After the latest risk assessment the chief information secur - CompTIA CAS-005

Question

After the latest risk assessment, the Chief Information Security Officer (CISO) decides to meet with the development and security teams to find a way to reduce the security task workload. The CISO would like to:

  • Have a solution that uses API to communicate with other security tools.
  • Use the latest technology possible.
  • Have the highest controls possible on the solution.

Which of following is the BEST option to meet these requirements?

Answers
  1. correct
Explanation

The correct answer is: C. SOAR (Security Orchestration, Automation, and Response)

SOAR is the best solution to meet the CISO's requirements because it:

  1. Uses APIs to communicate with other security tools: SOAR platforms integrate seamlessly with various security tools through APIs, enabling centralized management and automation.
  2. Employs the latest technology: SOAR uses cutting-edge automation and orchestration capabilities to improve efficiency in security operations.
  3. Provides high levels of control: SOAR platforms offer customizable workflows and automation, ensuring robust controls for handling security tasks while reducing the manual workload.

SOAR is designed to optimize security processes, reduce workload through automation, and enable efficient incident response and management.

Why the other options are incorrect:

EDR (Endpoint Detection and Response):

  • Incorrect: EDR focuses on endpoint monitoring, detection, and response to threats. While useful, it does not reduce the overall security workload or integrate other security tools using APIs to the same extent as SOAR.

CSP (Cloud Service Provider):

  • Incorrect: CSPs provide cloud services and infrastructure but are not specific to security automation or orchestration. They do not directly address reducing the security team's workload.

CASB (Cloud Access Security Broker):

  • Incorrect: CASB solutions manage cloud security by enforcing policies and ensuring compliance for cloud applications. While valuable for cloud environments, they do not reduce the overall security workload or integrate multiple tools via APIs as SOAR does.

No Payment Cards Needed

Related Courses

Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.

a prepsaret exam featured image
CompTIA Prep

220-1201 - CompTIA A+ Exam Core 1

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

220-1202 - CompTIA A+ Exam Core 2

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud Essentials+ CLO-002

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Network+ N10-009

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Security+ SY0-701

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Data + DA0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Pentest+

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Linux+ XK0-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA CySA+ CSO-003

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA DataSys+ DS0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Tech+ FC0-U71

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud+ CV0-004

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Server+ SK0-005

Start Course Prep

Easy way to pass your test within a week with prepsaret

You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams

View Courses Offered