WGU D488 Cybersecurity Architecture &
Engineering Final Exam Test Bank Actual
2026/2027 – Complete Exam-Style
Questions | 100% Verified – Pass
Guaranteed – A+ Graded MOST RECENT
1. A security analyst notices an unknown IP address
successfully logging on to the company's Secure Shell (SSH)
server. Which potential vulnerability is the company facing?
A. Enumeration
B. Exfiltration
C. Weak passwords
D. Unpatched software
Answer: C. Weak passwords
Explanation: Unauthorized SSH access from an unknown IP
address is often the result of an attacker exploiting weak or
compromised passwords to gain access .
2. A government agency planning a hybrid cloud deployment
needs strict controls to label classified data and grant access
based on the user's security classification. Which access
control model should be used?
A. Role-Based Access Control (RBAC)
B. Mandatory Access Control (MAC)
C. Attribute-Based Access Control (ABAC)
, D. Discretionary Access Control (DAC)
Answer: B. Mandatory Access Control (MAC)
Explanation: MAC is the model used in high-security environments
like government and military systems where access is based on
system-enforced security labels (e.g., Top Secret, Confidential) and
users cannot change access controls .
3. A company wants to protect sensitive data stored on its
storage devices and ensure it is secure from unauthorized
access, even in the event of a breach. Which security
technology will provide this protection?
A. Data Loss Prevention (DLP)
B. Encryption
C. Firewall
D. Intrusion Detection System (IDS)
Answer: B. Encryption
Explanation: Encryption protects data at rest by rendering it
unreadable to unauthorized users. Even if the data is exfiltrated or
accessed, it cannot be understood without the appropriate
decryption keys .
4. A project manager has identified multiple potential risks
for a project. What is the next step in the risk management
life cycle?
A. Review
B. Assess
C. Control
D. Identify
, Answer: B. Assess
Explanation: After risks have been identified, the next step in the
risk management process is to assess them. This involves
analyzing and prioritizing the risks based on their potential impact
and likelihood .
5. A company has enabled public access to a web application,
and the developers report it has received several Structured
Query Language (SQL) injection attacks. Which solution
should be deployed to block these attacks?
A. Virtual Private Network (VPN)
B. Security Information and Event Management (SIEM)
C. Web Application Firewall (WAF)
D. Secure Socket Shell (SSH)
Answer: C. Web Application Firewall (WAF)
Explanation: A WAF operates at the application level and is
specifically designed to protect web applications by examining
requests and preventing attacks like SQL injection, cross-site
scripting (XSS), and cross-site request forgery (CSRF) .
Questions 1–20: Risk Management & Governance
1. A security analyst discovers that a critical server has not been
patched for 6 months. Which risk management strategy is most
appropriate to address this vulnerability?
A. Risk avoidance
B. Risk transfer
C. Risk mitigation
, D. Risk acceptance
Answer: C (Mitigation involves applying the patch to reduce the
risk.)
2. A company decides to purchase cyber insurance to cover
potential losses from a data breach. This is an example of which
risk treatment?
A. Avoidance
B. Mitigation
C. Transfer
D. Acceptance
Answer: C
3. After a full risk assessment, the security team determines that
the cost of protecting a low-value asset exceeds the asset's value.
What is the most appropriate risk response?
A. Mitigate
B. Transfer
C. Avoid
D. Accept
Answer: D
4. What is the correct order of the risk management lifecycle?
A. Assess → Identify → Control → Review
B. Identify → Assess → Control → Review
C. Control → Identify → Assess → Review
D. Review → Assess → Identify → Control
Answer: B
Engineering Final Exam Test Bank Actual
2026/2027 – Complete Exam-Style
Questions | 100% Verified – Pass
Guaranteed – A+ Graded MOST RECENT
1. A security analyst notices an unknown IP address
successfully logging on to the company's Secure Shell (SSH)
server. Which potential vulnerability is the company facing?
A. Enumeration
B. Exfiltration
C. Weak passwords
D. Unpatched software
Answer: C. Weak passwords
Explanation: Unauthorized SSH access from an unknown IP
address is often the result of an attacker exploiting weak or
compromised passwords to gain access .
2. A government agency planning a hybrid cloud deployment
needs strict controls to label classified data and grant access
based on the user's security classification. Which access
control model should be used?
A. Role-Based Access Control (RBAC)
B. Mandatory Access Control (MAC)
C. Attribute-Based Access Control (ABAC)
, D. Discretionary Access Control (DAC)
Answer: B. Mandatory Access Control (MAC)
Explanation: MAC is the model used in high-security environments
like government and military systems where access is based on
system-enforced security labels (e.g., Top Secret, Confidential) and
users cannot change access controls .
3. A company wants to protect sensitive data stored on its
storage devices and ensure it is secure from unauthorized
access, even in the event of a breach. Which security
technology will provide this protection?
A. Data Loss Prevention (DLP)
B. Encryption
C. Firewall
D. Intrusion Detection System (IDS)
Answer: B. Encryption
Explanation: Encryption protects data at rest by rendering it
unreadable to unauthorized users. Even if the data is exfiltrated or
accessed, it cannot be understood without the appropriate
decryption keys .
4. A project manager has identified multiple potential risks
for a project. What is the next step in the risk management
life cycle?
A. Review
B. Assess
C. Control
D. Identify
, Answer: B. Assess
Explanation: After risks have been identified, the next step in the
risk management process is to assess them. This involves
analyzing and prioritizing the risks based on their potential impact
and likelihood .
5. A company has enabled public access to a web application,
and the developers report it has received several Structured
Query Language (SQL) injection attacks. Which solution
should be deployed to block these attacks?
A. Virtual Private Network (VPN)
B. Security Information and Event Management (SIEM)
C. Web Application Firewall (WAF)
D. Secure Socket Shell (SSH)
Answer: C. Web Application Firewall (WAF)
Explanation: A WAF operates at the application level and is
specifically designed to protect web applications by examining
requests and preventing attacks like SQL injection, cross-site
scripting (XSS), and cross-site request forgery (CSRF) .
Questions 1–20: Risk Management & Governance
1. A security analyst discovers that a critical server has not been
patched for 6 months. Which risk management strategy is most
appropriate to address this vulnerability?
A. Risk avoidance
B. Risk transfer
C. Risk mitigation
, D. Risk acceptance
Answer: C (Mitigation involves applying the patch to reduce the
risk.)
2. A company decides to purchase cyber insurance to cover
potential losses from a data breach. This is an example of which
risk treatment?
A. Avoidance
B. Mitigation
C. Transfer
D. Acceptance
Answer: C
3. After a full risk assessment, the security team determines that
the cost of protecting a low-value asset exceeds the asset's value.
What is the most appropriate risk response?
A. Mitigate
B. Transfer
C. Avoid
D. Accept
Answer: D
4. What is the correct order of the risk management lifecycle?
A. Assess → Identify → Control → Review
B. Identify → Assess → Control → Review
C. Control → Identify → Assess → Review
D. Review → Assess → Identify → Control
Answer: B