Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

TestOut - CompTIA CySA+ Practice Questions 6.7.8 Exam With Complete Answers

Rating
-
Sold
-
Pages
6
Grade
A+
Uploaded on
24-06-2026
Written in
2025/2026

TestOut - CompTIA CySA+ Practice Questions 6.7.8 Exam With Complete Answers...

Institution
CompTIA CySA+
Course
CompTIA CySA+

Content preview

TestOut - CompTIA CySA+ Practice Questions
6.7.8 Exam With Complete Answers

Which security control makes a system more difficult to attack?

A. Deterrent
B. Detective
C. Preventive
D. Corrective - ANSWER A. Deterrent

Deterrent: Deterrent controls make a system more difficult to attack.

Preventive: Preventive controls harden a system against attacks as well as
recognize and stop them.

Detective: Detective controls identify and take action as needed when incidents
happen.

Corrective: Corrective controls lessen the aftermath of an incident by limiting
the damage.

A government agency had a breach at one of its locations that resulted in stolen
hard drives. The virtual servers on the stolen hard drives had data for only one
virtual appliance replicating to the secondary virtual appliance remotely.

A security investigation report showed that the agency did not set up virtual
appliances with data-at-rest security features.

What must the system administrators do to ensure another breach does not
jeopardize the government?

A. Configure high availability
B. Setup backup targets
C. Encrypt the virtual server
D. Setup for disaster recovery - ANSWER C. Encrypt the virtual server

Explanation
Encryption provides data-at-rest security for virtual and physical servers at the
drive level. For example, if a hard drive gets stolen, the data is not recoverable
without the decryption keys.

, Backup targets provide the availability of data in the event it is lost or corrupted.
In this case, the agency set up the virtual servers for replication to another site.
High availability supports services if one of the cluster servers goes down. In
this case, one of the servers did go, but it did not protect the data from the
breach.
Disaster recovery supports the availability of services after a catastrophic
event. Here, stolen data did not get protected, but services were still available
on the second virtual server.

Which security control layer involves putting in place policies that comply with
industry standards, such as OWASP?

A. Network
B. Management
C. Application
D. Physical - ANSWER C. Application

Explanation
Security at the Application layer involves putting in place policies that comply
with industry standards, such as OWASP (Open Web Application Security
Project).
The Management layer involves all administrative tasks to promote
uninterrupted and effective services.
The Network layer implements policies to prevent attackers from activities such
as stealing, modifying, viewing, and redirecting data.
Physical layer security measures focus on data centers, physical resources, and
cloud infrastructure.

A company's security team needs to assess the security posture of its Amazon
Web Services (AWS) environment, focusing on both the reconnaissance and
exploitation phases of a penetration testing engagement.

The team requires a tool that can automate various attack scenarios and
validate the effectiveness of its cloud security controls.

Which of the following tools is best suited for this task?

A. Suricata
B. Tenable.io
C. Pacu
D. Zed Attack Proxy (ZAP) - ANSWER C. Pacu

Explanation
Pacu is an open-source Amazon Web Services (AWS) exploitation framework for
penetration testing engagements in AWS environments. It automates various
attack scenarios and helps validate the effectiveness of cloud security controls.

Written for

Institution
CompTIA CySA+
Course
CompTIA CySA+

Document information

Uploaded on
June 24, 2026
Number of pages
6
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$18.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Zayla Liberty University
Follow You need to be logged in order to follow users or courses
Sold
117
Member since
3 year
Number of followers
13
Documents
14873
Last sold
5 days ago

3.4

17 reviews

5
5
4
3
3
5
2
2
1
2

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions