WGU C795 CORE EXAM TEST QUESTIONS AND SOLUTIONS
RATED A+
✔✔What are some of the areas for which employees must be trained so that they follow
procedures when a disaster occurs? (Choose 3)
A restoration procedures
B evacuation procedures
C investigation procedures
D communication procedures - ✔✔ABD
✔✔During a recent security audit of your company's network, contractors suggested
that the operating systems on client computers are not sufficiently hardened.
Which steps are crucial to ensure that an operating system is hardened?
A Configure all appropriate user accounts.
B Install appropriate administrative tools.
C Install appropriate monitoring software.
D Disabled unnecessary services. - ✔✔D
✔✔What is NOT an example of an operational control?
A a backup control
B configuration management
C a business continuity plan
D an audit trail - ✔✔C
✔✔Management has notified you that the mean time to repair (MTTR) a critical hard
drive is too high. You need to address this issue with the least amount of expense.
What should you do?
A Add 2 more hard drives, and implement disk striping with parity.
B Replace the hard drive with a faster hard drive.
C Add another hard drive, and implement disk mirroring.
D Add another hard drive, and implement disk striping. - ✔✔C
✔✔Which update type makes repairs to a computer during its normal operation so that
the computer can continue to operate until a permanent repair can be made?
A service pack
B support pack
C patch
D hotfix - ✔✔D
,✔✔Which statement is true of the dedicated security mode?
A All the users have the clearance and formal approval required to access some of the
data.
B Some users have the clearance and formal approval required to access some of the
data.
C All users have the clearance and formal approval required to access all the data.
D Some users have the clearance and formal approval required to access all the data. -
✔✔C
✔✔Recently, flooding damaged the building that houses your company's data center.
your team has been asked to determine which functions were affected by the flooding,
and which functions are most critical.
Which disaster recovery step are you performing?
A testing
B recovery strategy
C damage assessment
D vulnerability analysis - ✔✔C
✔✔Your organization is implementing a new file server. You have been asked to
implement a disk subsystem that is a failure-resistant disk system (FRDS).
What criterion should this system meet?
A It protects against loss of access to data due to external power failure.
B It protects against data loss due to external power failure.
C It protects against data loss doe to disk drive failure.
D It protects against loss of access to data due to power supply failure. - ✔✔C
✔✔Your organization has decided to implement a dual backbone.
What is the purpose of this?
A to provide hard drive redundancy
B to provide Local Area Network (LAN) redundancy
C to provide server redundancy
D to provide hard drive controller redundancy - ✔✔B
✔✔Which electronic backup solution backs up data in real time but transmits the data to
an offsite facility in batches?
A remote journaling
, B electronic vaulting
C hierarchical storage management (HSM)
D disk shadowing - ✔✔B
✔✔What are the main types of mechanical locks? (Choose 2)
A combination locks
B cipher locks
C warded locks
D tumbler locks - ✔✔CD
✔✔Which process includes auditing and tracking of changes made to the trusted
computing base?
A configuration management
B media controls
C system controls
D input and output controls - ✔✔A
✔✔Your company has several different types of network monitoring that it uses to
detect and prevent network attacks.
Which type of monitoring is most likely to produce a false alert?
A anomaly-based
B signature-based
C misuse-detection-based
D behavior-based - ✔✔A
✔✔Your company monitors several events to ensure that the security of your servers is
not compromised, and that the performance of your servers is maintained within certain
thresholds. A security consultant has been hired by your company to analyze
organizational security measures. The consultant has requested access to the security
monitoring logs. You need to limit the amount of audit log information you provide by
discarding information that is not needed by the consultant.
Which tool should you use?
A audit-reduction tool
B attack signature-detection tool
C variance-detection tool
D audit filter - ✔✔A
✔✔As part of your organization's security policy, you must monitor access control
violations.
RATED A+
✔✔What are some of the areas for which employees must be trained so that they follow
procedures when a disaster occurs? (Choose 3)
A restoration procedures
B evacuation procedures
C investigation procedures
D communication procedures - ✔✔ABD
✔✔During a recent security audit of your company's network, contractors suggested
that the operating systems on client computers are not sufficiently hardened.
Which steps are crucial to ensure that an operating system is hardened?
A Configure all appropriate user accounts.
B Install appropriate administrative tools.
C Install appropriate monitoring software.
D Disabled unnecessary services. - ✔✔D
✔✔What is NOT an example of an operational control?
A a backup control
B configuration management
C a business continuity plan
D an audit trail - ✔✔C
✔✔Management has notified you that the mean time to repair (MTTR) a critical hard
drive is too high. You need to address this issue with the least amount of expense.
What should you do?
A Add 2 more hard drives, and implement disk striping with parity.
B Replace the hard drive with a faster hard drive.
C Add another hard drive, and implement disk mirroring.
D Add another hard drive, and implement disk striping. - ✔✔C
✔✔Which update type makes repairs to a computer during its normal operation so that
the computer can continue to operate until a permanent repair can be made?
A service pack
B support pack
C patch
D hotfix - ✔✔D
,✔✔Which statement is true of the dedicated security mode?
A All the users have the clearance and formal approval required to access some of the
data.
B Some users have the clearance and formal approval required to access some of the
data.
C All users have the clearance and formal approval required to access all the data.
D Some users have the clearance and formal approval required to access all the data. -
✔✔C
✔✔Recently, flooding damaged the building that houses your company's data center.
your team has been asked to determine which functions were affected by the flooding,
and which functions are most critical.
Which disaster recovery step are you performing?
A testing
B recovery strategy
C damage assessment
D vulnerability analysis - ✔✔C
✔✔Your organization is implementing a new file server. You have been asked to
implement a disk subsystem that is a failure-resistant disk system (FRDS).
What criterion should this system meet?
A It protects against loss of access to data due to external power failure.
B It protects against data loss due to external power failure.
C It protects against data loss doe to disk drive failure.
D It protects against loss of access to data due to power supply failure. - ✔✔C
✔✔Your organization has decided to implement a dual backbone.
What is the purpose of this?
A to provide hard drive redundancy
B to provide Local Area Network (LAN) redundancy
C to provide server redundancy
D to provide hard drive controller redundancy - ✔✔B
✔✔Which electronic backup solution backs up data in real time but transmits the data to
an offsite facility in batches?
A remote journaling
, B electronic vaulting
C hierarchical storage management (HSM)
D disk shadowing - ✔✔B
✔✔What are the main types of mechanical locks? (Choose 2)
A combination locks
B cipher locks
C warded locks
D tumbler locks - ✔✔CD
✔✔Which process includes auditing and tracking of changes made to the trusted
computing base?
A configuration management
B media controls
C system controls
D input and output controls - ✔✔A
✔✔Your company has several different types of network monitoring that it uses to
detect and prevent network attacks.
Which type of monitoring is most likely to produce a false alert?
A anomaly-based
B signature-based
C misuse-detection-based
D behavior-based - ✔✔A
✔✔Your company monitors several events to ensure that the security of your servers is
not compromised, and that the performance of your servers is maintained within certain
thresholds. A security consultant has been hired by your company to analyze
organizational security measures. The consultant has requested access to the security
monitoring logs. You need to limit the amount of audit log information you provide by
discarding information that is not needed by the consultant.
Which tool should you use?
A audit-reduction tool
B attack signature-detection tool
C variance-detection tool
D audit filter - ✔✔A
✔✔As part of your organization's security policy, you must monitor access control
violations.