Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CompTIA Exam CAS-004 Topic 1 Question 61 Discussion

Actual exam question for CompTIA's CAS-004 exam
Question #: 61
Topic #: 1
[All CAS-004 Questions]

The security analyst discovers a new device on the company's dedicated loT subnet during the most recent vulnerability scan. The scan results show numerous open ports and insecure protocols in addition to default usernames and passwords. A camera needs to transmit video to the security server in the loT subnet. Which of the following should the security analyst recommend to securely operate the camera?

Show Suggested Answer Hide Answer
Suggested Answer: A

To securely operate the camera, the security analyst should recommend hardening the camera configuration. This involves several steps:

Changing Default Credentials: Default usernames and passwords are a common vulnerability. They should be replaced with strong, unique passwords.

Disabling Unnecessary Services and Ports: The numerous open ports and insecure protocols should be reviewed, and any unnecessary services should be disabled to reduce the attack surface.

Firmware Updates: Ensuring the camera's firmware is up to date will mitigate known vulnerabilities.

Enable Encryption: If possible, enable encryption for both data in transit and at rest to protect the video stream and other communications from interception.

This approach addresses the identified vulnerabilities directly and ensures that the device is more secure. Simply sending logs to the SIEM or isolating the camera might not fully mitigate the risks associated with default settings and open ports.


CompTIA CASP+ CAS-004 Exam Objectives: Section 2.4: Implement security activities across the technology life cycle.

CompTIA CASP+ Study Guide, Chapter 5: Implementing Host Security.

Contribute your Thoughts:

Bobbie
2 months ago
Encrypting the video stream? That's the equivalent of wearing a disguise while walking around your own neighborhood. Gotta keep those peeping eyes away!
upvoted 0 times
Keneth
7 days ago
D) Place the camera on an isolated segment
upvoted 0 times
...
Cornell
8 days ago
C) Encrypt the camera's video stream.
upvoted 0 times
...
Tasia
19 days ago
A) Harden the camera configuration.
upvoted 0 times
...
...
Pamela
2 months ago
Hardening the camera configuration is a no-brainer. It's like putting your house in lockdown mode before going on vacation.
upvoted 0 times
...
Sommer
2 months ago
Sending camera logs to the SIEM? Sounds like a lot of data to sift through, but at least you'd know what's going on.
upvoted 0 times
Teresita
1 months ago
D) Place the camera on an isolated segment
upvoted 0 times
...
Estrella
1 months ago
C) Encrypt the camera's video stream.
upvoted 0 times
...
Arleen
1 months ago
A) Harden the camera configuration.
upvoted 0 times
...
...
Tanja
2 months ago
Putting the camera on an isolated segment? That's like building a fortress within a fortress - a bit overkill, don't you think?
upvoted 0 times
Maxima
2 months ago
D) Place the camera on an isolated segment
upvoted 0 times
...
Yaeko
2 months ago
C) Encrypt the camera's video stream.
upvoted 0 times
...
Anastacia
2 months ago
A) Harden the camera configuration.
upvoted 0 times
...
...
Cristal
2 months ago
I think hardening the camera configuration is also important to prevent unauthorized access.
upvoted 0 times
...
Shanda
2 months ago
I agree with Erasmo. Encrypting the video stream will help secure the transmission.
upvoted 0 times
...
Erasmo
2 months ago
I think we should encrypt the camera's video stream.
upvoted 0 times
...
Michell
3 months ago
Encrypting the video stream is crucial, otherwise it's like broadcasting your security footage on national TV.
upvoted 0 times
...
Alesia
3 months ago
A hardened camera configuration is definitely the way to go. Default settings are just asking for trouble!
upvoted 0 times
Lonna
2 months ago
Placing the camera on an isolated segment could help prevent unauthorized access.
upvoted 0 times
...
Sherrell
2 months ago
Encrypting the camera's video stream would also add an extra layer of security.
upvoted 0 times
...
Alesia
2 months ago
Agreed, default usernames and passwords are a huge security risk.
upvoted 0 times
...
Kerry
2 months ago
We should definitely harden the camera configuration.
upvoted 0 times
...
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77