Question 26

A company is adopting microservice architecture in order to quickly remediate vulnerabilities and deploy to production. All of the microservices run on the same Linux platform. Significant time was spent updating the base OS before deploying code. Which of the following should the company do to make the process efficient?
  • Question 27

    A recent security audit identified multiple endpoints have the following vulnerabilities:
    - Various unsecured open ports
    - Active accounts for terminated personnel
    - Endpoint protection software with legacy versions
    - Overly permissive access rules
    Which of the following would best mitigate these risks? (Select three).
  • Question 28


    An administrator needs to craft a single certificate-signing request for a web-server certificate. The server should be able to use the following identities to mutually authenticate other resources over TLS:
    * wwwJnt.comptia.org
    * webserver01.int.comptia.org
    *10.5.100.10
    Which of the following certificate fields must be set properly to support this objective?
  • Question 29

    An organization decides to move to a distributed workforce model. Several legacy systems exist on premises and cannot be migrated because of existing compliance requirements. However, all new systems are required to be cloud-based. Which of the following would best ensure network access security?
  • Question 30

    An incident response team is analyzing malware and observes the following:
    * Does not execute in a sandbox
    * No network loCs
    * No publicly known hash match
    * No process injection method detected
    Which of the following should the team do next to proceed with further analysis?