CompTIA SecurityX CAS-005 Practice Question

A development team uses various external dependencies in an automated build environment. They want to detect malicious modifications before those changes can affect the production environment. Which method is BEST to ensure suspicious changes are identified rapidly?

  • Use a fixed baseline for external libraries and avoid updating to newer releases

  • Depend on vendor alerts for notifications about compromised source code

  • Include an automated verification step in each build that checks for unexpected changes to external libraries

  • Schedule manual evaluations of third-party components twice a year to confirm authenticity

CompTIA SecurityX CAS-005
Security Architecture
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot