CAS-005 Exam Question 21
A security engineer receives the following findings from a recent security audit:
* Data should be protected based on user permissions and roles.
* User action tracking should be implemented across the network.
* Digital identities should be validated across the data access workflow.
Which of the following is the first action the engineer should take to address the findings?
* Data should be protected based on user permissions and roles.
* User action tracking should be implemented across the network.
* Digital identities should be validated across the data access workflow.
Which of the following is the first action the engineer should take to address the findings?
CAS-005 Exam Question 22

An administrator needs to craft a single certificate-signing request for a web-server certificate. The server should be able to use the following identities to mutually authenticate other resources over TLS:
* wwwJnt.comptia.org
* webserver01.int.comptia.org
*10.5.100.10
Which of the following certificate fields must be set properly to support this objective?
CAS-005 Exam Question 23
The ISAC for the retail industry recently released a report regarding social engineering tactics in which small groups create distractions for employees while other malicious individuals install advanced card skimmers on the payment systems. The Chief Information Security Officer (CISO) thinks that security awareness training, technical control implementations, and governance already in place is adequate to protect from this threat.
The board would like to test these controls. Which of the following should the CISO recommend?
The board would like to test these controls. Which of the following should the CISO recommend?
CAS-005 Exam Question 24
A security analyst is performing a review of a web application. During testing as a standard user, the following error log appears:
Error Message in Database Connection
Connection to host USA-WebApp-Database failed
Database " Prod-DB01 " not found
Table " CustomerInfo " not found
Please retry your request later
Which of the following best describes the analyst's findings and a potential mitigation technique?
Error Message in Database Connection
Connection to host USA-WebApp-Database failed
Database " Prod-DB01 " not found
Table " CustomerInfo " not found
Please retry your request later
Which of the following best describes the analyst's findings and a potential mitigation technique?
CAS-005 Exam Question 25
A company isolated its OT systems from other areas of the corporate network These systems are required to report usage information over the internet to the vendor Which oi the following b*st reduces the risk of compromise or sabotage' (Select two).
