exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 269 discussion

Actual exam question from CompTIA's CAS-004
Question #: 269
Topic #: 1
[All CAS-004 Questions]

An architect is designing security scheme for an organization that is concerned about APTs. Any proposed architecture must meet the following requirements:

• Services must be able to be reconstituted quickly from a known-good state.
• Network services must be designed to ensure multiple diverse layers of redundancy.
• Defensive and responsive actions must be automated to reduce human operator demands.

Which of the following designs must be considered to ensure the architect meets these requirements? (Choose three.)

  • A. Increased efficiency by embracing advanced caching capabilities
  • B. Geographic distribution of critical data and services
  • C. Hardened and verified container usage
  • D. Emulated hardware architecture usage
  • E. Establishment of warm and hot sites for continuity of operations
  • F. Heterogeneous architecture
  • G. Deployment of IPS services that can identify and block malicious traffic
  • H. Implementation and configuration of a SOAR
Show Suggested Answer Hide Answer
Suggested Answer: BCH 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
2CU8
Highly Voted 1 year, 10 months ago
Selected Answer: BEH
The designs that must be considered to ensure the architect meets these requirements are: Network services must be designed to ensure multiple diverse layers of redundancy. Establishment of warm and hot sites for continuity of operations. Implementation and configuration of a SOAR (Security Orchestration, Automation and Response) system to automate defensive and responsive actions to reduce human operator demands. Heterogeneous architecture refers to the use of different types of hardware and software in a system. It is not related to the design of network services to ensure multiple diverse layers of redundancy.
upvoted 9 times
...
BiteSize
Highly Voted 1 year, 7 months ago
Selected Answer: BEH
Source: Verifying each answer against Chat GPT, my experience, other test banks, a written book, and weighing in the discussion from all users to create a 100% accurate guide for myself before I take the exam. (It isn't easy because of the time needed, but it is doing my diligence)
upvoted 5 times
Alex_2169
1 year, 5 months ago
when you use chat GPT make sure you use version 4.0 and to ask to give the answer according to comptia this makes a big difference in answers
upvoted 1 times
CraZee
1 year, 1 month ago
I just ran it against GPT 3.5 and was given BCH...maybe due to the 6 months of data collected for processing...
upvoted 1 times
...
...
...
Steel16
Most Recent 6 days, 15 hours ago
Selected Answer: BCE
Geographic distribution of critical data and services: This ensures redundancy by spreading data across different physical locations, so if one area is compromised, other copies remain accessible. This also supports quick reconstitution from a known-good state by allowing access to unaffected data copies. Hardened and verified container usage: Hardened containers provide increased security by minimizing the attack surface within them. Verification processes ensure the containers are trustworthy and haven't been tampered with, further enhancing security and facilitating rapid reconstitution. Establishment of warm and hot sites for continuity of operations: Warm and hot sites allow for rapid switchover to operational systems in the event of a disaster or major outage, minimizing downtime and enabling business continuity. This aligns with the requirement for quick reconstitution and redundancy.
upvoted 1 times
...
deeden
2 months, 3 weeks ago
Selected Answer: CFH
I think CFH makes more sense to me. Geography doesn't help with supply-chain attacks, or at least not for Solarwinds and Cisco. Containers can be self-healing, and SOAR helps with security automation and response.
upvoted 1 times
deeden
2 months, 3 weeks ago
APT28 Exploits Known Vulnerability to Carry Out Reconnaissance and Deploy Malware on Cisco Routers https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-108
upvoted 1 times
...
deeden
2 months, 3 weeks ago
SolarWinds hack explained: Everything you need to know https://www.techtarget.com/whatis/feature/SolarWinds-hack-explained-Everything-you-need-to-know
upvoted 1 times
...
...
Bright07
3 months ago
Selected Answer: BEH
B. Geographic distribution of critical data and services: Geographic distribution helps ensure that services and data are available from multiple locations, providing redundancy in case of regional disruptions. It also enhances the organization's ability to quickly recover from any attacks or disasters, as the services can be restored or accessed from a different region. E. Establishment of warm and hot sites for continuity of operations: A hot site allows services and data to be quickly restored from a fully operational backup location, while a warm site has some infrastructure ready to be scaled up in case of failure. Both are crucial for business continuity and meet the requirement of quickly reconstituting services from a known-good state. H. Implementation and configuration of a SOAR (Security Orchestration, Automation, and Response): SOAR platforms automate defensive and responsive actions. They can detect, analyze, and respond to threats without requiring manual intervention, which reduces human operator demands.
upvoted 1 times
...
231354b
3 months, 2 weeks ago
Selected Answer: BCH
Company is concerned about APTs, so BCH wouldaddress all oftheir requirements. A Warm/cold site doesn't solve APT issue, which is what the organization is concerned about and the reason why they are building this design.
upvoted 1 times
...
23169fd
7 months, 3 weeks ago
Selected Answer: BCH
B. Geographic distribution of critical data and services Ensures redundancy and resilience by distributing data and services across multiple locations, reducing the impact of localized failures or attacks. C. Hardened and verified container usage Facilitates quick reconstitution of services from known-good states using secure, consistent container images. H. Implementation and configuration of a SOAR (Security Orchestration, Automation, and Response) Automates defensive and responsive actions, reducing human operator demands and ensuring rapid, consistent responses to security incidents.
upvoted 1 times
...
OdinAtlasSteel
1 year, 3 months ago
Selected Answer: BCH
Unless that ATP is planning to magically summon a tornado to destroy your office, I don't see how establishing a Hot/Warm Site is going to do anything to help you. For that reason, my answer is B, C, H.
upvoted 5 times
...
ThatGuyOverThere
1 year, 4 months ago
Selected Answer: BCH
What 32d799a said.
upvoted 2 times
...
ThatGuyOverThere
1 year, 4 months ago
What 32d799a said.
upvoted 2 times
...
32d799a
1 year, 4 months ago
Selected Answer: BCH
Geographic distribution of critical data and services - This ensures redundancy and helps in quickly recovering from a known good state if one location gets compromised; Hardened and verified container usage - Containers can be reconstituted quickly, and if they are hardened and verified, they are resistant to compromise; Implementation and configuration of a SOAR (Security Orchestration, Automation, and Response) - This primarily deals with the automation of defensive and responsive actions, making it relevant to the third requirement.
upvoted 5 times
...
p1s3c
1 year, 10 months ago
Selected Answer: ABH
A. Increased efficiency by embracing advanced caching capabilities B. Geographic distribution of critical data and services H. Implementation and configuration of a SOAR Explanation: A: Advanced caching can be used to improve the speed of reconstitution from a known-good state, which is one of the requirements. B: Geographic distribution of critical data and services can be used to ensure multiple diverse layers of redundancy. H: The implementation and configuration of a SOAR (Security Orchestration, Automation and Response) can help automate defensive and responsive actions, thereby reducing the demands on human operators.
upvoted 1 times
...
Alizadeh
1 year, 10 months ago
Selected Answer: BCH
Based on the provided requirements, the following designs should be considered to ensure the architect meets the organization's needs:
upvoted 1 times
...
javier051977
1 year, 10 months ago
Selected Answer: BCH
B, C, and H are the most appropriate designs to ensure that the architect meets the requirements. B. Geographic distribution of critical data and services will ensure that multiple sites are available to restore data and services in the event of an APT attack. This will also reduce the impact of DDoS attacks by ensuring that traffic is spread across multiple sites. C. Hardened and verified container usage can help to isolate services from one another and protect them from APT attacks. Containerization can provide a secure and scalable platform for deploying services, which can be reconstituted quickly from a known-good state. H. Implementation and configuration of a SOAR platform will automate the process of responding to and mitigating APT attacks. The SOAR platform will allow the organization to create a set of automated actions that can be executed in response to security events, reducing the human operator demands.
upvoted 1 times
...
last_resort
1 year, 10 months ago
Selected Answer: FGH
F. Heterogeneous architecture - vendor diversity for redundancy G. Deployment of IPS services that can identify and block malicious traffic- to defend H. Implementation and configuration of a SOAR- for automation of recover
upvoted 1 times
last_resort
1 year, 10 months ago
Disregard heterogeneous architecture pls!!
upvoted 1 times
last_resort
1 year, 10 months ago
Changing my third option to C, containerization.
upvoted 2 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago