exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 469 discussion

Actual exam question from CompTIA's CAS-004
Question #: 469
Topic #: 1
[All CAS-004 Questions]

A security analyst identified a vulnerable and deprecated runtime engine that is supporting a public-facing banking application. The developers anticipate the transition to modern development environments will take at least a month. Which of the following controls would best mitigate the risk without interrupting the service during the transition?

  • A. Shutting down the systems until the code is ready
  • B. Uninstalling the impacted runtime engine
  • C. Selectively blocking traffic on the affected port
  • D. Configuring IPS and WAF with signatures
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
23d5d21
5 months, 2 weeks ago
Selected Answer: D
without interrupting services
upvoted 2 times
...
Bright07
7 months, 1 week ago
Ans is D. The key word there is without interrupting the service. The best control to mitigate the risk without interrupting the service during the transition is: D. Configuring IPS and WAF with signatures. Implementing an Intrusion Prevention System (IPS) and a Web Application Firewall (WAF) with appropriate signatures can help detect and block malicious traffic targeting the vulnerable runtime engine. This approach allows the application to remain operational while providing an additional layer of security until the transition to modern environments is complete.
upvoted 3 times
...
snowmaggedon
8 months ago
Selected Answer: D
Selectively blocking traffic might help reduce the risk but could also prevent legitimate traffic, potentially affecting service availability or functionality. It is less targeted and effective than using an IPS and WAF to block known malicious activity.
upvoted 3 times
...
isaphiltrick
10 months, 1 week ago
Selected Answer: C
Selectively blocking traffic on the affected port strikes a balance between security and operational continuity. It effectively mitigates the risk posed by the vulnerable and deprecated runtime engine while allowing the banking application to remain operational until the transition to a modern development environment is completed. This approach ensures that customer service is maintained without compromising security during the transitional phase. While IPS and WAF are valuable security measures, they are not specifically tailored to address the risks associated with a deprecated runtime engine. Configuring IPS and WAF with signatures is more effective for protecting against specific types of attacks but may not comprehensively mitigate the vulnerabilities in the runtime engine itself. Selectively blocking traffic on the affected port directly addresses the immediate risk posed by the deprecated component without introducing potential operational disruptions or incomplete protection scenarios that could arise from relying solely on IPS and WAF.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago