Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 4 fuera de 536 páginas
Examen

WGU D487 Secure Software Design Study Guide | Cybersecurity OA Revision Notes & Practice Questions Pack

Document preview thumbnail
Vista previa 4 fuera de 536 páginas

WGU D487 Secure Software Design Study Guide is a structured revision resource designed to help students understand secure coding principles, software security architecture, and best practices for building secure systems. It simplifies complex cybersecurity and software design concepts into clear, easy-to-revise notes supported by practice questions. What’s Included: Secure software design principles and methodologies Threat modeling and risk analysis fundamentals Secure coding practices and vulnerability prevention Software security architecture concepts Authentication, authorization, and access control basics

Vista previa del contenido

D487: Secure Software Design
Questions and Answers


What are the two common best principles of software applications in the development process? Choose
2 answers.

Quality code

Secure code

Information security

Integrity

Availability

Quality code

Secure code



"Quality code" is correct. Quality code is efficient code that is easy to maintain and reusable.

"Secure code" is correct. Secure code authorizes and authenticates every user transaction, logs the
transaction, and denies all unauthorized requisitions.




What ensures that the user has the appropriate role and privilege to view data?

Authentication

Multi-factor authentication

Encryption

Information security

Authorization

Authorization



Authorization ensures a user's information and credentials are approved by the system.

,Which security goal is defined by "guarding against improper information modification or destruction
and ensuring information non-repudiation and authenticity"?

Integrity

Quality

Availability

Reliability

Integrity



The data must remain unchanged by unauthorized users and remain reliable from the data entry point
to the database and back.




Which phase in an SDLC helps to define the problem and scope of any existing systems and determine
the objectives of new systems?

Requirements

Design

Planning

Testing

Planning



The planning stage sets the project schedule and looks at the big picture.




What happens during a dynamic code review?

Programmers monitor system memory, functional behavior, response times, and overall performance.

Customers perform tests to check software meets requirements.

An analysis of computer programs without executing them is performed.

Input fields are supplied with unexpected input and tested.

,Programmers monitor system memory, functional behavior, response times, and overall performance.




How should you store your application user credentials in your application database?

Use application logic to encrypt credentials

Store credentials as clear text

Store credentials using Base 64 encoded

Store credentials using salted hashes

Store credentials using salted hashes



Hashing is a one-way process that converts a password to ciphertext using hash algorithms. Password
salting adds random characters before or after a password prior to hashing to obfuscate the actual
password.




Which software methodology resembles an assembly-line approach?

V-model

Agile model

Iterative model

Waterfall model

Waterfall model



Waterfall model is a continuous software development model in which the development steps flow
steadily downwards.




Which software methodology approach provides faster time to market and higher business value?

Iterative model

Waterfall model

V-model

, Agile model

Agile model



In the agile model, projects are divided into small incremental builds that provide working software at
the end of each iteration and adds value to business.




In Scrum methodology, who is responsible for making decisions on the requirements?

Scrum Team

Product Owner

ScrumMaster

Technical Lead

Product Owner



The Product Owner is responsible for requirements/backlog items and prioritizing them.




What is the reason software security teams host discovery meetings with stakeholders early in the
development life cycle?

To determine how much budget is available for new security tools

To meet the development team

To refactor functional requirements to ensure security is included

To ensure that security is built into the product from the start

To ensure that security is built into the product from the start



To correctly and cost-effectively introduce security into the software development life cycle, it needs to
be done early.

Información del documento

Subido en
24 de abril de 2026
Número de páginas
536
Escrito en
2025/2026
Tipo
Examen
Contiene
Preguntas y respuestas
$11.49

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Vendido
2128
Seguidores
1
Artículos
224
Última venta
6 horas hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes