TE
CompTIA Advanced Security
Practitioner (CASP) CAS-003
S
Cert Guide (Certification
TS
Guide) 2nd Edition by Robin
Abernathy, Troy McMillan
O
LU
(All Chapters 1-19, 100%
TI
Original Verified, A+ Grade)
O
N
, Table of Content
Chapter 1 Business and Industry Influences and Associated Security Risks
Chapter 2 Security, Privacy Policies, and Procedures
Chapter 3 Risk Mitigation Strategies and Controls
Chapter 4 Risk Metrics for Securing the Enterprise
TE
Chapter 5 Network and Security Components, Concepts, and Architectures
Chapter 6 Security Controls for Host Devices
Chapter 7 Security Controls for Mobile and Small Form Factor Devices
S
Chapter 8 Software Vulnerability Security Controls
Chapter 9 Security Assessments
TS
Chapter 10 Select the Appropriate Security Assessment
Chapter 11 Incident Response and Recovery
Chapter 12 Hosts, Storage, Networks and Applications into a Secure Enterprise Architecture
O
Chapter 13 Cloud and Virtualization Technology Integration
Chapter 14 Troubleshooting Advanced Authentication and Authorization Technologies to
LU
Support Enterprise Security Objectives
Chapter 15 Crytographic Techniques
Chapter 16 Secure Communication and Collaboration
TI
Chapter 17 Industry Trends and Their Impact to the Enterprise
Chapter 18 Security Activities Across the Technology Life Cycle
O
Chapter 19 Interaction Across Diverse Business Units to Achieve Security Goals
N
, iuytre
Chapter 1:
Item number: 1
TE
Item type: Multiple Choice
Question: Which of the following is an advantage of implementing a private cloud?
Options:
S
A. Data is stored only on external resources.
B. Data is owned by the organization.
C. All individuals are allowed to access the data.
TS
D. Data has limited availability.
Answer: B
Explanation: An advantage of implementing a private cloud is that data is owned by the
organization.
O
With private clouds, organizations can:
■ Ensure that the data is stored only on internal resources.
■ Ensure that the data is owned by the organization.
LU
■ Ensure that only authorized individuals are allowed to access the data.
■ Ensure that data is always available.
Item number: 2
TI
Item type: Multiple Choice
Question: Which of the following is NOT a disadvantage when using a public cloud
O
service?
Options:
A. The organization is dependent upon the cloud provider for all services.
N
B. The data is transmitted over the Internet.
C. The data is protected only by internal organizational resources.
D. The organization must trust the cloud provider to protect the data.
Answer: C
jhgfds
, iuytre
Explanation: When using a public cloud service, the data is NOT protected only by
internal organizational resources. It is protected by the cloud providers resources and
personnel.
All of the other statements are disadvantages of using a public cloud service.
TE
Item number: 3
Item type: Multiple Choice
Question: Your organization has recently decided to implement a cloud solution for all
S
personnel. This solution will allow personnel to store data using a third-party cloud
provider. What should be your primary security concern with this situation?
TS
Options:
A. protection against viruses and malware
B. remote wiping
C. ownership and dispersion of data
D. data backups
Answer: C
O
Explanation: Ownership and dispersion of data should be the primary concern when using
a third-party cloud provider to store data.
LU
Item number: 4
Item type: Multiple Choice
TI
Question: Which of the following are implemented to ensure that an organization can
control mobile device settings, applications, and other parameters when they are attached to
the enterprise? (Choose two.)
O
Options:
A. APT
B. CERT
C. MDM
N
D. MAM
Answer: C,D
jhgfds