• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 3 out of 20 pages
Exam (elaborations)

WGU D487 Secure Software Design OA V3 and Practice 2026/2027 – Questions and Answers | 100% Verified | Detailed Rationales – Pass Guaranteed – A+ Graded

Document preview thumbnail
Preview 3 out of 20 pages

WGU D487 OA 2026/2027 – Questions with Answers | 100% Correct | Secure Software Design, Security Architecture, Threat Modeling, Risk Management | Graded A+ Verified | Secure SDLC, Encryption, Access Control, Code Review, Auditing | Detailed Rationales | Verified Correct Answers – Pass Guaranteed – Instant Download

Content preview

WGU OBJECTIVE ASSESSMENT · SECURE SOFTWARE DESIGN


WGU D487 Oa 2026/2027 Test Bank With Questions
And Correct Answers (100% Correct Verified
Answers) D487 Secure Software Design Objective
Assessment 2026/2027 Test Bank V3

A+
Original practice examination aligned to public WGU D487 competencies and Secure Software Design domains.
All questions, options, and rationales are newly authored for 2026/2027 preparation.



A+ QUESTIONS 5 SECTIONS 100%
VERIFIED COVERED RATIONALES



CATEGORIES
■ 1. Secure Software Development Lifecycle (SDL) Methods & Integration
■ 2. Software Requirements, Risks & Threat Modeling
■ 3. Architecture Security Analysis & Secure Design Principles
■ 4. Security Test Planning, Execution & Methodologies
■ 5. Standards, Maturity Models, Testing Effectiveness & Post-Release




STUVIAACTUALEXAM
Passing Score: 75% · Marks: 1 per question · Total: 70 marks

, Section 1 – Secure Software Development Lifecycle (SDL) Methods &
Integration

Q1. A development organization is transitioning from a traditional waterfall process to an iterative model. Security
champions argue that security activities must be embedded in every sprint rather than performed only at the end of major
releases. Which statement best describes the relationship between the Security Development Lifecycle (SDL) and the
Software Development Lifecycle (SDLC)?

A. The SDLC is used only for functional requirements while the SDL handles all non-functional requirements.
B. The SDL is a set of security-focused activities that overlay and enhance the existing SDLC phases.
C. The SDL completely replaces the SDLC with a security-only process.
D. The SDL applies exclusively to the testing phase of the SDLC.
Correct Answer: B
Rationale: The SDL is not a replacement for the SDLC; it is a complementary set of security activities (threat modeling, secure
coding, security testing, etc.) that are integrated into each phase of whatever SDLC methodology the organization uses.


Q2. During a project kickoff for a new customer-facing web application, the security architect insists that a Privacy Impact
Assessment (PIA) be completed before detailed design begins. The product manager questions the timing. Why is
performing a PIA early in the Security Assessment phase considered a best practice?

A. It identifies personal data flows and regulatory obligations so that privacy controls can be designed into the architecture
rather than retrofitted later.
B. It is required only if the application will process payments.
C. It allows the marketing team to prepare privacy-related advertising copy.
D. It replaces the need for any later security testing related to data protection.
Correct Answer: A
Rationale: A PIA conducted early surfaces privacy requirements and compliance obligations (GDPR, CCPA, etc.) while design
decisions are still flexible, preventing costly redesign and ensuring privacy-by-design.


Q3. An Agile team is defining its Definition of Done. The security lead proposes that every user story must include a
security acceptance criterion and that a lightweight threat-modeling review must occur for stories that touch
authentication or data storage. Which principle of secure software development does this practice most directly support?

A. Only the security team is responsible for identifying threats.
B. Threat modeling is performed only once at the beginning of the project.
C. Security activities are integrated continuously into the development process rather than deferred.
D. Security is treated as a separate phase after feature completion.
Correct Answer: C
Rationale: Embedding security acceptance criteria and lightweight threat modeling into the sprint cadence realizes the core SDL
principle that security must be continuous and integrated rather than bolted on at the end.


Q4. A company maintains a large portfolio of legacy applications written in C++ and newer microservices written in
modern languages. Management asks which category of software is generally more susceptible to classic
memory-corruption vulnerabilities such as buffer overflows. Which answer is most accurate?

A. Scripting languages such as Python and JavaScript because they are interpreted.
B. Managed languages such as Java and C# because of their large standard libraries.
C. Languages that require manual memory management, such as C and C++.
D. All languages are equally susceptible if the developer does not follow secure coding guidelines.
Correct Answer: C
Rationale: Languages that give the programmer direct control over memory allocation and bounds checking (C/C++) historically
account for the majority of buffer-overflow and related memory-corruption vulnerabilities.


STUVIAACTUALEXAM | Page 2 of 20

, Q5. In the Microsoft Security Development Lifecycle, the Security Assessment (A1) phase produces several key
deliverables. Which deliverable is primarily intended to help management understand the relative security risk and
potential cost implications of the product under development?

A. The detailed data-flow diagrams.
B. The product risk profile.
C. The final penetration-test report.
D. The source-code static-analysis summary.
Correct Answer: B
Rationale: The product risk profile created in the assessment phase gives stakeholders a high-level view of residual risk, regulatory
exposure, and the relative investment needed for security activities.


Q6. A DevSecOps team wants to ensure that security gates are enforced automatically inside their CI/CD pipeline.
Which practice best illustrates the integration of security into continuous delivery?

A. Relying solely on developer self-certification that code is secure.
B. Blocking a build when SAST findings of high severity are detected and requiring remediation before the pipeline can
proceed.
C. Running a full manual penetration test after every commit.
D. Performing security reviews only on the final release candidate.
Correct Answer: B
Rationale: Automated security gates (SAST, SCA, secret scanning) that fail the build on critical findings enforce security continuously
without relying solely on later manual reviews.


Q7. During an architecture review, a junior engineer asks why the organization bothers with a formal Security
Development Lifecycle when the team already performs code reviews and uses a web-application firewall. Which
response best captures the value of a structured SDL?

A. An SDL systematically injects security activities at each lifecycle stage so that defects are prevented or found earlier,
when they are cheaper to fix.
B. An SDL replaces the need for any external security testing.
C. An SDL guarantees that no vulnerabilities will ever reach production.
D. An SDL is required only for products that handle payment-card data.
Correct Answer: A
Rationale: The primary economic and risk-reduction benefit of an SDL is that security defects are addressed earlier in the lifecycle,
dramatically lowering remediation cost and residual risk.


Q8. A project is following a classic waterfall schedule. The security team is asked when the bulk of threat-modeling work
should occur. According to established SDL practice, which phase is the most appropriate primary window for thorough
threat modeling?

A. During the Architecture / Design phase, once high-level data flows are understood.
B. Continuously after every customer release.
C. Only during the final security review before ship.
D. After the code has been written and unit-tested.
Correct Answer: A
Rationale: Threat modeling is most effective when performed while the architecture is still fluid (A2 Architecture phase), allowing
design-level mitigations rather than expensive code-level patches later.




STUVIAACTUALEXAM | Page 3 of 20

Document information

Uploaded on
September 8, 2026
Number of pages
20
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$16.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
STUVIAACTUALEXAMS
3.5
(179)
Sold
1349
Followers
210
Items
10317
Last sold
1 day ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions