CAS-004 Sample Questions

CAS-004 Sample Questions & Answers

Threat-management and vulnerability activities carry the top weight, alongside designing secure network architecture and infrastructure, endpoint security and enterprise mobility configurations, and risk strategy with compliance frameworks.

Launch the full CAS-004 simulator →

Free CAS-004 Sample Questions with Answers

Real questions from the Comptia Advanced Security Practitioner (casp+) practice test — answers and explanations included. Showing 6 of 12 free samples.

  1. Question 1Intermediate

    In preparation for the holiday season, a company redesigned the system that manages retail sales and moved it to a cloud service provider. The new infrastructure did not meet the company's availability requirements. During a postmortem analysis, the following issues were highlighted:1. International users reported latency when images on the web page were initially loading.2. During times of report processing, users reported issues with inventory when attempting to place orders.3. Despite the fact that ten new API servers were added, the load across servers was heavy at peak times.Which of the following infrastructure design changes would be BEST for the organization to implement to avoid these issues in the future?

    Show answer & explanation

    Correct answer: A

  2. Question 2Intermediate

    During a remodel, a company's computer equipment was moved to a secure storage room with cameras positioned on both sides of the door. The door is locked using a card reader issued by the security team, and only the security team and department managers have access to the room. The company wants to be able to identify any unauthorized individuals who enter the storage room by following an authorized employee.Which of the following processes would BEST satisfy this requirement?

    Show answer & explanation

    Correct answer: A

  3. Question 3IntermediateSelect 2

    A company is preparing to deploy a global service.Which of the following must the company do to ensure GDPR compliance? (Choose two.)

    Show answer & explanation

    Correct answers: A, C

  4. Question 4Intermediate

    A SOC analyst is reviewing malicious activity on an external, exposed web server. During the investigation, the analyst determines specific traffic is not being logged, and there is no visibility from the WAF for the web application.Which of the following is the MOST likely cause?

    Show answer & explanation

    Correct answer: B

  5. Question 5Intermediate

    A security analyst is reviewing the following output:Which of the following would BEST mitigate this type of attack?

    CAS-004 sample question 5
    Show answer & explanation

    Correct answer: B

  6. Question 6Intermediate

    Which of the following terms refers to the delivery of encryption keys to a CASB or a third-party entity?

    Show answer & explanation

    Correct answer: B

Ready for the real thing?

The full CAS-004 simulator has every exam-style question, timed mode, and instant scoring.