exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 413 discussion

Actual exam question from CompTIA's CAS-004
Question #: 413
Topic #: 1
[All CAS-004 Questions]

An organization recently completed a security controls assessment. The results highlighted the following vulnerabilities:

• Out-of-date definitions
• Misconfigured operating systems
• An inability to detect active attacks
• Unimpeded access to critical servers’ USB ports

Which of the following will most likely reduce the risks that were identified by the assessment team?

  • A. Install EDR on endpoints, configure group policy, lock server room doors, and install a camera system with guards watching 24/7.
  • B. Create an information security program that addresses user training, perform weekly audits of user workstations, and utilize a centralized configuration management program.
  • C. Update antivirus definitions, install NGFW with logging enabled, use USB port lockers, and run SCAP scans weekly.
  • D. Implement a vulnerability management program and a SIEM tool with alerting, install a badge system with zones, and restrict privileged access.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
isaphiltrick
9 months, 3 weeks ago
Selected Answer: C
Option C provides a comprehensive approach to directly addressing the vulnerabilities highlighted in the security controls assessment. Updating antivirus definitions ensures protection against known threats, NGFW with logging enhances detection of active attacks, USB port lockers physically secure critical servers, and weekly SCAP scans help maintain proper configuration and compliance.
upvoted 3 times
...
041ba31
11 months ago
Selected Answer: C
The best answer is C. Update antivirus definitions, install NGFW with logging enabled, use USB port lockers, and run SCAP scans weekly. This set of actions directly addresses the identified vulnerabilities: updating antivirus definitions resolves out-of-date definitions, installing a Next-Generation Firewall (NGFW) with logging can detect active attacks and address misconfigured operating systems, using USB port lockers mitigates the risk of unimpeded access to critical servers’ USB ports, and running SCAP scans weekly ensures ongoing vulnerability management and detection of misconfigurations.
upvoted 3 times
...
cf13076
1 year ago
To reduce the risks identified in the security controls assessment for the CASP+ certification, the most appropriate action would be: C. Update antivirus definitions, install NGFW with logging enabled, use USB port lockers, and run SCAP scans weekly. This option addresses the specific vulnerabilities identified in the assessment: Updating antivirus definitions helps with the out-of-date definitions vulnerability. Installing a Next-Generation Firewall (NGFW) with logging enabled helps address misconfigured operating systems and an inability to detect active attacks. Using USB port lockers helps prevent unimpeded access to critical servers' USB ports. Running Security Content Automation Protocol (SCAP) scans weekly aids in identifying and addressing security issues proactively. Overall, this combination of measures aligns well with the identified vulnerabilities and would likely be the most effective in reducing the risks for the organization.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago