exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 305 discussion

Actual exam question from CompTIA's CAS-004
Question #: 305
Topic #: 1
[All CAS-004 Questions]

A security architect must mitigate the risks from what is suspected to be an exposed, private cryptographic key. Which of the following is the BEST step to take?

  • A. Revoke the certificate.
  • B. Inform all the users of the certificate.
  • C. Contact the company's Chief Information Security Officer.
  • D. Disable the website using the suspected certificate.
  • E. Alert the root CA.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Steel16
2 months, 1 week ago
Selected Answer: C
o If a private cryptographic key is suspected of being exposed, immediately informing the company's Chief Information Security Officer (CISO) is crucial. The CISO can then assess the situation, determine the scope of the potential breach, and initiate the appropriate response measures, including revoking the certificate associated with the key, notifying affected users, and taking steps to secure any vulnerable systems. o Revoke the certificate: While revoking the certificate is a necessary step after the exposure, it should not be the first action. Revoking a certificate without informing users or taking other security measures could leave systems vulnerable until the revocation information propagates through the network.
upvoted 1 times
...
e4af987
1 year, 1 month ago
Selected Answer: E
This is a tough one - It can take over 24 hours for the Revocation to become effective, meanwhile you need a new cert. You can alert the CA direction and be done with it. BUT it should be the CISO's job to do that.... ugh
upvoted 1 times
e4af987
1 year, 1 month ago
I digress - AI chatbots changed their answer on me as I investigated further - make it A - Revoke the certificate
upvoted 1 times
HereToStudy
7 months, 3 weeks ago
Yall need to stop using ai…. It’s so easy to it change it’s answer
upvoted 3 times
...
...
...
32d799a
1 year, 6 months ago
Selected Answer: A
Given the choices, the BEST immediate step would be: A. Revoke the certificate. This directly addresses the potential misuse of the exposed key
upvoted 2 times
...
CXSSP
1 year, 7 months ago
Selected Answer: A
When a private cryptographic key is suspected to be exposed, the immediate and most critical action to take is to revoke the associated certificate. This ensures that the compromised key can no longer be used for secure communications, preventing potential security breaches.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago