Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 468 pages
Exam (elaborations)

2026 WGU D488 – Cybersecurity Architecture and Engineering (CASP) | D488 Final Exam Questions and Correct Verified Answers Latest Update 2026|Already Graded A+|Latest Version!!

Document preview thumbnail
Preview 4 out of 468 pages

2026 WGU D488 – Cybersecurity Architecture and Engineering (CASP) | D488 Final Exam Questions and Correct Verified Answers Latest Update 2026|Already Graded A+|Latest Version!!

Content preview

2026 WGU D488 – Cybersecurity Architecture and Engineering
(CASP) | D488 Final Exam Questions and Correct Verified
Answers Latest Update 2026|Already Graded A+|Latest Version!!
An IT team is preparing the network for a hybrid cloud deployment. A
security analyst recently discovered that the firmware of a router in
the core data center has been compromised. According to the analyst,
the attack occurred over a year ago without being detected.
Which type of threat actor is the most likely cause of the attack?
A) Competitor
B) Hacktivist
C) Advanced persistent threat
D) Novice hacker
C) Advanced persistent threat
The security operations center (SOC) team just received a notification
that multiple vulnerabilities are present in the codebase of a corporate
application.
Which threat type is most likely in this scenario?
A) Advanced persistent threat
B) Insider threat
C) Supply chain
D) Organized crime
C) Supply chain
The security operations center (SOC) team for a global company is
planning an initiative to defend against security breaches. Leadership
wants the team to monitor for threats against the organization's data,
credentials, and brand reputation by scanning networks that can not be
accessed via search engines.
Which type of network should be scanned based on the requirements?


pg. 1

,A) Wireless fidelity
B) Intranet
C) Deep web
D) Supervisory control and data acquisition
C) Deep web
An electric power and water utility company has recently added a
cybersecurity division. The security operations center (SOC) team has
been tasked with leveraging an investigative framework that can
accurately assess the motives, means, and opportunities associated
with common security attacks.
Which framework should be implemented?
A) National Institute of Standards and Technology (NIST)
B) Diamond Model of Intrusion Analysis
C) Adversarial Tactics, Techniques, and Common Knowledge
(ATT&CK) for industrial control systems (ICS)
D) Cyber kill chain
C) Adversarial Tactics, Techniques, and Common Knowledge
(ATT&CK) for industrial control systems (ICS)
A company operates a customer service call center with over one
hundred agents taking inbound sales calls. After a recent security
breach, the security team believes that one or more agents have been
stealing customer credit card details.
Which solution will defend against this issue?
A) Security information and event management (SIEM)
B) File integrity monitoring (FIM)
C) Data loss prevention (DLP)
D) Intrusion detection system (IDS)



pg. 2

,C) Data loss prevention (DLP)
The security team has noticed that several endpoints on the network
have been infected with malware. Leadership has tasked the security
team with identifying these attacks in the future.
Which solution will notify the team automatically in the event of
future malware variants invading the network?
A) Security information and event management (SIEM) alerts
B) Data loss prevention (DLP) alerts
C) Antivirus alerts
D) Syslog alerts
C) Antivirus alerts
An engineer has noticed a degradation in system performance and
alerts regarding high central processing unit (CPU) usage on multiple
virtual machines in the environment. Further investigation shows that
several unknown processes are running on the affected systems.
What is the explanation for the degradation in system performance
and alerts regarding high central processing unit (CPU) usage?
A) Misconfigured firewall
B) Overly permissive web application firewall (WAF) rules
C) Outdated anti-malware signatures
D) Incorrect file permissions
C) Outdated anti-malware signatures
A financial services company has experienced several incidents of
data breaches in recent months. The company has analyzed the
indicators of compromise and determined that the data breaches were
caused by insider threats. The company has decided to implement
hardening techniques and endpoint security controls to mitigate the
risk.What should be used to prevent data breaches caused by insider
threats based on the indicators of compromise?

pg. 3

, A) Network monitoring
B) Intrusion detection systems (IDS)
C) Data loss prevention (DLP)
D) Access control systems (ACS)
C) Data loss prevention (DLP)
The cybersecurity analyst at a software company conducted a
vulnerability assessment to identify potential security risks to the
organization and discovered multiple vulnerabilities on the company's
webpage. The analyst then provided the results to the chief
information security officer (CISO), who then decided not to fix the
discrepancies due to the vulnerabilities being outside of the
organization's resources.
Which risk mitigation strategy is demonstrated in this scenario?
A) Accept
B) Mitigate
C) Avoid
D) Transfer
A) Accept
A company wants to implement a policy to reduce the risk of
unauthorized access to sensitive information.
Which policy should be implemented?
A) Least privilege
B) Separation of duties
C) Job rotation
D) Data encryption
A) Least privilege



pg. 4

Document information

Uploaded on
February 13, 2026
Number of pages
468
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$21.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
ExamEdgePro
3.5
(4)
Sold
19
Followers
3
Items
296
Last sold
4 weeks ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions