exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 269 discussion

Actual exam question from CompTIA's CAS-004
Question #: 269
Topic #: 1
[All CAS-004 Questions]

An architect is designing security scheme for an organization that is concerned about APTs. Any proposed architecture must meet the following requirements:

• Services must be able to be reconstituted quickly from a known-good state.
• Network services must be designed to ensure multiple diverse layers of redundancy.
• Defensive and responsive actions must be automated to reduce human operator demands.

Which of the following designs must be considered to ensure the architect meets these requirements? (Choose three.)

  • A. Increased efficiency by embracing advanced caching capabilities
  • B. Geographic distribution of critical data and services
  • C. Hardened and verified container usage
  • D. Emulated hardware architecture usage
  • E. Establishment of warm and hot sites for continuity of operations
  • F. Heterogeneous architecture
  • G. Deployment of IPS services that can identify and block malicious traffic
  • H. Implementation and configuration of a SOAR
Show Suggested Answer Hide Answer
Suggested Answer: BCH 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
2CU8
Highly Voted 1 year, 9 months ago
Selected Answer: BEH
The designs that must be considered to ensure the architect meets these requirements are: Network services must be designed to ensure multiple diverse layers of redundancy. Establishment of warm and hot sites for continuity of operations. Implementation and configuration of a SOAR (Security Orchestration, Automation and Response) system to automate defensive and responsive actions to reduce human operator demands. Heterogeneous architecture refers to the use of different types of hardware and software in a system. It is not related to the design of network services to ensure multiple diverse layers of redundancy.
upvoted 9 times
...
BiteSize
Highly Voted 1 year, 5 months ago
Selected Answer: BEH
Source: Verifying each answer against Chat GPT, my experience, other test banks, a written book, and weighing in the discussion from all users to create a 100% accurate guide for myself before I take the exam. (It isn't easy because of the time needed, but it is doing my diligence)
upvoted 5 times
Alex_2169
1 year, 3 months ago
when you use chat GPT make sure you use version 4.0 and to ask to give the answer according to comptia this makes a big difference in answers
upvoted 1 times
CraZee
11 months, 3 weeks ago
I just ran it against GPT 3.5 and was given BCH...maybe due to the 6 months of data collected for processing...
upvoted 1 times
...
...
...
deeden
Most Recent 1 month ago
Selected Answer: CFH
I think CFH makes more sense to me. Geography doesn't help with supply-chain attacks, or at least not for Solarwinds and Cisco. Containers can be self-healing, and SOAR helps with security automation and response.
upvoted 1 times
deeden
1 month ago
APT28 Exploits Known Vulnerability to Carry Out Reconnaissance and Deploy Malware on Cisco Routers https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-108
upvoted 1 times
...
deeden
1 month ago
SolarWinds hack explained: Everything you need to know https://www.techtarget.com/whatis/feature/SolarWinds-hack-explained-Everything-you-need-to-know
upvoted 1 times
...
...
Bright07
1 month, 1 week ago
Selected Answer: BEH
B. Geographic distribution of critical data and services: Geographic distribution helps ensure that services and data are available from multiple locations, providing redundancy in case of regional disruptions. It also enhances the organization's ability to quickly recover from any attacks or disasters, as the services can be restored or accessed from a different region. E. Establishment of warm and hot sites for continuity of operations: A hot site allows services and data to be quickly restored from a fully operational backup location, while a warm site has some infrastructure ready to be scaled up in case of failure. Both are crucial for business continuity and meet the requirement of quickly reconstituting services from a known-good state. H. Implementation and configuration of a SOAR (Security Orchestration, Automation, and Response): SOAR platforms automate defensive and responsive actions. They can detect, analyze, and respond to threats without requiring manual intervention, which reduces human operator demands.
upvoted 1 times
...
231354b
1 month, 3 weeks ago
Selected Answer: BCH
Company is concerned about APTs, so BCH wouldaddress all oftheir requirements. A Warm/cold site doesn't solve APT issue, which is what the organization is concerned about and the reason why they are building this design.
upvoted 1 times
...
23169fd
6 months ago
Selected Answer: BCH
B. Geographic distribution of critical data and services Ensures redundancy and resilience by distributing data and services across multiple locations, reducing the impact of localized failures or attacks. C. Hardened and verified container usage Facilitates quick reconstitution of services from known-good states using secure, consistent container images. H. Implementation and configuration of a SOAR (Security Orchestration, Automation, and Response) Automates defensive and responsive actions, reducing human operator demands and ensuring rapid, consistent responses to security incidents.
upvoted 1 times
...
OdinAtlasSteel
1 year, 1 month ago
Selected Answer: BCH
Unless that ATP is planning to magically summon a tornado to destroy your office, I don't see how establishing a Hot/Warm Site is going to do anything to help you. For that reason, my answer is B, C, H.
upvoted 5 times
...
ThatGuyOverThere
1 year, 2 months ago
Selected Answer: BCH
What 32d799a said.
upvoted 2 times
...
ThatGuyOverThere
1 year, 2 months ago
What 32d799a said.
upvoted 2 times
...
32d799a
1 year, 3 months ago
Selected Answer: BCH
Geographic distribution of critical data and services - This ensures redundancy and helps in quickly recovering from a known good state if one location gets compromised; Hardened and verified container usage - Containers can be reconstituted quickly, and if they are hardened and verified, they are resistant to compromise; Implementation and configuration of a SOAR (Security Orchestration, Automation, and Response) - This primarily deals with the automation of defensive and responsive actions, making it relevant to the third requirement.
upvoted 5 times
...
p1s3c
1 year, 8 months ago
Selected Answer: ABH
A. Increased efficiency by embracing advanced caching capabilities B. Geographic distribution of critical data and services H. Implementation and configuration of a SOAR Explanation: A: Advanced caching can be used to improve the speed of reconstitution from a known-good state, which is one of the requirements. B: Geographic distribution of critical data and services can be used to ensure multiple diverse layers of redundancy. H: The implementation and configuration of a SOAR (Security Orchestration, Automation and Response) can help automate defensive and responsive actions, thereby reducing the demands on human operators.
upvoted 1 times
...
Alizadeh
1 year, 8 months ago
Selected Answer: BCH
Based on the provided requirements, the following designs should be considered to ensure the architect meets the organization's needs:
upvoted 1 times
...
javier051977
1 year, 9 months ago
Selected Answer: BCH
B, C, and H are the most appropriate designs to ensure that the architect meets the requirements. B. Geographic distribution of critical data and services will ensure that multiple sites are available to restore data and services in the event of an APT attack. This will also reduce the impact of DDoS attacks by ensuring that traffic is spread across multiple sites. C. Hardened and verified container usage can help to isolate services from one another and protect them from APT attacks. Containerization can provide a secure and scalable platform for deploying services, which can be reconstituted quickly from a known-good state. H. Implementation and configuration of a SOAR platform will automate the process of responding to and mitigating APT attacks. The SOAR platform will allow the organization to create a set of automated actions that can be executed in response to security events, reducing the human operator demands.
upvoted 1 times
...
last_resort
1 year, 9 months ago
Selected Answer: FGH
F. Heterogeneous architecture - vendor diversity for redundancy G. Deployment of IPS services that can identify and block malicious traffic- to defend H. Implementation and configuration of a SOAR- for automation of recover
upvoted 1 times
last_resort
1 year, 9 months ago
Disregard heterogeneous architecture pls!!
upvoted 1 times
last_resort
1 year, 9 months ago
Changing my third option to C, containerization.
upvoted 2 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago