Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 510 pages
Exam (elaborations)

WGU COURSE C845 - INFORMATION SYSTEMS SECURITY (SSCP) EXAM QUESTIONS COMPLETE WITH 100% VERIFIED ANSWERS

Document preview thumbnail
Preview 4 out of 510 pages

WGU COURSE C845 - INFORMATION SYSTEMS SECURITY (SSCP) EXAM QUESTIONS COMPLETE WITH 100% VERIFIED ANSWERS Q.Which of the following is a symmetric algorithm? A Diffie-Hellman B RSA C AES D HMAC - ANSWERS-C Q.How can a user be given the power to set privileges on an object for other users when within a DAC operating system? A Remove special permissions for the user on the object. B Grant the user full control over the object. C Give the user the modify privilege on the object. D Issue an administrative job label to the user. - ANSWERS-B Q.Your company adopts a new end-user security awareness program. This training includes malware introduction, social media issues, password guidelines, data exposure, and lost devices. How often should end users receive this training? A once a year and upon termination B upon new hire and once a year thereafter C upon termination D twice a year E upon new hire F once a year - ANSWERS-B Q.What type of event is more likely to trigger the business continuity plan (BCP) rather than the disaster recovery plan (DRP)? A A port-scanning event against your public servers in the DMZ B A security breach of an administrator account C Several users failing to remember their logon credentials D A level 5 hurricane - ANSWERS-B Q.What is the IEEE standard known as port-based network access control which is used to leverage authentication already present in a network to validate clients connecting over hardware devices, such as wireless access points or VPN concentrators? A IEEE 802.1x B IEEE 802.15 C IEEE 802.3 D IEEE 802.11 - ANSWERS-A Q.Why is change control and management used as a component of software asset management? A To stop changes from being implemented into an environment B To oversee the asset procurement process C To prevent or reduce unintended reduction in security D To restrict the privileges assigned to compartmentalized administrators - ANSWERS-C Q.What is the cost benefit equation? A [ALE1 - ALE2] - CCM B AES - CCMP C total initial risk - countermeasure benefit D AV x EF x ARO - ANSWERS-A Q.What is the best means to restore the most current form of data when a backup strategy is based on starting each week off with a full backup followed by a daily differential? A Restore the initial week's full backup and then the last differential backup before the failure. B Restore only the last differential backup. C Restore the initial week's full backup and then each differential backup up to the failure. D Restore the last differential backup and then the week's full backup. - ANSWERS-A Q.Which of the following is not considered an example of a non-discretionary access control system? A MAC B ACL C ABAC D RBAC - ANSWERS-B Q.How should countermeasures be implemented as part of the recovery phase of incident response? A During next year's security review B Based on the lowest cost among available options C As defined by the current security policy D As determined by the violation that occurred - ANSWERS-D Q.Remote control malware was found on a client device, and an unknown attacker was manipulating the network from afar. The attack resulted in the network switches reverting to flooding mode, thereby enabling the attacker to eavesdrop on a significant portion of network communications. After reviewing IDS and traffic logs, you determine that this was accomplished by an attack utility which generated a constant Ethernet frames with random source MAC addresses. What can be done to prevent this attack from occurring in the future? A Restrict access to DHCP. B Use a static HOSTS file. C Use MAC limiting on the switch ports. D Implement an ARP monitor. - ANSWERS-C Q.How is quantitative risk analysis performed? A Through the Delphi technique B With scenario-based assessments C Using calculations D Via employee interviews - ANSWERS-C Q.What special component on a motherboard can be used to securely store the encryption key for whole drive encryption? A CMOS B RAM C TPM D CPU - ANSWERS-C Q.When is it appropriate to contact law enforcement when an organization experiences a security breach? A If a violation is more severe than just breaking company policy rules B If a breach of security occurs C If a tolerable or accepted risk is realized D If an insider uses another employee's credentials - ANSWERS-A Q.What is the name of a cryptographic attack based on a database of pre-computed hash values and the original plaintext values? A Brute force attack B Rainbow table attack C Frequency analysis D Chosen plaintext attack - ANSWERS-B Q.What is the purpose of a Security Information and Event Management (SIEM) product? A To provide real-time logging and analysis of security events B To define the requirements of security procedures C To provide event planning guidance for holding industry conferences D To improve employee security training - ANSWERS-A Q.How does salting passwords reduce the likelihood that a password cracking attack will be successful? A It prevents automated attacks. B It forces the attacker to focus on one account at a time. C It triggers an account lockout after a fixed number of false attempts. D It increases the work load required to become successful. - ANSWERS-D Q.Which of the following clearance levels or classification labels is not generally used in a government- or military-based MAC scheme? A Unclassified B Confidential C Top Secret D Proprietary - ANSWERS-D Q.You are starting a new website. You want to quickly allow users to begin using your site without having the hassle of creating a new user account. You set up a one-way trust federated access link from your website to the three major social networks. Why should you use a one-way trust in this configuration rather than a two-way trust in this scenario? A A one-way trust allows your website to trust the user accounts of the social networks without requiring the social networks to trust your website. B Two-way trusts are only valid in private networks and cannot be used across the Internet. C A one-way trust allows your website to access the file storage of the social networks. D A two-way trust would grant the social network administrators full access to your backend database. - ANSWERS-A Q.Why should the risks of an organization be reported as defined by enterprise risk management (ERM)? A It is a means to predict loss, select countermeasures, and reduce downtime. B It is a government regulation. C It helps with internal transparency, risk assessment, risk response, and risk monitoring. D It assists with strategic planning, compliance, and training. - ANSWERS-C Q.A common attack against wireless networks is to guess the static password needed to authenticate to the base station. Which technology can be used to minimize this risk? A IEEE 802.1x B IEEE 802.15 C IEEE 802.11n D IEEE 802.1q - ANSWERS-A Q.John works in an organization. He is trying to insert a password to log in his account on the organization's login website. Which of the following best describes the use of passwords for access control? A Authorization B Authentication C Identification D Auditing - ANSWERS-B Q.How can skilled IT workers evaluate new software without exposing their systems to infection or malware compromise? A Test using a sandbox. B Implement an IDS. C Use anti-malware scanners. D Use an administrator account. - ANSWERS-A Q.How can account provisioning be configured so that the assignment of rights and privileges is nearly automatic once the account is created? A Trigger a random number generator to assign privileges on various resources. B Enable new users to set their own privileges. C Use an RBAC mechanism where a new user's role is set by an HR admin. D Follow a strict procedure where granular access is set on a per-object basis for each user by an administrator. - ANSWERS-C Q.How are the access control schemes of MAC and RBAC distinguished from DAC? A They are based on user identity. B They are not based on assigned labels. C They are based on object hosted ACLs. D They are not based on user decisions. - ANSWERS-D Q.What is the company security policy that allows workers to use their own personal equipment to interact with company resources? A BYOD B MOU C AUP D CPS - ANSWERS-A Q.What is the purpose of a business continuity plan (BCP)? A To maintain the ability to perform mission critical work tasks while dealing with harmful events B To define performance requirements and consequences if providers fail to meet quality expectations C To restore mission critical tasks D To train replacement personnel in the event of a senior executive leaving the organization - ANSWERS-A Q.Selecting a cloud provider can be a challenge. Often, it is not possible to determine whether a provider's services are sufficient for your needs until you have started using its service. If you determine that an initial cloud system is insufficient and you need to move your data and custom code to a different cloud provider, what is needed as a feature of the initial cloud provider that did not work out for you? A Storage encryption B VPN connectivity C Activity auditing D Data portability - ANSWERS-D Q.How can the burden of handling a specific security risk be transferred to the shoulders of another organization? A More thorough user training B Outsourcing C Decommissioning equipment D Implementing market leading countermeasure - ANSWERS-B Q.When working with big data, the storage location where all of the raw data is housed until it is needed for mining or processing is known as? A Data lake B Data warehouse C Database D Data mart - ANSWERS-A Q.How can non-repudiation be achieved by the typical user when communicating over e-mail? A Employ encryption and a digital envelope. B Obtain a digital certificate. C Use a digital signature. D Ask for proof of receipt. - ANSWERS-C Q.What is the primary concern for any situation involving the triggering of a disaster recovery plan (DRP)? A Avoiding downtime B Reducing asset loss C Preservation of human life D Minimizing costs - ANSWERS-C Q.Which type of network segment is created by a switch, but requires a routing function to be present to interact between network segments? A Community B Domain C Subnet D VLAN - ANSWERS-D Q.Why do many security monitoring systems produce a visualization of the collected results? A Security tools do not support spreadsheet presentations. B The lists of text and numbers takes up too much screen space. C It represents complex or bulky data in an easy to understand format. D It is the only way to represent passively monitored systems. - ANSWERS-C Q.How can multiple distinct physical network topologies be combined into a single network structure? A Deploy a star topology. B Deploy a ring topology. C Deploy a tree topology. D Deploy a bus topology. - ANSWERS-C Q.What is the term used to refer to an activity, occurrence, or event which could cause damage or harm to an organization? A Incident B Alarm C Baseline D Clipping level - ANSWERS-A Q.How can files be easily exchanged between systems whether local or remote, when various operating systems are involved, and when all systems support the TCP/IP protocol stack? A SMB B NFS C FTP D Telnet - ANSWERS-C Q.How does a Trojan horse get past security mechanisms to harm a victim? A By attaching itself to an existing file B By displaying advertisements for intriguing applications C By seeming to be a benign item D By using system resources to distribute itself to other networked devices - ANSWERS-C Q.Which term refers to the virtualization of networking which grants more control and flexibility over networking than using the traditional hardware-only means of network management? A iSCSI B Software-defined network C Bridging D Hypervisor - ANSWERS-B Q.What is the most appropriate use of IPSec? A Processing encryption B Storage encryption C Data transmission protection D Database protection - ANSWERS-C Q.Why are initialization vectors used as common components of encryption algorithms? A They determine the range of values into which a block can resolve. B They increase the chaos in encrypted output. C They set the speed of the encryption process. D They start the encryption process at a common point. - ANSWERS-B Q.What is the term used to describe an entry in a database describing a violation or exploit which is used to match real-time events in order to detect and record attacks by the continuous monitoring solution? A Countermeasure B Threat C Signature D Vulnerability - ANSWERS-C Q.Your organization experienced an impersonation attack recently that compromised the network administrator's user account. In response, new security measures are being implemented throughout the organization. You have been assigned the task of improving authentication. You want a new authentication system that ensures the following: -Eavesdropped passwords cannot be used by an attacker. -Passwords are only able to be used once. -Password predication must be prevented. -Passwords are only valid for a short period of time. How can you accomplish these goals? A Implement a rotating, 30-character password authentication system. B Implement a PIN-based authentication system where each PIN is incremented by three each time a user logs in. C Implement an authentication system using wallet cards with a table of password options. D Implement a synchronized, one-time password token-based authentication system. - ANSWERS-D Q.What is the activity called where hackers travel around an area in search for wireless network signals? A War driving B War dialing C Banner grabbing D Footprinting - ANSWERS-A Q.WAN optimization is the collection of technologies used to maximize efficiency of network communications across long distance links. WAN optimization can include data deduplication, compression, and what other technology? A Account lockout B Periodic mid-stream re-authentication C Encryption D Traffic shaping - ANSWERS-D Q.Which type of secure implementation of client devices has brought back a concept from the mainframe era where systems on a worker's desk have minimal storage and computational capacity? A Thin clients B Mobile devices C All-in-one PCs D Distributed architecture - ANSWERS-A Q.What virtual environment tool allows for testing and experimentation within a guest OS while providing a means to roll-back to a previous stable state in just seconds? A File-by-file backup B Snapshots C Hard drive image D Bit-stream image backups - ANSWERS-B Q.An IT security manager is struggling to keep the organization's computers in working order. He is testing updates and configuring them to be installed onto systems and making tweaks to the configuration settings to various systems as business tasks require. However, he often discovers systems which do not have the necessary updates or which are using out-of-date settings. This may be caused by systems being disconnected from the company network when taken into the field or when used for special offline projects. What technology should the IT security manager implement to help handle this complex issue? A NTP synchronization B OCSP C IEEE 802.1x D NAC - ANSWERS-D Q.What is the purpose or benefit of an after-action report in an incident response strategy? A To learn from events in order to improve future incident handling B To have law enforcement provide guidance on handling security breaches C To increase the sensitivity of incident detectors D To gain sufficient support from senior management - ANSWERS-A Q.What is user entitlement? A The level of privilege assigned to administrative accounts B The default level of access given to users by the operating system C The privileges inherited by a user D The rights and privileges assigned to a user - ANSWERS-D Q.When designing end-user training to teach employees about using cryptography within business tasks, which of the following is an important element to include? A The electricity cost of encryption B The means of adding additional entropy to the randomness seeds C Key destruction

