CAS-004 Exam Question 61

A company publishes several APIs for customers and is required to use keys to segregate customer data sets.
Which of the following would be BEST to use to store customer keys?
  • CAS-004 Exam Question 62

    An organization wants to perform a scan of all its systems against best practice security configurations.
    Which of the following SCAP standards, when combined, will enable the organization to view each of the configuration checks in a machine-readable checklist format for fill automation? (Choose two.)
  • CAS-004 Exam Question 63

    A vulnerability analyst identified a zero-day vulnerability in a company's internally developed software. Since the current vulnerability management system does not have any checks for this vulnerability, an engineer has been asked to create one.
    Which of the following would be BEST suited to meet these requirements?
  • CAS-004 Exam Question 64

    A system administrator at a medical imaging company discovers protected health information (PHI) on a general-purpose file server. Which of the following steps should the administrator take NEXT?
  • CAS-004 Exam Question 65

    A security administrator configured the account policies per security implementation guidelines. However, the accounts still appear to be susceptible to brute-force attacks. The following settings meet the existing compliance guidelines:
    Must have a minimum of 15 characters
    Must use one number
    Must use one capital letter
    Must not be one of the last 12 passwords used
    Which of the following policies should be added to provide additional security?