Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIASecurityX (CASP+)

Domain 1Objective 9

Attack Surface CAS-005 Practice Questions (Page 3)

Part of the Governance, risk, and compliance domain, which accounts for 20% of the CAS-005 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~13–22 in this domain), expect 1–2 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)

33questions here
7free pages
9concepts
20%of the exam

Questions 11–15

  1. 11expert · hard

    A company has a partnership with an external vendor. The vendor needs to access a specific API in the company's internal network. The security team must establish a trust boundary. The vendor's IP addresses are not static. Which control is MOST appropriate?

    Select an answer first
  2. 12foundation · easy

    What is the primary purpose of a data flow diagram (DFD)?

    Select an answer first
  3. 13application · medium

    A company has a hybrid network with an on-premises data center and a cloud VPC. They are setting up a VPN connection between the two. The security team is defining trust boundaries. Which control is MOST important to implement at this trust boundary?

    Select an answer first
  4. 14foundation · easy

    When analyzing data flows, what should a security analyst focus on?

    Select an answer first
  5. 15expert · hard

    A company is implementing a zero-trust architecture. The security team is defining trust boundaries. Which approach is MOST aligned with zero-trust principles?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CAS-005” is a trademark of its owner, used for identification only.