CompTIA SecurityX Practice Questions: Threat Management

5 free, exam-style CompTIA SecurityX (CAS-005) practice questions covering Threat Management, each with the correct answer and an explanation. Start a timed exam below, or scroll on to read through the questions.

🧠

Mini Exam

25 Questions · 50 minutes

Start Quiz 🚀
🏆

Mock SecurityX Exam

85 Questions · 165 minutes

Start Quiz 🚀
📅

Daily Quiz

10 Questions · 20 minutes

Start Quiz 🚀
🎯

Standard Practice

50 Questions · 100 minutes

Start Quiz 🚀

Threat Management practice questions

Answers and explanations are shown. Take the timed exam above to test yourself first.

Q1. Which technique is MOST effective against fileless malware attacks?

  • A.Signature-based antivirus
  • B.Behavioral monitoring and memory protection✓ Correct
  • C.Disabling firewalls
  • D.MAC address filtering
Explanation: Fileless malware resides in memory, requiring behavioral analysis for detection. Learn more.

Q2. What is the PRIMARY purpose of a Red Team exercise?

  • A.Compliance auditing
  • B.Simulating real-world attacks✓ Correct
  • C.Training employees on phishing
  • D.Testing backup systems
Explanation: Red Teams emulate adversaries to test defenses. Learn more.

Q3. Which standards are commonly used to structure and exchange threat intelligence?

  • A.STIX and TAXII✓ Correct
  • B.POP3 and IMAP
  • C.VGA and HDMI
  • D.FAT32 and exFAT
Explanation: STIX represents threat intelligence, while TAXII defines a method for exchanging it between systems. Learn more.

Q4. Which analysis method evaluates attack paths through relationships between identities, systems, and privileges?

  • A.Attack path analysis✓ Correct
  • B.Disk defragmentation
  • C.Screen capture
  • D.Subnet summarization only
Explanation: Attack path analysis shows how an adversary could chain privileges and weaknesses to reach critical assets. Learn more.

Q5. Which technique validates security controls by emulating real adversary behavior against objectives?

  • A.Purple team exercise✓ Correct
  • B.Inventory barcode scan
  • C.Printer calibration
  • D.Cable certification only
Explanation: Purple team exercises combine offensive emulation and defensive tuning to improve detection and response. Learn more.

More CompTIA SecurityX practice topics

Keep studying CompTIA SecurityX

Full CompTIA SecurityX practice exam · CompTIA SecurityX study guide · All CompTIA practice questions

Last updated