CAS-005 Exam Question 71

An organization wants to implement a secure cloud architecture across all instances. Given the following requirements:
Establish a standard network template.
Deployments must be consistent.
Security policies must be able to be changed at scale.
Which of the following technologies meets these requirements?
  • CAS-005 Exam Question 72

    A cybersecurity architect is reviewing the detection and monitoring capabilities for a global company that recently made multiple acquisitions. The architect discovers that the acquired companies use different vendors for detection and monitoring The architect's goal is to:
    * Create a collection of use cases to help detect known threats
    * Include those use cases in a centralized library for use across all of the companies Which of the following is the best way to achieve this goal?
  • CAS-005 Exam Question 73

    An organization recently implemented a policy that requires all passwords to be rotated every 90 days. An administrator observes a large volume of failed sign-on logs from multiple servers that are often accessed by users. The administrator determines users are disconnecting from the RDP session but not logging off. Which of the following should the administrator do to prevent account lockouts?
  • CAS-005 Exam Question 74

    A security architect is mitigating a vulnerability that previously led to a web application data breach. An analysis into the root cause of the issue finds the following:
    An administrator's account was hijacked and used on several Autonomous System Numbers within 30 minutes.
    All administrators use named accounts that require multifactor authentication.
    Single sign-on is used for all company applications.Which of the following should the security architect do to mitigate the issue?
  • CAS-005 Exam Question 75

    A security manager at a local hospital wants to secure patient medical records. The manager needs to:
    * Choose an access control model that clearly defines who has access to sensitive information.
    * Prevent those who enter new patient information from specifying who has access to this data.
    Which of the following access control models is the best way to ensure the lowest risk of granting unintentional access?