Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 56 pages
Exam (elaborations)

WGU D488 Cybersecurity Architecture & Engineering Final Exam Test Bank Actual 2026/2027 – Complete Exam-Style Questions | 100% Verified – Pass Guaranteed – A+ Graded

Document preview thumbnail
Preview 4 out of 56 pages

WGU D488 Cybersecurity Architecture & Engineering Final Exam Test Bank Actual 2026/2027 – Complete Exam-Style Questions | 100% Verified – Pass Guaranteed – A+ Graded

Content preview

WGU D488 Cybersecurity Architecture &
Engineering Final Exam Test Bank Actual
2026/2027 – Complete Exam-Style
Questions | 100% Verified – Pass
Guaranteed – A+ Graded MOST RECENT

1. A security analyst notices an unknown IP address
successfully logging on to the company's Secure Shell (SSH)
server. Which potential vulnerability is the company facing?

 A. Enumeration
 B. Exfiltration
 C. Weak passwords
 D. Unpatched software

Answer: C. Weak passwords
Explanation: Unauthorized SSH access from an unknown IP
address is often the result of an attacker exploiting weak or
compromised passwords to gain access .

2. A government agency planning a hybrid cloud deployment
needs strict controls to label classified data and grant access
based on the user's security classification. Which access
control model should be used?

 A. Role-Based Access Control (RBAC)
 B. Mandatory Access Control (MAC)
 C. Attribute-Based Access Control (ABAC)

, D. Discretionary Access Control (DAC)

Answer: B. Mandatory Access Control (MAC)
Explanation: MAC is the model used in high-security environments
like government and military systems where access is based on
system-enforced security labels (e.g., Top Secret, Confidential) and
users cannot change access controls .

3. A company wants to protect sensitive data stored on its
storage devices and ensure it is secure from unauthorized
access, even in the event of a breach. Which security
technology will provide this protection?

 A. Data Loss Prevention (DLP)
 B. Encryption
 C. Firewall
 D. Intrusion Detection System (IDS)

Answer: B. Encryption
Explanation: Encryption protects data at rest by rendering it
unreadable to unauthorized users. Even if the data is exfiltrated or
accessed, it cannot be understood without the appropriate
decryption keys .

4. A project manager has identified multiple potential risks
for a project. What is the next step in the risk management
life cycle?

 A. Review
 B. Assess
 C. Control
 D. Identify

, Answer: B. Assess
Explanation: After risks have been identified, the next step in the
risk management process is to assess them. This involves
analyzing and prioritizing the risks based on their potential impact
and likelihood .

5. A company has enabled public access to a web application,
and the developers report it has received several Structured
Query Language (SQL) injection attacks. Which solution
should be deployed to block these attacks?

 A. Virtual Private Network (VPN)
 B. Security Information and Event Management (SIEM)
 C. Web Application Firewall (WAF)
 D. Secure Socket Shell (SSH)

Answer: C. Web Application Firewall (WAF)
Explanation: A WAF operates at the application level and is
specifically designed to protect web applications by examining
requests and preventing attacks like SQL injection, cross-site
scripting (XSS), and cross-site request forgery (CSRF) .

Questions 1–20: Risk Management & Governance

1. A security analyst discovers that a critical server has not been
patched for 6 months. Which risk management strategy is most
appropriate to address this vulnerability?

 A. Risk avoidance
 B. Risk transfer
 C. Risk mitigation

,  D. Risk acceptance
Answer: C (Mitigation involves applying the patch to reduce the
risk.)

2. A company decides to purchase cyber insurance to cover
potential losses from a data breach. This is an example of which
risk treatment?

 A. Avoidance
 B. Mitigation
 C. Transfer
 D. Acceptance
Answer: C

3. After a full risk assessment, the security team determines that
the cost of protecting a low-value asset exceeds the asset's value.
What is the most appropriate risk response?

 A. Mitigate
 B. Transfer
 C. Avoid
 D. Accept
Answer: D

4. What is the correct order of the risk management lifecycle?

 A. Assess → Identify → Control → Review
 B. Identify → Assess → Control → Review
 C. Control → Identify → Assess → Review
 D. Review → Assess → Identify → Control
Answer: B

Document information

Uploaded on
July 24, 2026
Number of pages
56
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$28.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Sold
3
Followers
0
Items
334
Last sold
4 days ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions