exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 24 discussion

Actual exam question from CompTIA's CS0-003
Question #: 24
Topic #: 1
[All CS0-003 Questions]

A company is implementing a vulnerability management program and moving from an on-premises environment to a hybrid IaaS cloud environment. Which of the following implications should be considered on the new hybrid environment?

  • A. The current scanners should be migrated to the cloud
  • B. Cloud-specific misconfigurations may not be detected by the current scanners
  • C. Existing vulnerability scanners cannot scan IaaS systems
  • D. Vulnerability scans on cloud environments should be performed from the cloud
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
sujon_london
Highly Voted 9 months ago
Ans is B Traditional vulnerability scanners: These scanners are often designed for on-premises environments and might not be equipped to identify cloud-specific vulnerabilities or misconfigurations. Cloud platforms have unique security features: Each cloud platform (e.g., AWS, Azure, GCP) has its own security posture and configuration options, which traditional scanners might not be able to assess effectively.
upvoted 5 times
...
CyberMom
Most Recent 4 days, 23 hours ago
Selected Answer: B
While D is also apossible answer based on OWASP, but does explain the implications as per what the question is asking.
upvoted 1 times
...
dave_delete_me
6 months, 4 weeks ago
B. Cloud-specific misconfigurations may not be detected by the current scanners This is the BEST choice given the current choices.
upvoted 1 times
...
RobV
11 months, 2 weeks ago
Selected Answer: B
B. Cloud-specific misconfigurations may not be detected by the current scanners
upvoted 1 times
...
[Removed]
12 months ago
Selected Answer: B
B) Cloud-specific misconfigurations If they move to an Azure or Google cloud, then Prowler, for example, wouldn't be able to scan for misconfigurations on those since it only works on AWS. Of the 4 choices, this one makes the most sense. See below for reference. From CompTIA Certmaster Topic 12B: Analyzing Cloud Vulnerabilities Prowler (github.com/toniblyx/prowler) is an audit tool for use with AWS only. It can detect misconfigurations and security issues, such as weak passwords, unpatched systems, and insecure protocol use. It can also be used to evaluate cloud infrastructure against the CIS Benchmarks™ for AWS (cisecurity.org/benchmark/amazon_web_services) and perform regulatory compliance checks.
upvoted 4 times
...
Alizade
1 year ago
Selected Answer: B
The answer is B. Cloud-specific misconfigurations may not be detected by the current scanners.
upvoted 1 times
...
kmordalv
1 year, 2 months ago
Selected Answer: B
Correct Cloud-specific misconfigurations may not be detected by the current scanners that are designed for on-premises environments, as they may not have the visibility or access to the cloud resources or the cloud provider’s APIs.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...