New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

CompTIA CASP CAS-004 Book

Page: 34 / 42
Total 564 questions

CompTIA SecurityX Certification Exam Questions and Answers

Question 133

A software development company needs to mitigate third-party risks to its software supply chain. Which of the following techniques should the company use in the development environment to best meet this objective?

Options:

A.

Performing software composition analysis

B.

Requiring multifactor authentication

C.

Establishing coding standards and monitoring for compliance

D.

Implementing a robust unit and regression-testing scheme

Question 134

During the development process, the team identifies major components that need to be rewritten. As a result, the company hires a security consultant to help address major process issues. Which of the following should the consultant recommend to best prevent these issues from reoccurring in the future?

Options:

A.

Implementing a static analysis tool within the CI/CD system

B.

Configuring a dynamic application security testing tool

C.

Performing software composition analysis on all third-party components

D.

Utilizing a risk-based threat modeling approach on new projects

E.

Setting up an interactive application security testing tool

Question 135

Options:

A.

Privacy concerns

B.

Vendor viability

C.

Regulatory compliance

D.

Geographic location

Question 136

A security engineer is reviewing metrics for a series of bug bounty reports. The engineer finds systematic cross-site scripting issues and unresolved previous findings. Which of the following is the best solution to address the issue?

Options:

A.

Implementing a third-party API management solution with input filtering

B.

Leveraging middleware to handle integrations in the application

C.

Introducing secure coding training focused on common issues

D.

Ensuring functional checks are performed in the software development pipeline

E.

Configuring a software composition analysis tool to look for issues

Page: 34 / 42
Total 564 questions