Search icon
Subscription
0
Cart icon
Close icon
You have no products in your basket yet
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
CompTIA CASP+ CAS-004 Certification Guide

You're reading from  CompTIA CASP+ CAS-004 Certification Guide

Product type Book
Published in Mar 2022
Publisher Packt
ISBN-13 9781801816779
Pages 654 pages
Edition 1st Edition
Languages
Author (1):
Mark Birch Mark Birch
Profile icon Mark Birch

Table of Contents (23) Chapters

Preface 1. Section 1: Security Architecture
2. Chapter 1: Designing a Secure Network Architecture 3. Chapter 2: Integrating Software Applications into the Enterprise 4. Chapter 3: Enterprise Data Security, Including Secure Cloud and Virtualization Solutions 5. Chapter 4: Deploying Enterprise Authentication and Authorization Controls 6. Section 2: Security Operations
7. Chapter 5: Threat and Vulnerability Management 8. Chapter 6: Vulnerability Assessment and Penetration Testing Methods and Tools 9. Chapter 7: Risk Mitigation Controls 10. Chapter 8: Implementing Incident Response and Forensics Procedures 11. Section 3: Security Engineering and Cryptography
12. Chapter 9: Enterprise Mobility and Endpoint Security Controls 13. Chapter 10: Security Considerations Impacting Specific Sectors and Operational Technologies 14. Chapter 11: Implementing Cryptographic Protocols and Algorithms 15. Chapter 12: Implementing Appropriate PKI Solutions, Cryptographic Protocols, and Algorithms for Business Needs 16. Section 4: Governance, Risk, and Compliance
17. Chapter 13: Applying Appropriate Risk Strategies 18. Chapter 14: Compliance Frameworks, Legal Considerations, and Their Organizational Impact 19. Chapter 15: Business Continuity and Disaster Recovery Concepts 20. Chapter 16: Mock Exam 1 21. Chapter 17: Mock Exam 2 22. Other Books You May Enjoy

Questions

Here are a few questions to test your understanding of the chapter:

  1. Which is the security module that would store an e-commerce server's private key?
    1. DLP
    2. HSM
    3. DPI
    4. 802.1x
  2. How can I mitigate the threat of data leakage?
    1. Through DLP
    2. Through HSM
    3. Through DPI
    4. Through 802.1x
  3. What type of IDS would I be using if I needed to update my definition files?
    1. Anomaly
    2. Behavior
    3. Heuristics
    4. Signature
  4. What is the purpose of iptables on a host computer?
    1. Routing
    2. Firewall
    3. Switching
    4. Encryption
  5. Which protocol would be used to manage a router securely from a technician's laptop?
    1. Telnet
    2. RDP
    3. SSH
    4. FTP
  6. How should I protect my management interface on a switch when I need to configure it remotely? Choose two answers.
    1. OSPF
    2. OOB management
    3. Strong password
    4. RIP v2
  7. What is an Ethernet standard for port access protocol, used for protecting networks via authentication?
    1. 802.11
    2. 802.3
    3. 802.1x
    4. d) 802.5
  8. What type of connectivity will allow key personnel to maintain communication with one another and key network resources when the main network is under attack?
    1. Email
    2. OOB
    3. Teams
    4. VNC
  9. What is a disadvantage when using a virtual desktop infrastructure (VDI)?
    1. Reliance on networks
    2. Better use of hardware resources
    3. Enhanced security
    4. Standard operating environment (SOE)
  10. What is used when my contractors use a tablet or thin client to access a Windows 10 desktop in my data center?
    1. OOB
    2. MDM
    3. VDI
    4. SSH
  11. What type of routing will help to mitigate a DDoS attack?
    1. OSPF
    2. RTBH
    3. RIP
    4. EIGRP
  12. What is it when SOC staff are failing to respond to alerts due to excessive levels of alerts?
    1. False positive
    2. Alert fatigue
    3. False negative
    4. True positive
  13. What will I need to support on my network device in order to forward truncated network traffic to a network monitoring tool?
    1. NetFlow
    2. sFlow
    3. SIEM
    4. System Logging Protocol (Syslog)
  14. What type of security would I use on my layer 2 switch to isolate the finance network from the development network?
    1. VPN
    2. IPsec
    3. VLAN
    4. RTBH
  15. What type of servers would the security team place on the DMZ network?
    1. Web Application server
    2. SMTP Gateway
    3. Intranet File Server
    4. Finance Department Payoll Server
  16. What type of security label would CISA assign to the chemical sector and communications sector?
    1. Regulated industry
    2. Protected infrastructure
    3. SCADA
    4. Critical infrastructure
  17. What will protect my Wi-Fi network against common threats, including evil-twin/rogue APs and DDoS?
    1. 802.1x
    2. Host-based IPS (HIPS)
    3. Firewall
    4. WIPS
  18. What should I configure on mobile users' laptop computers to ensure they will not be vulnerable to sniffing/eavesdropping when accessing the hotel's Wi-Fi network?
    1. Anti-malware
    2. Shielding
    3. Cable locks
    4. VPN
  19. Which edge security appliance should be recommended for an organization that has no dedicated security team and needs multiple security protection functions?
    1. Router
    2. WAF
    3. UTM
    4. DLP
  20. What should be used to connect a remote government agency across public networks (note that it needs to support the NSA suite of encryption protocols)?
    1. VPN
    2. HAIPE
    3. VLAN
    4. Protected distribution
You have been reading a chapter from
CompTIA CASP+ CAS-004 Certification Guide
Published in: Mar 2022 Publisher: Packt ISBN-13: 9781801816779
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $15.99/month. Cancel anytime}