CAS-004 Exam Question 171

A security analyst wants to keep track of alt outbound web connections from workstations. The analyst's company uses an on-premises web filtering solution that forwards the outbound traffic to a perimeter firewall. When the security analyst gets the connection events from the firewall, the source IP of the outbound web traffic is the translated IP of the web filtering solution. Considering this scenario involving source NAT. which of the following would be the BEST option to inject in the HTTP header to include the real source IP from workstations?
  • CAS-004 Exam Question 172

    Users are reporting intermittent access issues with a new cloud application that was recently added to the network. Upon investigation, the security administrator notices the human resources department is able to run required queries with the new application, but the marketing department is unable to pull any needed reports on various resources using the new application. Which of the following MOST likely needs to be done to avoid this in the future?
  • CAS-004 Exam Question 173

    Which of the following BEST describe the importance of maintaining chain of custody in forensic evidence collection? (Choose two.)
  • CAS-004 Exam Question 174

    An organization is prioritizing efforts to remediate or mitigate risks identified during the latest assessment. For one of the risks, a full remediation was not possible, but the organization was able to successfully apply mitigations to reduce the likelihood of impact.
    Which of the following should the organization perform NEXT?
  • CAS-004 Exam Question 175

    A company created an external, PHP-based web application for its customers. A security researcher reports that the application has the Heartbleed vulnerability.
    Which of the following would BEST resolve and mitigate the issue? (Choose two.)