WGU D488 OBJECTIVE ASSESSMENT 2 NEWEST 2025
ACTUAL EXAM TEST BANK| D488 CYBERSECURITY
ARCHITECTURE AND ENGINEERING EXAM WITH
COMPLETE 300 REAL EXAM QUESTIONS AND CORRECT
DETAILED ANSWERS (VERIFIED ANSWERS) GRADED A+
(BRAND NEW!!)
A company operates a customer service call center with over one
hundred agents taking inbound sales calls. After a recent security breach,
the security team believes that one or more agents have been stealing
customer credit card details. Which solution will defend against this
issue?
A - Security information and event management (SIEM)
B - File integrity monitoring (FIM)
C - Data loss prevention (DLP)
D - Intrusion detection system (IDS) - Correct Answer - C - Data loss
prevention (DLP)
The security team has noticed that several endpoints on the network
have been infected with malware. Leadership has tasked the security
team with identifying these attacks in the future. Which solution will
notify the team automatically in the event of future malware variants
invading the network?
A - Security information and event management (SIEM) alerts
B - Data loss prevention (DLP) alerts
C - Antivirus alerts
D - Syslog alerts - Correct Answer - C - Antivirus alerts
pg. 1
,Page 2 of 199
An engineer has noticed a degradation in system performance and alerts
regarding high central processing unit (CPU) usage on multiple virtual
machines in the environment. Further investigation shows that several
unknown processes are running on the affected systems. What is the
explanation for the degradation in system performance and alerts
regarding high central processing unit (CPU) usage?
A -Misconfigured firewall
B - Overly permissive web application firewall (WAF) rules
C - Outdated anti-malware signatures
D - Incorrect file permissions - Correct Answer - C - Outdated anti-
malware signatures
A financial services company has experienced several incidents of data
breaches in recent months. The company has analyzed the indicators of
compromise and determined that the data breaches were caused by
insider threats. The company has decided to implement hardening
techniques and endpoint security controls to mitigate the risk. What
should be used to prevent data breaches caused by insider threats based
on the indicators of compromise?
A - Network monitoring
B - Intrusion detection systems (IDS)
C - Data loss prevention (DLP)
D - Access control systems (ACS) - Correct Answer - C - Data loss
prevention (DLP)
The cybersecurity analyst at a software company conducted a
vulnerability assessment to identify potential security risks to the
pg. 2
,Page 3 of 199
organization and discovered multiple vulnerabilities on the company's
webpage. The analyst then provided the results to the chief information
security officer (CISO), who then decided not to fix the discrepancies
due to the vulnerabilities being outside of the organization's resources.
Which risk mitigation strategy is demonstrated in this scenario?
A - Accept
B - Mitigate
C - Avoid
D - Transfer - Correct Answer - A - Accept
A company wants to implement a policy to reduce the risk of
unauthorized access to sensitive information. Which policy should be
implemented?
A - Least privilege
B - Separation of duties
C - Job rotation
D - Data encryption - Correct Answer - A - Least privilege
A company is developing a cybersecurity risk management program and
wants to establish metrics to measure the program's effectiveness. What
should the company consider?
A - Key performance indicators (KPIs)
B - Key risk indicators (KRIs)
C - Risk appetite
D - Risk tolerance - Correct Answer - A - Key performance indicators
(KPIs)
pg. 3
, Page 4 of 199
A financial institution is concerned about the potential risks associated
with unauthorized access to sensitive data on its servers. The company
has decided to implement hardening techniques and endpoint security
controls to mitigate the risk. Which technique will provide a secure
operating system with access controls for user applications?
A - SELinux
B - Multifactor authentication (MFA) for user accounts
C - Regular vulnerability assessments and penetration testing
D - Windows 10 - Correct Answer - A - SELinux
A company is concerned about the security of its network and wants to
implement a control that will allow only preapproved software to run on
its endpoints. Which control should the company implement to achieve
this goal?
A - Allowlisting
B - Blacklisting
C - Encryption
D - Multifactor authentication - Correct Answer - A - Allowlisting
A company is concerned about the potential risks associated with
unauthorized access to its cloud infrastructure. The company has decided
to implement security controls to mitigate the risk. Which actions can
ensure the integrity and authenticity of the cloud infrastructure and
applications?
A - Implementing attestation services
B - Implementing a load balancer to distribute traffic
pg. 4