WGU D483 SECURITY OPERATIONS
UPDATED ACTUAL EXAM QUESTIONS AND
CORRECT ANSWERS
●● CVSS (Common Vulnerability Scoring System)
Answer: Framework for rating severity of vulnerabilities (0â€"10).
●● NVD (National Vulnerability Database)
Answer: US gov database of CVEs with CVSS scores.
●● Exploit
Answer: Code or technique used to take advantage of a vulnerability.
●● Zero-Day
Answer: A vulnerability not yet known to the vendor or public.
●● SIEM (Security Information and Event Management)
Answer: Centralized system that aggregates and analyzes logs from
multiple sources.
●● Correlation Rule
,Answer: Logic in a SIEM to detect suspicious patterns (e.g., multiple
failed logins + privilege escalation).
●● UEBA (User and Entity Behavior Analytics)
Answer: Detects anomalies by analyzing baseline behavior of
users/devices.
●● Indicator of Compromise (IoC)
Answer: Evidence of malicious activity (e.g., suspicious IP, hash,
domain).
●● Indicator of Attack (IoA)
Answer: Signs of active attack attempts (e.g., privilege escalation
command, lateral movement).
●● Containment
Answer: Stopping the spread of an attack without fully eliminating it.
●● Eradication
Answer: Removing the root cause of an incident (e.g., deleting
malware).
●● Recovery
, Answer: Restoring systems back into production safely.
●● Lessons Learned
Answer: Post-incident review to improve processes.
●● Tabletop Exercise
Answer: Simulated incident walkthrough without affecting production
systems.
●● SOX (Sarbanes-Oxley Act)
Answer: US regulation enforcing financial data integrity and reporting
security.
●● HIPAA (Health Insurance Portability and Accountability Act)
Answer: Protects healthcare data confidentiality and integrity.
●● GDPR (General Data Protection Regulation)
Answer: EU regulation on personal data privacy and security.
●● PCI-DSS (Payment Card Industry Data Security Standard)
Answer: Protects cardholder data in financial transactions.
●● ISO 27001
UPDATED ACTUAL EXAM QUESTIONS AND
CORRECT ANSWERS
●● CVSS (Common Vulnerability Scoring System)
Answer: Framework for rating severity of vulnerabilities (0â€"10).
●● NVD (National Vulnerability Database)
Answer: US gov database of CVEs with CVSS scores.
●● Exploit
Answer: Code or technique used to take advantage of a vulnerability.
●● Zero-Day
Answer: A vulnerability not yet known to the vendor or public.
●● SIEM (Security Information and Event Management)
Answer: Centralized system that aggregates and analyzes logs from
multiple sources.
●● Correlation Rule
,Answer: Logic in a SIEM to detect suspicious patterns (e.g., multiple
failed logins + privilege escalation).
●● UEBA (User and Entity Behavior Analytics)
Answer: Detects anomalies by analyzing baseline behavior of
users/devices.
●● Indicator of Compromise (IoC)
Answer: Evidence of malicious activity (e.g., suspicious IP, hash,
domain).
●● Indicator of Attack (IoA)
Answer: Signs of active attack attempts (e.g., privilege escalation
command, lateral movement).
●● Containment
Answer: Stopping the spread of an attack without fully eliminating it.
●● Eradication
Answer: Removing the root cause of an incident (e.g., deleting
malware).
●● Recovery
, Answer: Restoring systems back into production safely.
●● Lessons Learned
Answer: Post-incident review to improve processes.
●● Tabletop Exercise
Answer: Simulated incident walkthrough without affecting production
systems.
●● SOX (Sarbanes-Oxley Act)
Answer: US regulation enforcing financial data integrity and reporting
security.
●● HIPAA (Health Insurance Portability and Accountability Act)
Answer: Protects healthcare data confidentiality and integrity.
●● GDPR (General Data Protection Regulation)
Answer: EU regulation on personal data privacy and security.
●● PCI-DSS (Payment Card Industry Data Security Standard)
Answer: Protects cardholder data in financial transactions.
●● ISO 27001