CAS-004 Exam Question 46

A SOC analyst is reviewing malicious activity on an external, exposed web server. During the investigation, the analyst determines specific traffic is not being logged, and there is no visibility from the WAF for the web application.
Which of the following is the MOST likely cause?
  • CAS-004 Exam Question 47

    A company wants to protect its intellectual property from theft. The company has already applied ACLs and DACs.
    Which of the following should the company use to prevent data theft?
  • CAS-004 Exam Question 48

    A company has decided to purchase a license for software that is used to operate a mission-critical process. The third-party developer is new to the industry but is delivering what the company needs at this time.
    Which of the following BEST describes the reason why utilizing a source code escrow will reduce the operational risk to the company if the third party stops supporting the application?
  • CAS-004 Exam Question 49

    After a security incident, a network security engineer discovers that a portion of the company's sensitive external traffic has been redirected through a secondary ISP that is not normally used.
    Which of the following would BEST secure the routes while allowing the network to function in the event of a single provider failure?
  • CAS-004 Exam Question 50

    An organization is planning for disaster recovery and continuity of operations.
    INSTRUCTIONS
    Review the following scenarios and instructions. Match each relevant finding to the affected host.
    After associating scenario 3 with the appropriate host(s), click the host to select the appropriate corrective action for that finding.
    Each finding may be used more than once.
    If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.