WGU
Fundamentals of
Information
Security D430 with
correct
questionsand
answers
usr
[COMPANY NAME] [Company address]
,1. CIA Triad Answer: Confidential - allowing only those authorized to access
the data requested Integrity - keeping data unaltered in an unauthorized
manner and reliable
Availability - the ability for those authorized to access data when needed
2. Parkerian Hexad Answer: Confidentiality Integrity
Availability Possession - physical deposition of the media on
which the data is stored
Authenticity - allows us to talk about the proper attribution as to the owner or creator of the data in
question Utility - how useful the data is to us
3. Attack Types Answer: Interception
Interruptio
n
Modificatio
n
Fabricatio
n
4. Interception Answer: an attacker has access to data , applications or environment
5. Interruption Answer: attacks cause our assets to become unusable or unavailable
6. Modification Answer: attacks involve tampering with our asset
7. Fabrication Answer: attacks that create false information
8. Threat Answer: something that has potential to cause harm
9. Vulnerability Answer: weaknesses that can be used to harm us
10. Something you know Answer: username , password , PIN
11. Something you have Answer: ID badge , swipe card , OTP
12. Something you are Answer: fingerprint, Iris Retina scan
13. Somewhere you are Answer: geolocation
14. Something you do Answer: handwriting , typing , walking
15. Authentication Answer: verifying that a person is who they claim to be
16. Mutual authentication Answer: Both parties in a transaction to authenticate each
other
-Has digital certificates
-Prevents man in the middle attacks
2/
16
, -The man in the middle is where the attacker inserts themselves into the traflc flow
-Ex . Both the PC and server authenticate each other before data is sent in either direction
17. Risk management process Answer: 1. Identify Asset - identifying and categorizing
assets that we're protecting
2. Identify Threats - identify threats
3. Assess Vulnerabilities - look for impacts
3/
16
Fundamentals of
Information
Security D430 with
correct
questionsand
answers
usr
[COMPANY NAME] [Company address]
,1. CIA Triad Answer: Confidential - allowing only those authorized to access
the data requested Integrity - keeping data unaltered in an unauthorized
manner and reliable
Availability - the ability for those authorized to access data when needed
2. Parkerian Hexad Answer: Confidentiality Integrity
Availability Possession - physical deposition of the media on
which the data is stored
Authenticity - allows us to talk about the proper attribution as to the owner or creator of the data in
question Utility - how useful the data is to us
3. Attack Types Answer: Interception
Interruptio
n
Modificatio
n
Fabricatio
n
4. Interception Answer: an attacker has access to data , applications or environment
5. Interruption Answer: attacks cause our assets to become unusable or unavailable
6. Modification Answer: attacks involve tampering with our asset
7. Fabrication Answer: attacks that create false information
8. Threat Answer: something that has potential to cause harm
9. Vulnerability Answer: weaknesses that can be used to harm us
10. Something you know Answer: username , password , PIN
11. Something you have Answer: ID badge , swipe card , OTP
12. Something you are Answer: fingerprint, Iris Retina scan
13. Somewhere you are Answer: geolocation
14. Something you do Answer: handwriting , typing , walking
15. Authentication Answer: verifying that a person is who they claim to be
16. Mutual authentication Answer: Both parties in a transaction to authenticate each
other
-Has digital certificates
-Prevents man in the middle attacks
2/
16
, -The man in the middle is where the attacker inserts themselves into the traflc flow
-Ex . Both the PC and server authenticate each other before data is sent in either direction
17. Risk management process Answer: 1. Identify Asset - identifying and categorizing
assets that we're protecting
2. Identify Threats - identify threats
3. Assess Vulnerabilities - look for impacts
3/
16