exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 234 discussion

Actual exam question from CompTIA's CAS-004
Question #: 234
Topic #: 1
[All CAS-004 Questions]

A security solution uses a sandbox environment to execute zero-day software and collect indicators of compromise. Which of the following should the organization do to BEST take advantage of this solution?

  • A. Develop an Nmap plug-in to detect the indicator of compromise.
  • B. Update the organization's group policy.
  • C. Include the signature in the vulnerability scanning tool.
  • D. Deliver an updated threat signature throughout the EDR system.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
p1s3c
Highly Voted 7 months, 2 weeks ago
Selected Answer: D
The organization can take the following action to best take advantage of the security solution that uses a sandbox environment to execute zero-day software and collect indicators of compromise: D. Deliver an updated threat signature throughout the EDR system. When an organization uses a sandbox environment to execute zero-day software and collect indicators of compromise, it is essential to have an updated threat signature throughout the EDR (Endpoint Detection and Response) system. EDR systems help identify and remediate suspicious activities in the network environment. By delivering updated threat signatures, EDR systems can detect zero-day exploits that evade signature-based security solutions, such as antivirus, firewalls, and intrusion detection/prevention systems. Therefore, updating the threat signature throughout the EDR system is the best way to leverage the sandbox environment's benefits and prevent zero-day threats.
upvoted 8 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...