Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 42 pages
Exam (elaborations)

WGU Course C836 - Fundamentals of Information Security Quizlet by Brian MacFarlane EXAM QUESTIONS WITH CORRECT ANSWERS||100%GUARANTEED PASS||A+ GRADED!!||UPDATED 2025/2026||LATEST VERSION|

Document preview thumbnail
Preview 4 out of 42 pages

WGU Course C836 - Fundamentals of Information Security Quizlet by Brian MacFarlane EXAM QUESTIONS WITH CORRECT ANSWERS||100%GUARANTEED PASS||A+ GRADED!!||UPDATED 2025/2026||LATEST VERSION| Which of the following is not a best practice for password security? A Educating users on password management B Creating a password policy C Enforcing complex password requirements D Forcing password expiration intervals E Teaching users how to manually sync passwords between systems - ANSWER E Which social engineering technique involves impersonating someone else to convince the target to perform some action that they wouldn't normally do for a stranger? A Spear phishing B Tailgating C Pretexting D Phishing - ANSWER C You swipe your key card to gain access to a secure area of the building. As you pass through the door, you notice someone right behind you. You don't recall that he was walking behind you a moment ago, nor do you see a key card in his hand. What social engineering technique is demonstrated in this example? A Spear phishing B Tailgating C Pretexting D Phishing - ANSWER B Your IT department has implemented a comprehensive defense in depth strategy to protect your company resources. The buildings are protected by key card swipes and video surveillance, logins and passwords are required for access to any digital resource, and your network and workstation equipment is properly configured, patched, and protected. Policies are in place to recover from any major security risk. What single entity can invalidate all of these efforts? A person B corrupt file C virus D USB drive E bad hard drive - ANSWER A Which of the options below is an example of an effective Security Awareness, Training, and Education (SATE) strategy? A 3-hour CBT course with a completion certificate, required yearly B periodic email that references the Employee Handbook and includes a link to a required quiz C biannual conference room training session that offers free coffee and is four hours long D daily "security check" question that, if answered correctly, enters the user into a giveaway - ANSWER D Your company has an office full of expensive computer equipment to protect. You recommend a variety of approaches, including a security guard stationed at the entrance, a high fence around the property, and key card entry to all nonpublic areas. What security concept are you recommending to protect your company's assets? A Nonrepudiation B Capability-based security C Access control lists D Principle of least privilege E Defense in depth - ANSWER E

Content preview

WGU Course C836 - Fundamentals of
Information Security Quizlet by Brian
MacFarlane EXAM QUESTIONS WITH
CORRECT
ANSWERS||100%GUARANTEED
PASS||A+ GRADED!!||UPDATED
2025/2026||<LATEST VERSION>|
Which of the following is not a best practice for password security?

A Educating users on password management
B Creating a password policy
C Enforcing complex password requirements
D Forcing password expiration intervals
E Teaching users how to manually sync passwords between systems - ANSWER ✓
E

Which social engineering technique involves impersonating someone else to
convince the target to perform some action that they wouldn't normally do for a
stranger?

A Spear phishing
B Tailgating
C Pretexting
D Phishing - ANSWER ✓ C

You swipe your key card to gain access to a secure area of the building. As you
pass through the door, you notice someone right behind you. You don't recall that
he was walking behind you a moment ago, nor do you see a key card in his hand.
What social engineering technique is demonstrated in this example?

A Spear phishing

,B Tailgating
C Pretexting
D Phishing - ANSWER ✓ B

Your IT department has implemented a comprehensive defense in depth strategy
to protect your company resources. The buildings are protected by key card swipes
and video surveillance, logins and passwords are required for access to any digital
resource, and your network and workstation equipment is properly configured,
patched, and protected. Policies are in place to recover from any major security
risk. What single entity can invalidate all of these efforts?

A person
B corrupt file
C virus
D USB drive
E bad hard drive - ANSWER ✓ A

Which of the options below is an example of an effective Security Awareness,
Training, and Education (SATE) strategy?

A 3-hour CBT course with a completion certificate, required yearly
B periodic email that references the Employee Handbook and includes a link to a
required quiz
C biannual conference room training session that offers free coffee and is four
hours long
D daily "security check" question that, if answered correctly, enters the user into a
giveaway - ANSWER ✓ D

Your company has an office full of expensive computer equipment to protect. You
recommend a variety of approaches, including a security guard stationed at the
entrance, a high fence around the property, and key card entry to all nonpublic
areas. What security concept are you recommending to protect your company's
assets?

A Nonrepudiation
B Capability-based security
C Access control lists
D Principle of least privilege
E Defense in depth - ANSWER ✓ E

, You work for a small company that has just upgraded its data servers. The new
servers are up and running, and normal operations have resumed. The company
plans to sell its old equipment. What is your primary concern before they auction
off the old hardware?

A Data redundancy
B Data availability
C Data backups
D Residual data - ANSWER ✓ D

What planning process ensures that critical business functions can continue to
operate during an emergency?

A Disaster recovery planning
B Operations security planning
C Risk management planning
D Incident response planning
E Business continuity planning - ANSWER ✓ E

Which of the options below demonstrates all three types of physical security
controls: deterrent, detective, and preventive?

A warning sign
B employee policy
C burglar alarm
D guard dog
E locked door - ANSWER ✓ D

What planning process ensures that we can respond appropriately during and after
a disaster?

A Operations security process
B Risk management process
C Incident response planning
D Business continuity planning
E Disaster recovery planning - ANSWER ✓ E

, A tool that deliberately displays vulnerabilities in an attempt to bait attackers is
called _____________.

A fuzzer
B sniffer
C port scanner
D vulnerability assessment scanner
E honeypot - ANSWER ✓ E

A firewall that can watch packets and monitor the traffic from a given connection
is using what kind of firewall technology?

A Stateful packet inspection
B Deep packet inspection
C Packet filtering - ANSWER ✓ A

A specialized type of firewall that provides security and performance features,
functions as a choke point, allows for logging traffic for later inspection, and
serves as a single source of requests for the devices behind it is known as a(n)
____________.

A Proxy server
B Intrusion detection system
C Web server
D Packet sniffer
E FTP server - ANSWER ✓ A

_____________ is a popular, fully-featured sniffer capable of intercepting traffic
from a wide variety of wired and wireless sources.

A Hping3
B NetStumbler
C Wireshark
D Kismet - ANSWER ✓ C

_____________ is a sniffer that specializes in detecting wireless devices.

A Kismet
B Wireshark

Document information

Uploaded on
November 21, 2025
Number of pages
42
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
CA$21.80

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
SmartscoreAaron
3.1
(7)
Sold
89
Followers
6
Items
4131
Last sold
1 week ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions