WGU C706 Secure Software - WGU Exam Study
Guide – Complete Questions with Correct
Detailed Answers | Latest Updated Version
Prepare effectively for your Western Governors University (WGU) exams with this
comprehensive and well-organized study guide. This resource contains complete exam
questions with correct and detailed answers, designed to help students understand key
concepts and successfully prepare for their WGU assessments.
WGU courses follow a competency-based learning model, meaning students must
demonstrate a strong understanding of course objectives before passing their assessments.
This study guide helps simplify the process by providing structured questions and accurate
explanations that reinforce important topics and improve exam readiness.
What This Study Guide Includes
✔ Complete exam questions covering key WGU course competencies
✔ Correct answers with clear and detailed explanations
✔ Organized format for quick and effective revision
✔ Coverage of commonly tested concepts in WGU assessments
✔ Latest updated version for reliable exam preparation
Why This Study Guide Is Helpful
This resource is designed to help students review faster, understand concepts more clearly,
and build confidence before taking WGU Objective Assessments (OA). Practicing with
structured questions and reviewing detailed answers helps strengthen knowledge and
improve test-taking skills.
Ideal For
• WGU Objective Assessment (OA) preparation
• Midterm and final exam review
• Self-paced study and revision
,• Practicing exam-style questions
• Strengthening understanding of course competencies
A valuable study resource designed to support WGU students in preparing effectively and
performing confidently in their exams.
Which due diligence activity for supply chain security should occur in the initiation phase of the
software acquisition life cycle? -answer Developing a request for proposal (RFP) that
includes supply chain security risk management
Which due diligence activity for supply chain security investigates the means by which data sets
are shared and assessed? -answer A document exchange and review
Identification of the entity making the access request
Verification that the request has not changed since its initiation
Application of the appropriate authorization procedures
Reexamination of previously authorized requests by the same entity
Which security design analysis is being described? -answer Complete mediation
Which software security principle guards against the improper modification or destruction of
information and ensures the nonrepudiation and authenticity of information? -answer
Integrity
What type of functional security requirement involves receiving, processing, storing,
transmitting, and delivering in report form? -answer Primary dataflow
, Which nonfunctional security requirement provides a way to capture information correctly and
a way to store that information to help support later audits? -answer Logging
Which security concept refers to the quality of information that could cause harm or damage if
disclosed? -answer Sensitivity
Which technology would be an example of an injection flaw, according to the OWASP Top 10? -
answer SQL
A company is creating a new software to track customer balance and wants to design a secure
application.
Which best practice should be applied? -answer Create multiple layers of protection
so that a subsequent layer provides protection if a layer is breached
A company is developing a secure software that has to be evaluated and tested by a large
number of experts.
Which security principle should be applied? -answer Open design
Which type of TCP scanning indicates that a system is moving to the second phase in a three-
way TCP handshake? -answer TCP SYN scanning
Which evaluation technique provides invalid, unexpected, or random data to the inputs of a
computer software program? -answer Fuzz testing
Which approach provides an opportunity to improve the software development life cycle by
tailoring the process to the specific risks facing the organization? -answer Software
assurance maturity model (SAMM)
Guide – Complete Questions with Correct
Detailed Answers | Latest Updated Version
Prepare effectively for your Western Governors University (WGU) exams with this
comprehensive and well-organized study guide. This resource contains complete exam
questions with correct and detailed answers, designed to help students understand key
concepts and successfully prepare for their WGU assessments.
WGU courses follow a competency-based learning model, meaning students must
demonstrate a strong understanding of course objectives before passing their assessments.
This study guide helps simplify the process by providing structured questions and accurate
explanations that reinforce important topics and improve exam readiness.
What This Study Guide Includes
✔ Complete exam questions covering key WGU course competencies
✔ Correct answers with clear and detailed explanations
✔ Organized format for quick and effective revision
✔ Coverage of commonly tested concepts in WGU assessments
✔ Latest updated version for reliable exam preparation
Why This Study Guide Is Helpful
This resource is designed to help students review faster, understand concepts more clearly,
and build confidence before taking WGU Objective Assessments (OA). Practicing with
structured questions and reviewing detailed answers helps strengthen knowledge and
improve test-taking skills.
Ideal For
• WGU Objective Assessment (OA) preparation
• Midterm and final exam review
• Self-paced study and revision
,• Practicing exam-style questions
• Strengthening understanding of course competencies
A valuable study resource designed to support WGU students in preparing effectively and
performing confidently in their exams.
Which due diligence activity for supply chain security should occur in the initiation phase of the
software acquisition life cycle? -answer Developing a request for proposal (RFP) that
includes supply chain security risk management
Which due diligence activity for supply chain security investigates the means by which data sets
are shared and assessed? -answer A document exchange and review
Identification of the entity making the access request
Verification that the request has not changed since its initiation
Application of the appropriate authorization procedures
Reexamination of previously authorized requests by the same entity
Which security design analysis is being described? -answer Complete mediation
Which software security principle guards against the improper modification or destruction of
information and ensures the nonrepudiation and authenticity of information? -answer
Integrity
What type of functional security requirement involves receiving, processing, storing,
transmitting, and delivering in report form? -answer Primary dataflow
, Which nonfunctional security requirement provides a way to capture information correctly and
a way to store that information to help support later audits? -answer Logging
Which security concept refers to the quality of information that could cause harm or damage if
disclosed? -answer Sensitivity
Which technology would be an example of an injection flaw, according to the OWASP Top 10? -
answer SQL
A company is creating a new software to track customer balance and wants to design a secure
application.
Which best practice should be applied? -answer Create multiple layers of protection
so that a subsequent layer provides protection if a layer is breached
A company is developing a secure software that has to be evaluated and tested by a large
number of experts.
Which security principle should be applied? -answer Open design
Which type of TCP scanning indicates that a system is moving to the second phase in a three-
way TCP handshake? -answer TCP SYN scanning
Which evaluation technique provides invalid, unexpected, or random data to the inputs of a
computer software program? -answer Fuzz testing
Which approach provides an opportunity to improve the software development life cycle by
tailoring the process to the specific risks facing the organization? -answer Software
assurance maturity model (SAMM)