the interpreter's debugging information, which includes the interpreter's version, full path of binary files, and the user ID running the process. Which of the following actions would best mitigate this risk?
This results in the dump of the interpreter's debugging information, which includes the interpreter's version, full path of binary files, and the user ID running the process. Which of the following actions would best mitigate this risk?
正解:A
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A company implemented a new NAC solution based on 802.1X. However, the IT support team notices that some devices are not being enrolled in the new policies, causing access disruptions for key users. Which of the following solutions will most likely solve this issue and prevent reoccurrence?
正解:D
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A medical device manufacturer is establishing a risk management strategy for its devices Patient safety is its top concern. These devices automatically adapt to specific patient needs without human intervention and rely heavily on software. Which of the following is the most important risk factor to prioritize?
正解:C
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A SIEM generated an alert after a third-party database administrator, who had recently been granted temporary access to the repository, accessed business-sensitive content in the database.
The SIEM had generated similar alerts before this incident. Which of the following best explains the cause of the alert?
The SIEM had generated similar alerts before this incident. Which of the following best explains the cause of the alert?
正解:A
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A company designs policies and procedures for hardening containers deployed in the production environment. However, a security assessment reveals that deployed containers are not complying with the security baseline. Which of the following solutions best addresses this issue throughout early life-cycle stages?
正解:D
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A security analyst discovers a compromised internal server and finds that the attack vector was an application. When extracting a memory dump with the application process content, the analyst observes the following:

Which of the following solutions should the analyst recommend to best address this issue and avoid reoccurrence?

Which of the following solutions should the analyst recommend to best address this issue and avoid reoccurrence?
正解:C
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)
A security engineer is given the following requirements:
- An endpoint must only execute Internally signed applications
- Administrator accounts cannot install unauthorized software.
- Attempts to run unauthorized software must be logged
Which of the following best meets these requirements?
- An endpoint must only execute Internally signed applications
- Administrator accounts cannot install unauthorized software.
- Attempts to run unauthorized software must be logged
Which of the following best meets these requirements?
正解:A
解答を投票する
解説: (GoShiken メンバーにのみ表示されます)