CAS-004 Exam Question 61

A bank is working with a security architect to find the BEST solution to detect database management system compromises. The solution should meet the following requirements:
* Work at the application layer
* Send alerts on attacks from both privileged and malicious users
* Have a very low false positive
Which of the following should the architect recommend?
  • CAS-004 Exam Question 62

    A cybersecurity analyst created the following tables to help determine the maximum budget amount the business can justify spending on an improved email filtering system:


    Which of the following meets the budget needs of the business?
  • CAS-004 Exam Question 63

    A company plans to build an entirely remote workforce that utilizes a cloud-based infrastructure. The Chief Information Security Officer asks the security engineer to design connectivity to meet the following requirements:
    Only users with corporate-owned devices can directly access servers hosted by the cloud provider.
    The company can control what SaaS applications each individual user can access.
    User browser activity can be monitored.
    Which of the following solutions would BEST meet these requirements?
  • CAS-004 Exam Question 64

    Ransomware encrypted the entire human resources fileshare for a large financial institution. Security operations personnel were unaware of the activity until it was too late to stop it. The restoration will take approximately four hours, and the last backup occurred 48 hours ago. The management team has indicated that the RPO for a disaster recovery event for this data classification is 24 hours.
    Based on RPO requirements, which of the following recommendations should the management team make?
  • CAS-004 Exam Question 65

    An organization recently started processing, transmitting, and storing its customers' credit card information. Within a week of doing so, the organization suffered a massive breach that resulted in the exposure of the customers' information.
    Which of the following provides the BEST guidance for protecting such information while it is at rest and in transit?