Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 42 pages
Exam (elaborations)

WGU D320 Managing Cloud Security PA 2026/2027 – 70+ Questions & Answers, Cloud Data, IAM, Cryptography, Risk, GDPR, BC/DR & SDLC | Western Governors University

Document preview thumbnail
Preview 4 out of 42 pages

This comprehensive WGU D320 Managing Cloud Security Pre-Assessment (PA) 2026/2027 document contains 70+ exam-style questions with answers across 42 pages. It provides focused preparation in cloud data security, cloud architecture, virtualization, identity and access management, cryptography, network security, risk management, compliance, incident response, business continuity and disaster recovery, application security, and secure software development. The questions are primarily scenario based, requiring students to select appropriate technologies, controls, processes, regulatory requirements, and risk responses for realistic cloud environments. A major portion covers cloud data security and the cloud data lifecycle. Students review Create, Share, Use, and Destroy concepts alongside export/import restrictions, egress monitoring, RAID and striping, ephemeral storage, privacy notices, password hashing, anonymization, labeling, structured data, Information Rights Management (IRM), replication restrictions, crypto-shredding, and secure destruction of solid-state drives. The material also examines how organizations can protect sensitive and personally identifiable information throughout its lifecycle. The cloud architecture and virtualization material examines hypervisors, orchestration, hardware abstraction, virtualization toolsets, management planes, loosely coupled clusters, distributed resource scheduling, NIC teaming, metered services, multi-cloud environments, community clouds, interoperability, resiliency, reliability and vendor lock-in. Students are also tested on practical cloud security controls such as network security groups, geofencing, hardened virtual machines, zero trust, secrets management and secure administration of API tokens. Cybersecurity monitoring and infrastructure protection receive significant attention through SIEM, IDS, IPS, vulnerability scanners, TLS, key escrow, HSMs, full-disk encryption and secure remote administration. The questions distinguish intrusion detection from intrusion prevention, examine SIEM analysis and software-defined networking control planes, and assess the use of vulnerability scanning to identify known threats and misconfigurations. Cryptographic material includes password hashing, encryption, key management, protection against on-path attacks and secure storage of cryptographic secrets. The document provides extensive coverage of governance, privacy, compliance and cloud law. Topics include the General Data Protection Regulation (GDPR), Federal Risk and Authorization Management Program (FedRAMP), Clarifying Lawful Overseas Use of Data (CLOUD) Act, Payment Card Industry Data Security Standard (PCI DSS), Generally Accepted Privacy Principles (GAPP), Export Administration Regulations (EAR), and the Wassenaar Arrangement. Questions address consent, privacy notices, cross-border data issues, regulatory communication and government cloud requirements. Students also review business continuity, disaster recovery and IT service management through concepts such as Recovery Time Objective (RTO), availability management, release management, BC/DR toolkits, secondary communication channels, generators, disaster-recovery exercises and dry runs. Incident-response and forensic topics include electronic discovery, chain of custody, evidence documentation, forensic investigations and communication with customers or regulators following service interruptions and compliance-impacting events. Application and software security are covered through the OWASP Top 10, API security, web application firewalls, secure SDLC practices and penetration testing. The material includes broken access control, cryptographic failures, black-box testing, quality assurance, API rate limiting, manual software updates, Waterfall development, requirements definition, CSRF tokens and reverse-proxy functionality. These topics connect application-development decisions with the security requirements of cloud-hosted systems. The final portion emphasizes enterprise risk, auditing and vendor management. Students distinguish risk appetite, avoidance, acceptance, mitigation and other risk-management concepts; perform conceptual review of gap analysis and audit scope limitations; and differentiate contractual instruments such as Service Level Agreements (SLAs) and Master Service Agreements (MSAs). The document therefore combines technical cloud-security knowledge with the governance, legal and operational concepts needed for D320 assessment preparation. Reference Context: The document explicitly references recognized frameworks, regulations and standards including GDPR, FedRAMP, PCI DSS, GAPP, the CLOUD Act, EAR, Wassenaar Arrangement and OWASP Top 10. However, the uploaded material does not provide a formal bibliography identifying a particular textbook, academic book, or peer-reviewed journal as its direct source. Assigning an unsupported book or journal citation would therefore be inaccurate. Relevant Students: WGU D320 students, Western Governors University cybersecurity students, cloud computing students, information technology students, students preparing for the D320 Pre-Assessment or Objective Assessment, cloud security learners, cybersecurity professionals studying cloud governance, and students reviewing IAM, cryptography, cloud architecture, GDPR, risk management, incident response and BC/DR. Keywords: WGU D320, WGU D320 Managing Cloud Security, D320 Managing Cloud Security, D320 PA, D320 pre assessment, D320 questions and answers, WGU D320 exam 2026, WGU D320 exam 2027, D320 study guide, D320 practice questions, cloud security exam, cloud data lifecycle, cloud data security, cloud architecture, virtualization security, hypervisor, cloud orchestration, IAM cloud security, zero trust, secrets management, SIEM, IDS IPS, vulnerability scanning, cryptography, TLS, key escrow, HSM, full disk encryption, GDPR, FedRAMP, CLOUD Act, PCI DSS, GAPP, OWASP Top 10, API security, CSRF, web application firewall, business continuity, disaster recovery, RTO, chain of custody, electronic discovery, risk management, vendor lock in, SLA, MSA, Western Governors University

