CAS-003 Exam Question 81

A security administrator must configure the database server shown below to comply with the four requirements listed. Drag and drop the appropriate ACL that should be configured on the database server to its corresponding requirement. Answer options may be used once or not at all.

CAS-003 Exam Question 82

A government contractor was the victim of a malicious attack that resulted in the theft of sensitive information. An analyst's subsequent investigation of sensitive systems led to the following discoveries:
There was no indication of the data owner's or user's accounts being compromised.
No database activity outside of previous baselines was discovered.
All workstations and servers were fully patched for all known vulnerabilities at the time of the attack.
It was likely not an insider threat, as all employees passed polygraph tests.
Given this scenario, which of the following is the MOST likely attack that occurred?
  • CAS-003 Exam Question 83


    Compliance with company policy requires a quarterly review of firewall rules.
    You are asked to conduct a review on the internal firewall sitting between several internal networks.
    The intent of this firewall is to make traffic more secure.
    Given the following information perform the tasks listed below:
    Untrusted zone: 0.0.0.0/0
    User zone: USR 10.1.1.0/24
    User zone: USR2 10.1.2.0/24
    DB zone: 10.1.0/24
    Web application zone: 10.1.5.0/24
    Management zone: 10.1.10.0/24
    Web server: 10.1.5.50
    MS-SQL server: 10.1.4.70
    MGMT platform: 10.1.10.250
    Task 1) A rule was added to prevent the management platform from accessing the internet. This rule is not working. Identify the rule and correct this issue.
    Task 2) The firewall must be configured so that the SQL server can only receive requests from the web server.
    Task 3) The web server must be able to receive unencrypted requests from hosts inside and outside the corporate network.
    Task 4) Ensure the final rule is an explicit deny.
    Task 5) Currently the user zone can access internet websites over an unencrypted protocol. Modify a rule so that user access to websites is over secure protocols only.
    Instructions: To perform the necessary tasks, please modify the DST port, SRC zone, Protocol, Action, and/or Rule Order columns. Type ANY to include all ports. Firewall ACLs are read from the top down. Once you have met the simulation requirements, click Save. When you have completed the simulation, please select the Done button to submit.
    Once the simulation is submitted, please select the Next button to continue.

    CAS-003 Exam Question 84

    During a security assessment, activities were divided into two phases; internal and external exploitation.
    The security assessment team set a hard time limit on external activities before moving to a compromised box within the enterprise perimeter.
    Which of the following methods is the assessment team most likely to employ NEXT?
  • CAS-003 Exam Question 85

    A security architect has assigned an engineer to implement a system to maintain visibility, corporate IT devices as they transfer from department to department. The engineer must ensure all employees can view a secure record of who is responsible for each device.
    Which of the following would be the BEST mechanism to implement the stated requirements?