CAS-004 CompTIA Advanced Security Practitioner (CASP+)

Loading demo links...

Showing 10–12 of 15 questions

Question 10

Which of the following controls primarily detects abuse of privilege but does not prevent it?

Select an option, then click Submit answer.

  • Off-boarding

  • Separation of duties

  • Least privilege

  • Job rotation

Question 11

A technician is reviewing the logs and notices a large number of files were transferred to remote sites over the course of three months. This activity then stopped. The files were transferred via TLS-protected HTTP sessions from systems that do not send traffic to those sites.

The technician will define this threat as:

Select an option, then click Submit answer.

  • a decrypting RSA using obsolete and weakened encryption attack.

  • a zero-day attack.

  • an advanced persistent threat.

  • an on-path attack.

Question 12

A small business would like to provide guests who are using mobile devices encrypted WPA3 access without first distributing PSKs or other credentials. Which of the following features will enable the business to meet this objective?

Select an option, then click Submit answer.

  • Simultaneous Authentication of Equals

  • Enhanced open

  • Perfect forward secrecy

  • Extensible Authentication Protocol