CAS-004 Exam Question 126
A security engineer thinks the development team has been hard-coding sensitive environment variables in its code.
Which of the following would BEST secure the company's CI/CD pipeline?
Which of the following would BEST secure the company's CI/CD pipeline?
CAS-004 Exam Question 127
A security architect works for a manufacturing organization that has many different branch offices. The architect is looking for a way to reduce traffic and ensure the branch offices receive the latest copy of revoked certificates issued by the CA at the organization's headquarters location. The solution must also have the lowest power requirement on the CA.
Which of the following is the BEST solution?
Which of the following is the BEST solution?
CAS-004 Exam Question 128
An organization is looking to establish more robust security measures by implementing PKI.
Which of the following should the security analyst implement when considering mutual authentication?
Which of the following should the security analyst implement when considering mutual authentication?
CAS-004 Exam Question 129
A security analyst receives an alert from the SIEM regarding unusual activity on an authorized public SSH jump server. To further investigate, the analyst pulls the event logs directly from /var/log/auth.log:
graphic.ssh_auth_log.
Which of the following actions would BEST address the potential risks by the activity in the logs?
graphic.ssh_auth_log.
Which of the following actions would BEST address the potential risks by the activity in the logs?
CAS-004 Exam Question 130
A security analyst is reviewing the following output:

Which of the following would BEST mitigate this type of attack?

Which of the following would BEST mitigate this type of attack?