exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 291 discussion

Actual exam question from CompTIA's CAS-004
Question #: 291
Topic #: 1
[All CAS-004 Questions]

A managed security provider (MSP) is engaging with a customer who was working through a complete digital transformation. Part of this transformation involves a move to cloud servers to ensure a scalable, high-performance, online user experience. The current architecture includes:

• Directory servers
• Web servers
• Database servers
• Load balancers
• Cloud-native VPN concentrator
• Remote access server

The MSP must secure this environment similarly to the infrastructure on premises. Which of the following should the MSP put in place to BEST meet this objective? (Choose three.)

  • A. Content delivery network
  • B. Virtual next-generation firewall
  • C. Web application firewall
  • D. Software-defined WAN
  • E. External vulnerability scans
  • F. Containers
Show Suggested Answer Hide Answer
Suggested Answer: BCE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Steel16
1 month, 3 weeks ago
Selected Answer: BCE
o Virtual next-generation firewall (vNGFW): A virtual firewall that operates in the cloud environment, providing advanced security features like intrusion prevention, deep packet inspection, and application control, essential for protecting cloud workloads and network traffic. o Web application firewall (WAF): A security measure specifically designed to protect web applications from attacks like SQL injection, cross-site scripting (XSS), and others. It sits in front of the web application server and analyzes incoming requests to identify and block malicious traffic. o External vulnerability scans: Regularly scheduled scans of the cloud environment from outside the network to identify potential vulnerabilities in the infrastructure, applications, and operating systems. This provides the MSP with a comprehensive view of security risks and allows them to prioritize remediation efforts.
upvoted 1 times
...
Onz12
6 months, 3 weeks ago
Selected Answer: BCE
BCE is correct, had this on the exam today. Passed with BCE
upvoted 4 times
...
DWtriple0
8 months, 2 weeks ago
Vulnerability scanning and cloud providers is typically a no-go. I would be shocked if scanning activity from outside a cloud environment was within acceptible use policies.
upvoted 1 times
...
Anarckii
9 months, 3 weeks ago
Selected Answer: ABE
Reviewing this I think its ABE and for these reasons: A - CDN, we need to focus on a scalable and high-performance approach. CDN offers this. Everyone is voting virtual NGFW and WAF which are really good choices but they don't optimize performance. B - VNGFW, we are going to choose this over WAF because of the architecture design that is provided to us. E - Vuln Scanner, obviously we need to over some type of scanning. So this would be the only best choice
upvoted 3 times
...
OdinAtlasSteel
10 months, 2 weeks ago
Selected Answer: ABE
"scalable, high-performance, online user experience" and "load balancer". Sounds like you need a CDN for that. I'll also choose the Virtual Next-Generation Firewall and External Vulnerability scans for good measure.
upvoted 2 times
...
ThatGuyOverThere
11 months, 4 weeks ago
Selected Answer: BCE
BCE should be right. I didn't choose E the first time but after a little research, I think it's the best third choice.
upvoted 3 times
...
CXSSP
1 year, 1 month ago
Selected Answer: BCE
B. Virtual next-generation firewall C. Web application firewall E. External vulnerability scans Here's an explanation for each choice: B. Virtual next-generation firewall: A next-generation firewall provides advanced security features beyond traditional firewalls. In a cloud environment, a virtual next-generation firewall can inspect and filter traffic between virtual machines, helping to secure the network. C. Web application firewall: A web application firewall (WAF) helps protect web applications from various attacks, such as SQL injection, cross-site scripting (XSS), and other application-layer attacks. This is crucial for securing web servers and ensuring the integrity of web applications. E. External vulnerability scans: External vulnerability scans involve assessing the cloud environment for known vulnerabilities and security weaknesses. This helps identify and address potential entry points for attackers.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago