Home > CompTIA Security+ Certification > Quizzes > CySA+ (CS0-002) Review Questions
CySA+ (CS0-002) Review Questions
Fast practice, instant feedback. Timer auto-submits when time’s up.
Avg score: 14% Most missed: “What document is the basis of an incident response program?”

CompTIA Cybersecurity Analyst (CySA+) certification applies behavioral analytics to networks and devices for preventing, detecting, and combating cybersecurity threats by using security monitoring. 

CompTIA CySA+ (CS0-002) Certification Exam covers these topics:

1: Threat and Vulnerability Management
2: Software and Systems Security
3: Security Operations and Monitoring
4: Incident Response
5: Compliance and Assessment

CySA+ (CS0-002) Review Questions
Time left 00:00
25 Questions

1. What is the difference between verification and validation?

2. What can help detect Kerberos attacks?

3. Service Orchestration

4. What 3 ways can a CASB be set up?

5. What is Open Indicators of Compromise (OpenOIC) and who created it?

6. What are the 3 components of a SOAR?

7. What's the difference between immediate and total impact cost?

8. 3 components of the NIST Cybersecurity framework

9. 3 open source file analysis tools

10. What indicators does a jpg have in it's header and footer

11. Describe OpenID

12. Dynamic port range

13. Modbus

14. what is a compensating control

15. heap overflows

16. How do you provide depth in integrity?

17. What are the NIST Recoverability effort categories of downtime?

18. What is the difference between ICS and SCADA

19. Software as a Service (SaaS)

20. Where do Document Object Model (DOM) attacks occur?

21. According to PCI-DSS, who can run internal vulnerability scans ?

22. CVSS Score levels

23. Privilege Access Management (PAM)

24. name 4 web application security scanners

25. icacls (WIN)