Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 338 pages
Exam (elaborations)

D488 – Cybersecurity Architecture and Engineering (CASP+) | 2026 Updated Study Guide

Document preview thumbnail
Preview 4 out of 338 pages

Prepare for D488 – Cybersecurity Architecture and Engineering (CASP+) with this 2026 updated study guide. Includes comprehensive exam-style questions, answers, and explanations to support mastery of cybersecurity architecture, risk management, and engineering principles. Ideal for IT professionals, students, and CASP+ certification candidates seeking curriculum-aligned, verified, and practical material for exam readiness and professional development. Structured, exam-focused content for effective learning and performance improvement.

Content preview

D488 - Cybersecurity Architecture and Engineering
D488(CASP+)
- Cybersecurity Architecture and Engineering (CASP+) 2/17/2026




D488 - Cybersecurity Architecture and
Engineering (CASP+) 1074 Complete
Solutions DETAILED.
D488 - Cybersecurity Architecture and
Engineering (CASP+) 1074 Complete
Solutions DETAILED.
The security team recently enabled public access to a web application hosted on a server inside the
corporate network. The developers of the application report that the server has received several
structured query language (SQL) injection attacks in the past several days. The team needs to deploy a
solution that will block the SQL injection attacks.



Which solution fulfills these requirements?



A) Virtual private network (VPN)

B) Security information and event management (SIEM)

C) Web application firewall (WAF)

D) Secure Socket Shell (SSH) - ANSWER C) Web application firewall (WAF)



An IT security team has been notified that external contractors are using their personal laptops to gain
access to the corporate network. The team needs to recommend a solution that will prevent
unapproved devices from accessing the network.



Which solution fulfills these requirements?



A) Implementing a demilitarized zone (DMZ)

B) Installing a hardware security module

C) Implementing port security

D) Deploying a software firewall - ANSWER C) Implementing port security




Page 1 D488 - Cybersecurity Architecture and Engineering (CASP+).docx

,D488 - Cybersecurity Architecture and Engineering
D488(CASP+)
- Cybersecurity Architecture and Engineering (CASP+) 2/17/2026




D488 - Cybersecurity Architecture and
Engineering (CASP+) 1074 Complete
Solutions DETAILED.
The chief technology officer for a small publishing company has been tasked with improving the
company's security posture. As part of a network upgrade, the company has decided to implement
intrusion detection, spam filtering, content filtering, and antivirus controls. The project needs to be
completed using the least amount of infrastructure while meeting all requirements.



Which solution fulfills these requirements?



A) Deploying an anti-spam gateway

B) Deploying a proxy server

C) Deploying a unified threat management (UTM) appliance

D) Deploying a web application firewall (WAF) - ANSWER C) Deploying a unified threat management
(UTM) appliance



The security team plans to deploy an intrusion detection system (IDS) solution to alert engineers about
inbound threats. The team already has a database of signatures that they want the IDS solution to
validate.



Which detection technique meets the requirements?



A) Intrusion detection

B) Deep packet inspection

C) Signature-based detection

D) Intrusion prevention - ANSWER C) Signature-based detection



An IT organization had a security breach after deploying an update to its production web servers. The
application currently goes through a manual update process a few times per year. The security team
needs to recommend a failback option for future deployments.



Which solution fulfills these requirements?




Page 2 D488 - Cybersecurity Architecture and Engineering (CASP+).docx

,D488 - Cybersecurity Architecture and Engineering
D488(CASP+)
- Cybersecurity Architecture and Engineering (CASP+) 2/17/2026




D488 - Cybersecurity Architecture and
Engineering (CASP+) 1074 Complete
Solutions DETAILED.

A) Implementing a code scanner

B) Implementing code signing

C) Implementing versioning

D) Implementing a security requirements traceability matrix (SRTM) - ANSWER C) Implementing
versioning



A software development team is working on a new mobile application that will be used by customers.
The security team must ensure that builds of the application will be trusted by a variety of mobile
devices.



Which solution fulfills these requirements?



A) Code scanning

B) Regression testing

C) Code signing

D) Continuous delivery - ANSWER C) Code signing



An IT organization recently suffered a data leak incident. Management has asked the security team to
implement a print blocking mechanism for all documents stored on a corporate file share.



Which solution fulfills these requirements?



A) Virtual desktop infrastructure (VDI)

B) Remote Desktop Protocol (RDP)

C) Digital rights management (DRM)

D) Watermarking - ANSWER C) Digital rights management (DRM)




Page 3 D488 - Cybersecurity Architecture and Engineering (CASP+).docx

, D488 - Cybersecurity Architecture and Engineering
D488(CASP+)
- Cybersecurity Architecture and Engineering (CASP+) 2/17/2026




D488 - Cybersecurity Architecture and
Engineering (CASP+) 1074 Complete
Solutions DETAILED.

A company has recently discovered that a competitor is distributing copyrighted videos produced by the
in-house marketing team. Management has asked the security team to prevent these types of violations
in the future.



Which solution fulfills these requirements?



A) Virtual desktop infrastructure (VDI)

B) Secure Socket Shell (SSH)

C) Digital rights management (DRM)

D) Remote Desktop Protocol (RDP) - ANSWER C) Digital rights management (DRM)



A security team has been tasked with performing regular vulnerability scans for a cloud-based
infrastructure.



How should these vulnerability scans be conducted when implementing zero trust security?



A) Manually

B) Annually

C) Automatically

D) As needed - ANSWER C) Automatically



A healthcare company needs to ensure that medical researchers cannot inadvertently share protected
health information (PHI) data from medical records.



What is the best solution?




Page 4 D488 - Cybersecurity Architecture and Engineering (CASP+).docx

Document information

Uploaded on
February 17, 2026
Number of pages
338
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$21.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
ACTUALSTUDY
4.7
(727)
Sold
2830
Followers
242
Items
39050
Last sold
2 weeks ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions