CompTIA SecurityX Practice Questions: Threat Management

5 free, exam-style CompTIA SecurityX (CAS-005) practice questions covering Threat Management. Each question shows the correct answer and a clear explanation. Ready for the real thing? Take the full timed quiz below.

🚀 Take the full CompTIA SecurityX quiz 📘 CompTIA SecurityX study guide

Q1. Which technique is MOST effective against fileless malware attacks?

Explanation: Fileless malware resides in memory, requiring behavioral analysis for detection. Learn more.

Q2. What is the PRIMARY purpose of a Red Team exercise?

Explanation: Red Teams emulate adversaries to test defenses. Learn more.

Q3. Which standards are commonly used to structure and exchange threat intelligence?

Explanation: STIX represents threat intelligence, while TAXII defines a method for exchanging it between systems. Learn more.

Q4. Which analysis method evaluates attack paths through relationships between identities, systems, and privileges?

Explanation: Attack path analysis shows how an adversary could chain privileges and weaknesses to reach critical assets. Learn more.

Q5. Which technique validates security controls by emulating real adversary behavior against objectives?

Explanation: Purple team exercises combine offensive emulation and defensive tuning to improve detection and response. Learn more.

More CompTIA SecurityX practice topics