Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU C836 Fundamentals of Information Security – Complete Study Guide & Exam Revision Notes (PDF)

Rating
-
Sold
-
Pages
27
Grade
A+
Uploaded on
24-04-2026
Written in
2025/2026

This WGU C836 Fundamentals of Information Security study guide is a structured, exam-focused revision resource designed to help students understand core cybersecurity principles, threats, controls, and security frameworks used in modern information systems. WGU C836 Fundamentals of Information Security It simplifies complex security concepts into clear, easy-to-revise notes for fast learning and strong exam performance.

Show more Read less

Content preview

C836 - Fundamentals of Information
Security (WGU)
Information Security - CORRECT ANSWER-Protecting an organization's information
and information systems from unauthorized access, use, disclosure, disruption,
modification, or destruction.

Compliance - CORRECT ANSWER-Requirements that are set forth by laws and
industry regulations.

CIA - CORRECT ANSWER-Confidentiality, Integrity, Availability

Confidentiality - CORRECT ANSWER-Refers to our ability to protect our data from
those who are not authorized to use/view it

Integrity - CORRECT ANSWER-The ability to prevent people from changing your data
in an unauthorized or undesirable manner

Availability - CORRECT ANSWER-Refers to the ability to access our data when we
need it

Possession/Control - CORRECT ANSWER-refers to the physical disposition of the
media on which the data is stored. (tape examples where some are encrypted and
some are not)

Authenticity - CORRECT ANSWER-whether you've attributed the data in question to the
proper owner or creator. (altered email that says it's from one person when it's not -
violation of the authenticity of the email)

Utility - CORRECT ANSWER-refers to how useful the data is to you.

Attacks - CORRECT ANSWER-interception, interruption, modification, and
fabrication

Interception - CORRECT ANSWER-attacks that allow unauthorized users to access
your data, applications, or environments. Are primarily attacks against confidentiality

,Interruption - CORRECT ANSWER-attacks that make your assets unusable or
unavailable to you temporarily or permanently. DoS attack on a mail server, for example.
May also affect integrity

Modification - CORRECT ANSWER-attacks involve tampering with our asset. Such
attacks might primarily be considered an integrity attack but could also represent an
availability attack.

Fabrication - CORRECT ANSWER-attacks involve generating data, processes,
communications, or other similar activities with a system. Fabrication attacks primarily
affect integrity but could be considered an availability attack as well.

Risk - CORRECT ANSWER-is the likelihood that an event will occur. To have risk there
must be a
threat and vulnerability.

Threats - CORRECT ANSWER-are any events being man-made, natural or
environmental that could cause damage to assets.

Vulnerabilities - CORRECT ANSWER-are a weakness that a threat event or the threat
agent can take advantage of.

Impact - CORRECT ANSWER-takes into account the value of the asset being
threatened and uses it to calculate risk

Risk Management Process - CORRECT ANSWER-Identify assets, identify threats,
assess vulnerabilities, assess risks, mitigate risks

Defense in Depth - CORRECT ANSWER-Using multiple layers of security to defend
your assets.

Controls - CORRECT ANSWER-are the ways we protect assets. Three different types:
physical, logical, administrative

Physical Controls - CORRECT ANSWER-environment; physical items that protect
assets think locks, doors, guards, and, fences or environmental factors (time)

Logical Controls - CORRECT ANSWER-Sometimes called technical controls, these
protect the systems, networks, and environments that process, transmit, and store our
data

, Administrative Controls - CORRECT ANSWER-based on laws, rules, policies, and
procedures, guidelines, and other items that are "paper" in nature. They are the policies
that organizations create for governance. For example, acceptable use and email use
policies.

Preparation - CORRECT ANSWER-phase of incident response consists of all of the
activities that we can perform, in advance of the incident itself, in order to better enable
us to handle it.

Incident Response Process - CORRECT ANSWER-1. Preparation
2. Detection and Analysis (Identification)
3. Containment
4. Eradication
5. Recovery
6. Post-incident activity: document/Lessons learned

Detection & Analysis - CORRECT ANSWER-where the action begins to happen in our
incident response process. In this phase, we will detect the occurrence of an issue and
decide whether or not it is actually an incident, so that we can respond appropriately to
it.

Containment - CORRECT ANSWER-involves taking steps to ensure that the situation
does not cause any more damage than it already has, or to at least lessen any ongoing
harm.

Eradication - CORRECT ANSWER-attempt to remove the effects of the issue from our
environment.

Recovery - CORRECT ANSWER-restoring devices or data to pre-incident state
(rebuilding systems, reloading applications, backup media, etc.)

Post-incident activity - CORRECT ANSWER-determine specifically what happened, why
it happened, and what we can do to keep it from happening again. (postmortem).

Identity - CORRECT ANSWER-who or what we claim to be. Simply an assertion.

Authentication - CORRECT ANSWER-the act of providing who or what we claim to be.
More technically, the set of methods used to establish whether a claim is true

Written for

Document information

Uploaded on
April 24, 2026
Number of pages
27
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

  • c836
$11.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller
Seller avatar
stevensonjean

Get to know the seller

Seller avatar
stevensonjean Wgu
View profile
Follow You need to be logged in order to follow users or courses
Sold
8
Member since
2 months
Number of followers
1
Documents
224
Last sold
3 weeks ago

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions