Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 91 pages
Exam (elaborations)

WGU D488 Cybersecurity Architecture & Engineering Final Exam Test Bank (2026/2027) – Verified Q&A, Complete Rationales & Zero Trust Architecture Principles (Grade A+)

Document preview thumbnail
Preview 4 out of 91 pages

WGU D488 Cybersecurity Architecture & Engineering Final Exam Test Bank (2026/2027) – Verified Q&A, Complete Rationales & Zero Trust Architecture Principles (Grade A+)

Content preview

WGU D488 FINAL EXAM TEST BANK (2026/2027)
Cybersecurity Architecture & Engineering | 200
Verified Q&A with Rationales | A+ Graded



SECTION 1: NETWORK & APPLICATION SECURITY




1. A security team notices traffic coming from a country where the
organization does not have any business operations. Which of the
following could this be an indicator of?

A) High call volume
B) Odd network traffic
C) Geographic anomalies
D) Unauthorized changes

Correct Answer: C) Geographic anomalies

Rationale: Geographic anomalies refer to unexpected traffic patterns
originating from locations where the organization has no legitimate
presence, often signaling reconnaissance, policy violations, or potential
compromise .




2. A network technician needs to block several known malicious IP
addresses. Which type of rule should be created?

,A) Signature rules
B) Firewall rules
C) Behavior rules
D) Data loss prevention (DLP) rules

Correct Answer: B) Firewall rules

Rationale: Firewalls operate by enforcing rules that control incoming and
outgoing network traffic. Blocking traffic from specific malicious IP addresses
is a direct use of firewall functionality .




3. A security team recently enabled public access to a web application.
Developers report SQL injection attacks. Which solution should be
deployed to block these attacks?

A) Virtual Private Network (VPN)
B) Security Information and Event Management (SIEM)
C) Web Application Firewall (WAF)
D) Secure Shell (SSH)

Correct Answer: C) Web Application Firewall (WAF)

Rationale: A WAF is specifically designed to protect web applications by
filtering and monitoring HTTP traffic, blocking SQL injection attacks and
other web-based threats .




4. External contractors are using personal laptops to access the
corporate network. How can the organization prevent unapproved
devices from connecting?

A) Implementing a DMZ
B) Installing a hardware security module

,C) Implementing port security
D) Deploying a software firewall

Correct Answer: C) Implementing port security

Rationale: Port security restricts which devices can connect to a switch port
based on MAC addresses, effectively preventing unapproved devices from
accessing the network .




5. A publishing company needs intrusion detection, spam filtering,
content filtering, and antivirus with minimal infrastructure. Which
solution is most appropriate?

A) Anti-spam gateway
B) Proxy server
C) Unified Threat Management (UTM) appliance
D) Web Application Firewall (WAF)

Correct Answer: C) Unified Threat Management (UTM) appliance

Rationale: A UTM appliance combines multiple security functions (firewall,
intrusion detection, spam filtering, content filtering, antivirus) into a single
device, requiring minimal infrastructure .




6. The security team wants to deploy an IDS using an existing
signature database. Which detection technique should be used?

A) Intrusion detection
B) Deep packet inspection
C) Signature-based detection
D) Intrusion prevention

, Correct Answer: C) Signature-based detection

Rationale: Signature-based detection relies on a database of known attack
patterns to identify threats, making it the appropriate technique when a
signature database is already available .




7. After a security breach during deployment, the security team needs
a failback option for future application updates. Which should be
implemented?

A) Code scanner
B) Code signing
C) Versioning
D) Security Requirements Traceability Matrix (SRTM)

Correct Answer: C) Versioning

Rationale: Versioning allows the organization to roll back to a previous stable
version if a deployment causes issues, providing a reliable failback option .




8. A software development team needs mobile application builds
trusted by various devices. What should be implemented?

A) Code scanning
B) Regression testing
C) Continuous delivery
D) Code signing

Correct Answer: D) Code signing

Document information

Uploaded on
August 10, 2026
Number of pages
91
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$33.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
CornelWest
3.7
(250)
Sold
1580
Followers
1128
Items
12247
Last sold
13 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions