Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Document preview thumbnail
Voorbeeld 4 van de 109 pagina's
Tentamen (uitwerkingen)

WGU D484 Study Questions with Correct Answers Questions and Correct Answers/ Latest Update / Already Graded

Document preview thumbnail
Voorbeeld 4 van de 109 pagina's

WGU D484 Study Questions with Correct Answers Questions and Correct Answers/ Latest Update / Already Graded

Voorbeeld van de inhoud

Page |1


WGU D484 Study Questions with Correct
Answers Questions and Correct Answers/
Latest Update / Already Graded
A security professional is researching the latest vulnerabilities that
have been released. Where is a good resource they can go to in order
to look at these?

A.CVSS

B.CVE

C.NVD

D.ISSAF

Ans: C.NVD


To learn more about the vulnerabilities, you can often click on
CVE names, which have hyperlinks to the record in the National
Vulnerability Database (NVD). Once there, you can read more
details.


A new penetration tester is creating a strategy for their first upcoming
process and wants to follow the standard process. What step takes
place after planning?

A.Scanning

B.Recon

All rights reserved © 2025/ 2026 |

, Page |2

C.Gaining access

D.Analysis

Ans: B.Recon


A marketing coordinator meets with many high-profile companies to
discuss penetration testing engagements. Which of the following is
NOT something they might want to show to ensure confidence and
trust in their team?

A.Credentials

B.Pre-Discovered information

C.Background check

D.Clearances

Ans: B.Pre-Discovered information


Penetration testing companies should never do work before
entering into an agreement including scope. This could possibly
lead to prosecution.


PTES

Ans: The Penetration Testing Execution Standard (PTES) has
seven main sections that provide a comprehensive overview of
the proper structure of a complete PenTest. Some of the

All rights reserved © 2025/ 2026 |

, Page |3

sections include details on topics such as pre -engagement
interactions, threat modeling, vulnerability analysis,
exploitation, and reporting.


ISSAF

Ans: The ISSAF contains a list of 14 documents that relate to
PenTesting, such as guidelines on business continuity and
disaster recovery along with legal and regulatory compliance.


A penetration tester has been contracted to do a test for a hospital and
is looking at computerized electronic patient records. What are these
referred to as?

A.HIPAA

B.e-PHI

C.CCPA

D.GDPR

Ans: B.e-PHI


Computerized electronic patient records are referred to as
electronic protected health information (e-PHI). With HIPAA,
the e-PHI of any patient must be protected from exposure, or
the organization can face a hefty fine.



All rights reserved © 2025/ 2026 |

, Page |4


The Health Insurance Portability and Accountability Act
(HIPAA) is a law that mandates rigorous requirements for
anyone that deals with patient information.


A penetration tester is conducting a PCI DSS compliance report for a
large company that does ten million transactions a year. What level
should they comply with?

A.1

B.2

C.3

D.4

Ans: A.1


Level 1 is a large merchant with over six million transactions a
year and must have an external auditor perform the assessment
by an approved Qualified Security Assessor (QSA).
Level 2 is a merchant with one to six million transactions a year.
Both levels 1 and 2 must complete a Report on Compliance
(RoC).
Level 3 is a merchant with 20,000 to one million transactions a
year. Levels 2 through 4 can either have an external auditor or
submit a self-test that proves they are taking active steps to
secure the infrastructure.


All rights reserved © 2025/ 2026 |

Documentinformatie

Geüpload op
9 augustus 2026
Aantal pagina's
109
Geschreven in
2026/2027
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden
$15.99

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
Expert1
4.5
(8)
Verkocht
65
Volgers
3
Items
7594
Laatst verkocht
1 maand geleden



Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen