Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 2 out of 13 pages
Exam (elaborations)

WGU D487 Secure Software Design (2025–2026 Edition) – 55+ Verified Exam Questions & Answers | Complete Study Pack | A+ Confirmed

Document preview thumbnail
Preview 2 out of 13 pages

The WGU D487 Secure Software Design Exam (2025–2026 Edition) offers over 55 verified and expertly solved questions with detailed explanations aligned with Western Governors University’s latest curriculum standards. This comprehensive study pack focuses on core principles of secure software architecture, threat modeling, risk mitigation, and secure coding best practices. Designed to strengthen students’ understanding of cybersecurity integration in software development, it ensures thorough preparation and academic excellence in the D487 assessment.

Content preview

WGU D487 Secure Software Design Questions 2025 | 55+
(2025–2026 A+ Confirmed) Exam Q&A | Complete Study Pack


The WGU D487 Secure Software Design (2025–2026 Edition) includes 55+ verified
and expertly solved exam questions with detailed answers based on the latest WGU
curriculum standards. This verified Q&A guide is carefully crafted to help students understand
and apply secure coding principles, risk mitigation strategies, and design best practices
effectively.

Introduction​
This latest 2025–2026 A+ verified exam review provides the most up-to-date coverage of
critical topics such as secure coding techniques, software vulnerabilities, threat
modeling, encryption standards, input validation, authentication, authorization,
and error handling. All answers have been expert-reviewed and accuracy verified to
align with WGU’s official competencies for D487.

Answer Format​
Each question features a clear and concise explanation, with the correct answers
highlighted in bold green for easy recognition. The rationales emphasize security
principles, practical examples, and industry best practices in secure software design.
This comprehensive guide ensures thorough understanding and exam readiness for every WGU
D487 learner pursuing excellence.



Questions 1–55
1. What is the primary goal of threat modeling in secure software design?​
a) To increase development speed​
b) To identify potential security threats and vulnerabilities​
c) To reduce code documentation​
d) To simplify user authentication​
b) To identify potential security threats and vulnerabilities​
Rationale: Threat modeling is a structured approach to identify, quantify, and address security
risks early in the software development lifecycle, helping prioritize mitigation strategies.

2. Which of the following is a common vulnerability associated with poor
input validation in web applications?​
a) Cross-Site Scripting (XSS)​
b) Secure Socket Layer (SSL) misconfiguration​
c) Buffer Overflow​
d) Denial of Service (DoS)​
a) Cross-Site Scripting (XSS)​

, Rationale: Poor input validation allows malicious scripts to be injected, leading to XSS attacks
where attackers execute scripts in users' browsers.

3. In secure software design, what does the principle of 'defense in depth'
emphasize?​
a) Relying on a single layer of security​
b) Implementing multiple, overlapping security controls​
c) Focusing solely on encryption​
d) Ignoring access controls​
b) Implementing multiple, overlapping security controls​
Rationale: Defense in depth uses layered security measures, so if one fails, others protect the
system.

4. What is the recommended encryption algorithm for protecting data at
rest in modern applications?​
a) DES (Data Encryption Standard)​
b) AES-256 (Advanced Encryption Standard)​
c) MD5​
d) RC4​
b) AES-256 (Advanced Encryption Standard)​
Rationale: AES-256 is a symmetric encryption standard recommended for data at rest due to its
robust security and widespread adoption.

5. Which secure coding practice helps prevent SQL injection attacks?​
a) Using prepared statements or parameterized queries​
b) Storing passwords in plain text​
c) Allowing direct user input in queries​
d) Disabling input sanitization​
a) Using prepared statements or parameterized queries​
Rationale: Prepared statements separate SQL code from user input, preventing malicious code
injection.

6. What is the purpose of 'least privilege' in secure software design?​
a) To grant all users full system access​
b) To limit user access to only what is necessary for their role​
c) To increase user permissions over time​
d) To eliminate authentication requirements​
b) To limit user access to only what is necessary for their role​
Rationale: The principle of least privilege minimizes damage from compromised accounts by
restricting unnecessary permissions.

7. Which threat modeling technique involves creating data flow diagrams?​
a) STRIDE​
b) PASTA​
c) DREAD​
d) Attack Trees​

Document information

Uploaded on
October 23, 2025
Number of pages
13
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$16.00

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
BestSellerStuvia
3.6
(691)
Sold
4869
Followers
2083
Items
6436
Last sold
1 hour ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions