CAS-005 Exam Question 1

Company A and Company D ate merging Company A's compliance reports indicate branchprotections are not in place A security analyst needs to ensure that potential threats to the software development life cycle are addressed. Which of the following should me analyst cons<der when completing this basic?
  • CAS-005 Exam Question 2

    After an incident response exercise, a security administrator reviews the following table:

    Which of the following should the administrator do to beat support rapid incident response in the future?
  • CAS-005 Exam Question 3

    A company wants to protect against the most common attacks and rapidly integrate with different programming languages. Which of the following technologies is most likely to meet this need?
  • CAS-005 Exam Question 4

    An external SaaS solution user reports a bug associated with the role-based access control module. This bug allows users to bypass system logic associated with client segmentation in the multitenant deployment model. When assessing the bug report, the developer finds that the same bug was previously identified and addressed in an earlier release. The developer then determines the bug was reintroduced when an existing software component was integrated from a prior version of the platform. Which of the following is the best way to prevent this scenario?
  • CAS-005 Exam Question 5

    A recent security audit identified multiple endpoints have the following vulnerabilities:
    * Various unsecured open ports
    * Active accounts for terminated personnel
    * Endpoint protection software with legacy versions
    * Overly permissive access rules
    Which of the following would best mitigate these risks? (Select three).