Content preview

WGU COURSE C845 - INFORMATION
SYSTEMS SECURITY (SSCP) EXAM
QUESTIONS COMPLETE WITH 100%
VERIFIED ANSWERS



\Q\.Which of the following is a symmetric algorithm?



A Diffie-Hellman

B RSA

C AES

D HMAC - ANSWERS✔-C



\Q\.How can a user be given the power to set privileges on an object for other users when
within a DAC operating system?



A Remove special permissions for the user on the object.

B Grant the user full control over the object.

C Give the user the modify privilege on the object.

D Issue an administrative job label to the user. - ANSWERS✔-B



\Q\.Your company adopts a new end-user security awareness program. This training includes
malware introduction, social media issues, password guidelines, data exposure, and lost
devices. How often should end users receive this training?

,A once a year and upon termination

B upon new hire and once a year thereafter

C upon termination

D twice a year

E upon new hire

F once a year - ANSWERS✔-B



\Q\.What type of event is more likely to trigger the business continuity plan (BCP) rather than
the disaster recovery plan (DRP)?



A A port-scanning event against your public servers in the DMZ

B A security breach of an administrator account

C Several users failing to remember their logon credentials

D A level 5 hurricane - ANSWERS✔-B



\Q\.What is the IEEE standard known as port-based network access control which is used to
leverage authentication already present in a network to validate clients connecting over
hardware devices, such as wireless access points or VPN concentrators?



A IEEE 802.1x

B IEEE 802.15

C IEEE 802.3

D IEEE 802.11 - ANSWERS✔-A



\Q\.Why is change control and management used as a component of software asset
management?

,A To stop changes from being implemented into an environment

B To oversee the asset procurement process

C To prevent or reduce unintended reduction in security

D To restrict the privileges assigned to compartmentalized administrators - ANSWERS✔-C



\Q\.What is the cost benefit equation?



A [ALE1 - ALE2] - CCM

B AES - CCMP

C total initial risk - countermeasure benefit

D AV x EF x ARO - ANSWERS✔-A



\Q\.What is the best means to restore the most current form of data when a backup strategy is
based on starting each week off with a full backup followed by a daily differential?



A Restore the initial week's full backup and then the last differential backup before the failure.



B Restore only the last differential backup.



C Restore the initial week's full backup and then each differential backup up to the failure.



D Restore the last differential backup and then the week's full backup. - ANSWERS✔-A



\Q\.Which of the following is not considered an example of a non-discretionary access control
system?

, A MAC

B ACL

C ABAC

D RBAC - ANSWERS✔-B



\Q\.How should countermeasures be implemented as part of the recovery phase of incident
response?



A During next year's security review

B Based on the lowest cost among available options

C As defined by the current security policy

D As determined by the violation that occurred - ANSWERS✔-D



\Q\.Remote control malware was found on a client device, and an unknown attacker was
manipulating the network from afar. The attack resulted in the network switches reverting to
flooding mode, thereby enabling the attacker to eavesdrop on a significant portion of network
communications. After reviewing IDS and traffic logs, you determine that this was accomplished
by an attack utility which generated a constant Ethernet frames with random source MAC
addresses. What can be done to prevent this attack from occurring in the future?



A Restrict access to DHCP.

B Use a static HOSTS file.

C Use MAC limiting on the switch ports.

D Implement an ARP monitor. - ANSWERS✔-C



\Q\.How is quantitative risk analysis performed?

Document information

Uploaded on
February 5, 2026
Number of pages
510
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$15.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
IszackBd
5.0
(3)
Sold
56
Followers
3
Items
6241
Last sold
1 day ago




Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions