PrepAway - Latest Free Exam Questions & Answers

Category: CAS-002 (v.1)

Exam CAS-002 : CompTIA Advanced Security Practitioner (update May 22th, 2017)

Which of the following should the security administrato…

A security administrator is performing VDI traffic data collection on a virtual server which migrates from onehost to another. While reviewing the data collected by the protocol analyzer, the security administrator notices
that sensitive data is present in the packet capture. Which of the following should the security administrator
recommend to ensure the confidentiality of sensitive information during live VM migration, while minimizing
latency issues?

Which of the following solutions will address the enter…

An enterprise must ensure that all devices that connect to its networks have been previously approved. The
solution must support dual factor mutual authentication with strong identity assurance. In order to reduce costs
and administrative overhead, the security architect wants to outsource identity proofing and second factor digital
delivery to the third party. Which of the following solutions will address the enterprise requirements?

Which of the following is the MOST accurate statement?

An internal development team has migrated away from Waterfall development to use Agile development.
Overall, this has been viewed as a successful initiative by the stakeholders as it has improved time-to-market.
However, some staff within the security team have contended that Agile development is not secure. Which of
the following is the MOST accurate statement?

which of the following options is MOST accurate?

A Chief Information Security Officer (CISO) has requested that a SIEM solution be implemented. The CISO
wants to know upfront what the projected TCO would be before looking further into this concern. Two vendor
proposals have been received:
Vendor A: product-based solution which can be purchased by the pharmaceutical company.
Capital expenses to cover central log collectors, correlators, storage and management consoles expected to be
$150,000. Operational expenses are expected to be a 0.5 full time employee (FTE) to manage the solution, and
1 full time employee to respond to incidents per year.
Vendor B: managed service-based solution which can be the outsourcer for the pharmaceutical company’s
needs.
Bundled offering expected to be $100,000 per year.
Operational expenses for the pharmaceutical company to partner with the vendor are expected to be a 0.5 FTE
per year.Internal employee costs are averaged to be $80,000 per year per FTE. Based on calculating TCO of the two
vendor proposals over a 5 year period, which of the following options is MOST accurate?


Page 26 of 40« First...1020...2425262728...40...Last »