CASP+ CompTIA Advanced Security Practitioner Study Guide: Exam CAS-004
Book information
Description
Prepare to succeed in your new cybersecurity career with the challenging and sought-after CASP+ credential In the newly updated Fourth Edition of CASP+ CompTIA Advanced Security Practitioner Study Guide Exam CAS-004, risk management and compliance expert Jeff Parker walks you through critical security topics and hands-on labs designed to prepare you for the new CompTIA Advanced Security Professional exam and a career in cybersecurity implementation. Content and chapter structure of this Fourth edition was developed and restructured to represent the CAS-004 Exam Objectives. From operations and architecture concepts, techniques and requirements to risk analysis, mobile and small-form factor device security, secure cloud integration, and cryptography, you’ll learn the cybersecurity technical skills you’ll need to succeed on the new CAS-004 exam, impress interviewers during your job search, and excel in your new career in cybersecurity implementation. This comprehensive book offers: Efficient preparation for a challenging and rewarding career in implementing specific solutions within cybersecurity policies and frameworks A robust grounding in the technical skills you’ll need to impress during cybersecurity interviews Content delivered through scenarios, a strong focus of the CAS-004 Exam Access to an interactive online test bank and study tools, including bonus practice exam questions, electronic flashcards, and a searchable glossary of key terms Perfect for anyone preparing for the CASP+ (CAS-004) exam and a new career in cybersecurity, CASP+ CompTIA Advanced Security Practitioner Study Guide Exam CAS-004 is also an ideal resource for current IT professionals wanting to promote their cybersecurity skills or prepare for a career transition into enterprise cybersecurity. Cover Title Page Copyright Page Acknowledgments About the Authors About the Technical Editor Contents at a Glance Contents Table of Exercises Introduction Before You Begin the CompTIA CASP+ Certification Exam Who Should Read This Book What You Will Learn How This Book Is Organized Extra Bits Requirements: Practice and Experience How to Use This Book Tips for Taking the CASP+ Exam Interactive Online Learning Environment and TestBank CompTIA CASP+ Study Guide Exam Objectives The CASP+ Exam Objective Map Reader Support for This Book Companion Download Files How to Contact the Publisher Assessment Test Answers to Assessment Test Chapter 1 Risk Management Risk Terminology The Risk Assessment Process Asset Identification Information Classification Risk Assessment Risk Assessment Options Implementing Controls Policies Used to Manage Employees Pre-Employment Policies Employment Policies End of Employment and Termination Procedures Cost-Benefit Analysis Continuous Monitoring Enterprise Security Architecture Frameworks and Governance Training and Awareness for Users Best Practices for Risk Assessments Business Continuity Planning and Disaster Recovery Reviewing the Effectiveness of Existing Security Controls Conducting Lessons Learned and After-Action Reviews Creation, Collection, and Analysis of Metrics Metrics Trend Data Analyzing Security Solutions to Ensure They Meet Business Needs Testing Plans Internal and External Audits Using Judgment to Solve Difficult Problems Summary Exam Essentials Review Questions Chapter 2 Configure and Implement Endpoint Security Controls Hardening Techniques Address Space Layout Randomization Use Hardware Security Module and Trusted Platform Module Trusted Operating Systems Compensating Controls Summary Exam Essentials Review Questions Chapter 3 Security Operations Scenarios Threat Management Types of Intelligence Threat Hunting Threat Emulation Actor Types Intelligence Collection Methods Open-Source Intelligence Human Intelligence and Social Engineering Frameworks MITRE Adversarial Tactics, Techniques and Common Knowledge ATT&CK for Industrial Control Systems Cyber Kill Chain Diamond Model of Intrusion Analysis Indicators of Compromise Reading the Logs Intrusion Detection and Prevention Notifications and Responses to IoCs Response Summary Exam Essentials Review Questions Chapter 4 Security Ops: Vulnerability Assessments and Operational Risk Terminology Vulnerability Management Security Content Automation Protocol Self-Assessment vs. Third-Party Vendor Assessment Patch Management Information Sources Tools Assessments Penetration Testing Assessment Types Vulnerabilities Buffer Overflow Integer Overflow Memory Leaks Race Conditions (TOC/TOU) Resource Exhaustion Data Remnants Use of Third-Party Libraries Code Reuse Cryptographic Vulnerabilities Broken Authentication Security Misconfiguration Inherently Vulnerable System/Application Client-Side Processing vs. Server-Side Processing Attacks Proactive Detection Incident Response Countermeasures Deceptive Technology USB Key Drops Simulation Security Data Analytics Application Control Allow and Block Lists Security Automation Physical Security Summary Exam Essentials Review Questions Chapter 5 Compliance and Vendor Risk Shared Responsibility in Cloud Computing Cloud Service/Infrastructure Models Cloud Computing Providers and Hosting Options Benefits of Cloud Computing Security of On-Demand/Elastic Cloud Computing Geographic Location Infrastructure Compute Storage Networking Managing and Mitigating Risk Security Concerns of Integrating Diverse Industries Regulations, Accreditations, and Standards PCI DSS GDPR ISO CMMI NIST COPPA CSA-STAR HIPAA, SOX, and GLBA Contract and Agreement Types Third-Party Attestation of Compliance Legal Considerations Summary Exam Essentials Review Questions Chapter 6 Cryptography and PKI The History of Cryptography Cryptographic Goals and Requirements Supporting Security Requirements Compliance and Policy Requirements Privacy and Confidentiality Requirements Integrity Requirements Nonrepudiation Risks with Data Data at Rest Data in Transit Data in Process/Data in Use Hashing Message Digest Secure Hash Algorithm Message Authentication Code Hashed Message Authentication Code RACE Integrity Primitives Evaluation Message Digest Poly1305 Symmetric Algorithms Data Encryption Standard Triple DES Rijndael and the Advanced Encryption Standard ChaCha Salsa20 International Data Encryption Algorithm Rivest Cipher Algorithms Counter Mode Asymmetric Encryption Diffie–Hellman RSA Elliptic Curve Cryptography ElGamal Hybrid Encryption and Electronic Data Exchange (EDI) Public Key Infrastructure Hierarchy Certificate Authority Registration Authority Digital Certificates Certificate Revocation List Certificate Types Certificate Distribution The Client’s Role in PKI Implementation of Cryptographic Solutions Application Layer Encryption Transport Layer Encryption Internet Layer Controls Additional Authentication Protocols Cryptocurrency Digital Signatures Recognizing Cryptographic Attacks Troubleshooting Cryptographic Implementations Summary Exam Essentials Review Questions Chapter 7 Incident Response and Forensics The Incident Response Framework Event Classifications Triage Events Pre-Escalation Tasks The Incident Response Process Response Playbooks and Processes Communication Plan and Stakeholder Management Forensic Concepts Principles, Standards, and Practices The Forensic Process Forensic Analysis Tools File Carving Tools Binary Analysis Tools Analysis Tools Imaging Tools Hashing Utilities Live Collection vs. Postmortem Tools Summary Exam Essentials Review Questions Chapter 8 Security Architecture Security Requirements and Objectives for a Secure Network Architecture Services Segmentation Deperimeterization/Zero Trust Merging Networks from Various Organizations Software-Defined Networking Organizational Requirements for Infrastructure Security Design Scalability Resiliency Automation Containerization Virtualization Content Delivery Network Integrating Applications Securely into an Enterprise Architecture Baseline and Templates Software Assurance Considerations of Integrating Enterprise Applications Integrating Security into the Development Life Cycle Data Security Techniques for Securing Enterprise Architecture Data Loss Prevention Data Loss Detection Data Classification, Labeling, and Tagging Obfuscation Anonymization Encrypted vs. Unencrypted Data Life Cycle Data Inventory and Mapping Data Integrity Management Data Storage, Backup, and Recovery Security Requirements and Objectives for Authentication and Authorization Controls Credential Management Password Policies Federation Access Control Protocols Multifactor Authentication One-Time Passwords Hardware Root of Trust Single Sign-On JavaScript Object Notation Web Token Attestation and Identity Proofing Summary Exam Essentials Review Questions Chapter 9 Secure Cloud and Virtualization Implement Secure Cloud and Virtualization Solutions Virtualization Strategies Deployment Models and Considerations Service Models Cloud Provider Limitations Extending Appropriate On-Premises Controls Storage Models How Cloud Technology Adoption Impacts Organization Security Automation and Orchestration Encryption Configuration Logs Monitoring Configurations Key Ownership and Location Key Life-Cycle Management Backup and Recovery Methods Infrastructure vs. Serverless Computing Software-Defined Networking Misconfigurations Collaboration Tools Bit Splitting Data Dispersion Summary Exam Essentials Review Questions Chapter 10 Mobility and Emerging Technologies Emerging Technologies and Their Impact on Enterprise Security and Privacy Artificial Intelligence Machine Learning Deep Learning Quantum Computing Blockchain Homomorphic Encryption Distributed Consensus Big Data Virtual/Augmented Reality 3D Printing Passwordless Authentication Nano Technology Biometric Impersonation Secure Enterprise Mobility Configurations Managed Configurations Deployment Scenarios Mobile Device Security Considerations Security Considerations for Technologies, Protocols, and Sectors Embedded Technologies ICS/supervisory Control and Data Acquisition Protocols Sectors Summary Exam Essentials Review Questions Appendix: Answers to Review Questions Chapter 1: Risk Management Chapter 2: Configure and Implement Endpoint Security Controls Chapter 3: Security Operations Scenarios Chapter 4: Security Ops: Vulnerability Assessments and Operational Risk Chapter 5: Compliance and Vendor Risk Chapter 6: Cryptography and PKI Chapter 7: Incident Response and Forensics Chapter 8: Security Architecture Chapter 9: Secure Cloud and Virtualization Chapter 10: Mobility and Emerging Technologies Index EULA
Similar books
CASP+ CompTIA Advanced Security Practitioner Study Guide: Exam CAS-004
2022 · PDF
CASP+ CompTIA Advanced Security Practitioner Study Guide: Exam CAS-004
2022 · EPUB
CASP+ CompTIA Advanced Security Practitioner Study Guide: Exam CAS-004
2022 · RAR
COMPTIA A+ COMPLETE PRACTICE TESTS : core 1 exam 220-1101 and core 2 exam 220-1102.
2022 · PDF
CASP+ CompTIA Advanced Security Practitioner Practice Tests: Exam CAS-004
2021 · PDF
CASP+ CompTIA Advanced Security Practitioner Practice Tests: Exam CAS-004
2021 · EPUB
CASP+ Practice Tests
2020 · PDF
Cybersecurity Blue Team Toolkit
2019 · EPUB