• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 2 out of 7 pages
Exam (elaborations)

CASP book test UPDATED ACTUAL Exam Questions and CORRECT Answers

Document preview thumbnail
Preview 2 out of 7 pages

CASP book test UPDATED ACTUAL Exam Questions and CORRECT Answers Advanced persistent threat attacks are characterized by which of the following - CORRECT ANSWER - 1) One of their main focuses is to maintain a way back into machines. 2) Their primary objective is to quietly obtain information. Smart enterprises know that antimalware companies cannot discover all malware. In an effort to discover some malware on their own, which of the following is performed by organizations - CORRECT ANSWER - Malware sandboxing

Content preview

CASP book test UPDATED ACTUAL Exam
Questions and CORRECT Answers
Advanced persistent threat attacks are characterized by which of the following - CORRECT
ANSWER - 1) One of their main focuses is to maintain a way back into machines. 2) Their
primary objective is to quietly obtain information.


Smart enterprises know that antimalware companies cannot discover all malware. In an effort to
discover some malware on their own, which of the following is performed by organizations -
CORRECT ANSWER - Malware sandboxing


To protect application servers from network-based attacks, _______________ can act based on
the content of traffic bound for the specific host - CORRECT ANSWER - Host-based
application firewalls


Your company is being sued by a former programmer and your boss has announced that lawyers
will be contacting people soon for detailed statements. What is the first step of the process that
should be invoked to manage the responsibilities - CORRECT ANSWER - Litigation hold


Which of the following categories of standards is considered official - CORRECT
ANSWER - De jure standards


Which of the following box test types is best for simulating a malicious administrator attacking
the organization - CORRECT ANSWER - White box test


Hackers frequently attack switches through VLAN-hopping methods. Which of the following are
common varieties of this attack - CORRECT ANSWER - 1) Switch spoofing 2) Double
tagging


You are streaming web conference content from your web servers to multiple endpoints. Because
of the sensitive nature of the content, encryption is mandated. What would be the preferred
algorithm - CORRECT ANSWER - RC4

, Your IDS indicates that your SSL sessions are under attack from SSL-based exploits. Your web
servers are all Apache on Linux, and you do encryption at the web server. What is your best
mitigation strategy - CORRECT ANSWER - Verify in /etc/httpd/conf.d/ssl.conf that SSL
is disabled and TLS is enabled.


Refer to the exhibit. As the security practitioner for the Example corporation, you are concerned
about unauthorized devices connecting to the Cisco switch. You decide to implement port
security on the Cisco switch for Fast Ethernet port 0/1. You input a series of Cisco IOS
commands into the switch to ensure that only a handful of devices are allowed to connect to the
port. However, you receive an error message. Based on the exhibit, which line of code is
incorrect - CORRECT ANSWER - Switch(config-if)# switchport port-security mac-
address cccc.aaaa.bbbb


What is the first step in a risk management process - CORRECT ANSWER - The
enumeration of specific risks


The ABC organization is looking to produce a hybrid cloud by integrating their on-premises
Active Directory with Microsoft Azure Active Directory. Prior to doing so, they must perform a
process of identifying, assessing, analyzing, and mitigating any risks introduced by this change.
Which of the following choices best describes this process - CORRECT ANSWER - Risk
management


Which of the following is a characteristic of a highly structured threat - CORRECT
ANSWER - The attackers have considerable time and financial backing.


Which of the following regulations governs various financial organizations to ensure they protect
consumer's personally identifiable information (PII) - CORRECT ANSWER - GLBA
(Gramm-Leach-Bliley Act)


The approved standard for U.S. Government Digital Signature includes which of the following -
CORRECT ANSWER - ElGamal algorithm, SHA-2

Document information

Uploaded on
June 24, 2025
Number of pages
7
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$11.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
STANFORDGRADESS
4.0
(240)
Sold
1653
Followers
108
Items
119940
Last sold
9 hours ago




Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions