Question 81
A company is implementing a new secure identity application, given the following requirements:
- The cryptographic secrets used in the application must never be
exposed to users or the OS
- The application must work on mobile devices.
- The application must work with the company's badge reader system
Which of the following mobile device specifications are required for this design? (Choose two.)
- The cryptographic secrets used in the application must never be
exposed to users or the OS
- The application must work on mobile devices.
- The application must work with the company's badge reader system
Which of the following mobile device specifications are required for this design? (Choose two.)
Question 82
A cybersecurity analyst created the following tables to help determine the maximum budget amount the business can justify spending on an improved email filtering system:

Which of the following meets the budget needs of the business?

Which of the following meets the budget needs of the business?
Question 83
A Chief Information Officer is considering migrating all company data to the cloud to save money on expensive SAN storage.
Which of the following is a security concern that will MOST likely need to be addressed during migration?
Which of the following is a security concern that will MOST likely need to be addressed during migration?
Question 84
Due to budget constraints, an organization created a policy that only permits vulnerabilities rated high and critical according to CVSS to be fixed or mitigated. A security analyst notices that many vulnerabilities that were previously scored as medium are now breaching higher thresholds. Upon further investigation, the analyst notices certain ratings are not aligned with the approved system categorization. Which of the following can the analyst do to get a better picture of the risk while adhering to the organization's policy?
Question 85
A security architect needs to implement a CASB solution for an organization with a highly distributed remote workforce. One Of the requirements for the implementation includes the capability to discover SaaS applications and block access to those that are unapproved or identified as risky. Which of the following would BEST achieve this objective?
