FEDVTE CASP ( B) ACTUAL EXAM NEWEST VERSION
LATEST VERSION WITH COMPLETE QUESTIONS AND CORRECT
DETAILED ANSWERS \\VERIFIED ANSWERS 100% PASS GRADED A+
(ALL QUESTIONS) BRAND NEW
A company is migrating from Remotely wipe the device.
company- owned phones to
a BYOD strategy for
mobile devices. The pilot
program will start with the
executive management team
and be rolled out to the rest
of the staff in phases. The
company's Chief Financial
Officer loses a phone
multiple times a year.
Which of the following will
MOST likely secure the data
on the lost device?
A flaw in an online sporting A. Blackbox testing using outside consultants
goods website allows
customers to purchase C. Fuzzer and HTTP interceptor
multiple quantities of
goods and only be charged
the single quantity price.
To improve the
site, management is
demanding that the
ecommerce application be
tested to insure this flaw is
1/3
8
,4/27/25, 1:20 PM FedVTE CASP
corrected. Which of the
following is the BEST
combination of tools and or
methods to use?
A retail merchant has had A. Implement a security operations center to provide in
a number of issues in depth analysis and incident response with periodic
regards to the integrity of reporting capability.
sensitive information across B. Implement an enterprise-based SIEM solution to
all of its customer process the logs of the major platforms,
databases. This has resulted in applications, and infrastructure.
the
merchants share price C. Implement a security operations center for real time
decreasing in value by monitoring and incident response and an event
more than one third and correlation dashboard with self service reporting
the merchant has been capability.
threatened with losing their D. Ensure the NOC provides real time monitoring and
ability to process credit incident response and an event correlation
card transactions. The new dashboard with self service reporting
Chief Information Security capabilities.
Officer (CISO) as a result E. Implement an agent only based SIEM solution to
has initiated a program of be deployed on all major platforms, applications,
work to solve the issues. and infrastructures.
The business has F. Manually pull the logs from the major platforms,
specified that the solution applications, and infrastructures to a central analysis
needs to be
center.
enterprise grade and meet
the following requirements:
C & E is wrong
Work across all major
platforms, applications and
infrastructure; Tracks
activity of all users,
including administrators;
Operates without negatively
impacting the performance
of production platforms,
applications, and
2/3
8
,4/27/25, 1:20 PM FedVTE CASP
infrastructures; Provides
real-time incident
reporting;
Displays incidents in a
dashboard view for easy
recognition; Includes a
report
generator where business
units are able to query
against companys system
assets. In order to solve
this problem, which of the
following security solutions
will BEST meet the above
requirements? (Select
TWO).
A medical group is converting There may be regulatory restrictions with credit cards
to cloud being processed out of country or processed by shared
computing to improve
hosting providers. A private cloud within the
delivery times for IT
company should be considered. An decision paper
solution adoption. The
should be written to outline the risks, advantages and
accounting
disadvantages of the options.
department has made a case
for replacing the existing
banking platform for credit
card processing with a newer
offering. It is the security
departments responsibility
to evaluate whether the
new credit card
processing platform can be
hosted within a cloud
environment. Which of the
following BEST balances
the security risk and IT
drivers for cloud computing?
3/3
8
, 4/27/25, 1:20 PM FedVTE CASP
A contractor is hired to assist in Non-Disclosure Agreement, NDA
the
development of a new
application. Which of the
following would you use to
ensure the contractor does
not share information about
the project they worked on
outside of the company?
A companys security policy Require all developers to follow secure coding practices.
states that its internally
developed proprietary
Internet facing software
must be resistant to web
application attacks. Which of
the following methods
provides the MOST
protection against
unauthorized access to
stored
database information?
A Security Manager is Security of data
selecting web conferencing storage System
systems for internal use. The availability
system will only be used User authentication strategy
for internal
employee collaboration.
Which of the
following should be the
priority issues for the
security manager? (Select
THREE).
4/3
8