CAS-004 Exam Question 206

A security architect was asked to modify an existing internal network design to accommodate the following requirements for RDP:
* Enforce MFA for RDP
* Ensure RDP connections are only allowed with secure ciphers.
The existing network is extremely complex and not well segmented. Because of these limitations, the company has requested that the connections not be restricted by network-level firewalls Of ACLs.
Which of the following should the security architect recommend to meet these requirements?
  • CAS-004 Exam Question 207

    A software company is developing an application in which data must be encrypted with a cipher that requires the following:
    * Initialization vector
    * Low latency
    * Suitable for streaming
    Which of the following ciphers should the company use?
  • CAS-004 Exam Question 208

    An organization recently experienced a ransomware attack. The security team leader is concerned about the attack reoccurring. However, no further security measures have been implemented.
    Which of the following processes can be used to identify potential prevention recommendations?
  • CAS-004 Exam Question 209

    A university issues badges through a homegrown identity management system to all staff and students. Each week during the summer, temporary summer school students arrive and need to be issued a badge to access minimal campus resources. The security team received a report from an outside auditor indicating the homegrown system is not consistent with best practices in the security field and leaves the institution vulnerable.
    Which of the following should the security team recommend FIRST?
  • CAS-004 Exam Question 210

    A company uses an application in its warehouse that works with several commercially available tablets and can only be accessed inside the warehouse. The support department would like the selection of tablets to be limited to three models to provide better support and ensure spares are on hand. Users often keep the tablets after they leave the department, as many of them store personal media items.
    Which of the following should the security engineer recommend to meet these requirements?