
CompTIASecurityX (CASP+)
Domain 3Objective 3
Advanced Cryptography CAS-005 Practice Questions (Page 4)
Part of the Security engineering domain, which accounts for 31% of the CAS-005 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~20–34 in this domain), expect 4–7 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
5concepts
31%of the exam
Questions 16–20
- 16
A company stores user passwords using a salted hash. The security team wants to increase the difficulty of brute-force attacks, especially considering the future threat of quantum computers. Which approach is most effective?
Select an answer first - 17
Which of the following is a common key stretching algorithm?
Select an answer first - 18
A healthcare analytics firm wants to allow a third-party research organization to compute the average patient age and the total number of patients with a specific condition, without exposing individual patient records. The data is sensitive and must remain encrypted at all times. The firm is evaluating homomorphic encryption. Which consideration is most critical when deciding whether to use fully homomorphic encryption (FHE) for this workload?
Select an answer first - 19
A bank wants to allow a third-party auditor to verify that its loan approval process meets regulatory criteria without revealing the specific financial data of individual applicants. The auditor needs to check that the average debt-to-income ratio of approved loans is below a threshold. The bank has a large dataset of encrypted loan applications. Which approach is most practical?
Select an answer first - 20
A security architect is planning a long-term data protection strategy for a government contractor that must keep classified documents confidential for at least 30 years. The contractor is concerned about the eventual availability of large-scale quantum computers. The current system uses RSA-2048 for key exchange and AES-256 for data encryption. Which approach best addresses the quantum threat while maintaining interoperability with existing systems?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CAS-005” is a trademark of its owner, used for identification only.