WGU D487|PA| PRE-ASSESSMENT QUESTIONS AND
ANSWERS
Correct
Incorrect
vulnerabilities.
, Don't know?
2 of 33
Term
What is an Abstract Syntax Tree used for?
Give this one a try later!
Design secure systems, perform
Identify, assess, plan, approve,
threat modeling, lead security
implement, monitor, review, close
strategy.
Standardize and track known Structuring code syntax for
vulnerabilities. static analysis.
Don't know?
3 of 33
Term
What is environment hardening?
Give this one a try later!
Design secure systems, perform
Static = no code execution;
threat modeling, lead security
Dynamic = during runtime.
strategy.
, Reducing attack surfaces via
Visualize data movement and
patching, configurations, and
identify risks.
disabling services.
Don't know?
4 of 33
Term
When do you use static vs. dynamic analysis?
Give this one a try later!
Identify, assess, plan, approve, Structuring code syntax for static
implement, monitor, review, close analysis.
Reducing attack surfaces via
Static = no code execution;
patching, configurations, and
Dynamic = during runtime.
disabling services.
Don't know?
5 of 33
Term
What does a Privacy Impact Assessment include?
Give this one a try later!
ANSWERS
Correct
Incorrect
vulnerabilities.
, Don't know?
2 of 33
Term
What is an Abstract Syntax Tree used for?
Give this one a try later!
Design secure systems, perform
Identify, assess, plan, approve,
threat modeling, lead security
implement, monitor, review, close
strategy.
Standardize and track known Structuring code syntax for
vulnerabilities. static analysis.
Don't know?
3 of 33
Term
What is environment hardening?
Give this one a try later!
Design secure systems, perform
Static = no code execution;
threat modeling, lead security
Dynamic = during runtime.
strategy.
, Reducing attack surfaces via
Visualize data movement and
patching, configurations, and
identify risks.
disabling services.
Don't know?
4 of 33
Term
When do you use static vs. dynamic analysis?
Give this one a try later!
Identify, assess, plan, approve, Structuring code syntax for static
implement, monitor, review, close analysis.
Reducing attack surfaces via
Static = no code execution;
patching, configurations, and
Dynamic = during runtime.
disabling services.
Don't know?
5 of 33
Term
What does a Privacy Impact Assessment include?
Give this one a try later!