exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 259 discussion

Actual exam question from CompTIA's CAS-004
Question #: 259
Topic #: 1
[All CAS-004 Questions]

A security manager wants to transition the organization to a zero trust architecture. To meet this requirement, the security manager has instructed administrators to remove trusted zones, role-based access, and one-time authentication. Which of the following will need to be implemented to achieve this objective? (Choose three.)

  • A. Least privilege
  • B. VPN
  • C. Policy automation
  • D. PKI
  • E. Firewall
  • F. Continuous validation
  • G. Continuous integration
  • H. IaaS
Show Suggested Answer Hide Answer
Suggested Answer: ACF 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
javier051977
Highly Voted 1 year, 6 months ago
Selected Answer: ACF
To achieve a zero trust architecture, the following measures will need to be implemented: Least privilege: The principle of least privilege should be applied to ensure that users and devices only have access to the resources they need to perform their functions. This involves granting the minimum level of access required and then gradually increasing access privileges as needed. Policy automation: Policies for access control, authentication, and authorization should be automated to reduce the risk of human error and to ensure that policies are consistently applied across the organization. Continuous validation: Continuous monitoring and validation of user and device behavior is necessary to detect and respond to any anomalies or suspicious activity that may indicate a security breach.
upvoted 10 times
...
DWtriple0
Most Recent 8 months, 3 weeks ago
Selected Answer: ADF
PKI is the only option that directly addresses the need for one time authentication.
upvoted 2 times
...
BiteSize
1 year, 3 months ago
Selected Answer: ACF
Source: Verifying each answer against Chat GPT, my experience, other test banks, a written book, and weighing in the discussion from all users to create a 100% accurate guide for myself before I take the exam. (It isn't easy because of the time needed, but it is doing my diligence)
upvoted 4 times
...
Ahegi
1 year, 6 months ago
Selected Answer: AF
A and F, but I'm wondering if PKI is also a good option.
upvoted 3 times
...
Amin4799
1 year, 7 months ago
Selected Answer: ACF
A C F Look okay
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago