CompTIA SecurityX Practice Questions: Enterprise Security

5 free, exam-style CompTIA SecurityX (CAS-005) practice questions covering Enterprise Security, each with the correct answer and an explanation. Start a timed exam below, or scroll on to read through the questions.

🧠

Mini Exam

25 Questions · 50 minutes

Start Quiz 🚀
🏆

Mock SecurityX Exam

85 Questions · 165 minutes

Start Quiz 🚀
📅

Daily Quiz

10 Questions · 20 minutes

Start Quiz 🚀
🎯

Standard Practice

50 Questions · 100 minutes

Start Quiz 🚀

Enterprise Security practice questions

Answers and explanations are shown. Take the timed exam above to test yourself first.

Q1. What is the PRIMARY security benefit of implementing a Zero Trust Network Access (ZTNA) solution?

  • A.Legacy VPN compatibility
  • B.Device-agnostic secure access based on identity✓ Correct
  • C.Open network perimeters
  • D.Reduced authentication requirements
Explanation: ZTNA provides secure remote access without assuming trust based on network location. Learn more.

Q2. Which of the following is a key characteristic of a Zero Trust architecture?

  • A.Implicit trust for internal users
  • B.Perimeter-based security
  • C.Continuous authentication✓ Correct
  • D.No encryption required
Explanation: Zero Trust requires continuous verification of all access attempts. Learn more.

Q3. An enterprise needs to protect private keys used by a certificate authority. Which solution provides tamper-resistant key storage?

  • A.HSM✓ Correct
  • B.WAF
  • C.NAT gateway
  • D.Jump box only
Explanation: A hardware security module protects cryptographic keys and performs sensitive operations in tamper-resistant hardware. Learn more.

Q4. Which Zero Trust concept requires ongoing checks instead of trusting a user after initial login?

  • A.Continuous verification✓ Correct
  • B.Implicit internal trust
  • C.Permanent administrator sessions
  • D.Network flatness
Explanation: Zero Trust assumes no implicit trust and continuously evaluates identity, device, context, and risk. Learn more.

Q5. Which design pattern places policy enforcement at each workload boundary rather than only at the perimeter?

  • A.Host-based segmentation✓ Correct
  • B.Flat broadcast domain
  • C.Single shared VLAN
  • D.Public read access
Explanation: Host-based or workload-level segmentation enforces controls close to assets and limits lateral movement. Learn more.

More CompTIA SecurityX practice topics

Keep studying CompTIA SecurityX

Full CompTIA SecurityX practice exam · CompTIA SecurityX study guide · All CompTIA practice questions

Last updated