Content preview

WGU PA D320 2026/2027 Exam
Questions and Answers |
Already Graded A+



Which phase of the cloud data life cycle requires adherence to export

and import restrictions, including Export Administration Regulations

(EAR) and the Wassenaar Arrangement?




Create

Share

Use


Destroy - ANSWER ✔✔Share

,Why is the striping method of storing data used in most redundant array

of independent disks (RAID) configurations?




It prevents outages and attacks from occurring in a cloud environment.

It prevents data from being recovered once it is destroyed using crypto-

shredding.

It allows data to be safely distributed and stored in a common

centralized location.

It allows efficient data recovery as even if one drive fails, other drives fill

in the missing data. - ANSWER ✔✔It allows efficient data recovery as

even if one drive fails, other drives fill in the missing data.

What is the purpose of egress monitoring tools?




They are used to convert a given set of data or information into a

different value.

They are used to prevent data from going outside the control of an

organization.

They are used to create data during the Create phase of the cloud data

life cycle.

,They are used to remove data during the Destroy phase of the cloud

data life cycle. - ANSWER ✔✔They are used to prevent data from

going outside the control of an organization.

A company is looking at different types of cloud storage options. One of

the threats to cloud storage that the company foresees is the possibility

of losing forensic artifacts in the event of an incident response

investigation.

Which type of cloud storage has the highest risk of losing forensic

artifacts in the event of an incident response investigation?




File-based

Long-term

Block


Ephemeral - ANSWER ✔✔Ephemeral


A manager is made aware of a customer complaint about how an

application developed by the company collects personal and

environmental information from the devices it is installed on.




3
COPYRIGHT©JOSHCLAY 2025/2026. YEAR PUBLISHED 2026. COMPANY REGISTRATION NUMBER: 619652435. TERMS OF USE. PRIVACY
STATEMENT. ALL RIGHTS RESERVED

, Which document should the manager refer to in order to determine if the

company has properly disclosed information about what data it collects

from this application's users?




Retention policy

Breach notification

Privacy notice


Denial of service - ANSWER ✔✔Privacy notice


An organization needs to store passwords in a database securely. The

data should not be available to system administrators.

Which technique should the organization use?




Encryption

Hashing

Encoding


Masking - ANSWER ✔✔Hashing

Document information

Uploaded on
August 20, 2026
Number of pages
42
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$18.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
JOSHCLAY
3.5
(83)
Sold
387
Followers
16
Items
20447
Last sold
3 days ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions