
CompTIASecurityX (CASP+)
Domain 1Objective 9
Attack Surface CAS-005 Practice Questions (Page 3)
Part of the Governance, risk, and compliance domain, which accounts for 20% of the CAS-005 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~13–22 in this domain), expect 1–2 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)
33questions here
7free pages
9concepts
20%of the exam
Questions 11–15
- 11
A company has a partnership with an external vendor. The vendor needs to access a specific API in the company's internal network. The security team must establish a trust boundary. The vendor's IP addresses are not static. Which control is MOST appropriate?
Select an answer first - 12
What is the primary purpose of a data flow diagram (DFD)?
Select an answer first - 13
A company has a hybrid network with an on-premises data center and a cloud VPC. They are setting up a VPN connection between the two. The security team is defining trust boundaries. Which control is MOST important to implement at this trust boundary?
Select an answer first - 14
When analyzing data flows, what should a security analyst focus on?
Select an answer first - 15
A company is implementing a zero-trust architecture. The security team is defining trust boundaries. Which approach is MOST aligned with zero-trust principles?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CAS-005” is a trademark of its owner, used for identification only.