WGU C845 - Information Systems Security | Complete A+ Guide
with 100% Guaranteed pass |Correct Answers & Detailed
Explanations (C845).
Question 1
Which component of the CIA triad ensures that information is accessible to
authorized users when needed?
A. Confidentiality
B. Integrity
C. Availability
D. Authentication
Correct Answer: C. Availability
Explanation:
Availability ensures systems, applications, and data remain accessible to
authorized users despite failures or attacks.
Question 2
Which cybersecurity principle limits users to only the permissions necessary
to perform their job duties?
A. Defense in Depth
B. Least Privilege
C. Separation of Duties
D. Nonrepudiation
Correct Answer: B. Least Privilege
pg. 1
,Explanation:
The principle of least privilege minimizes security risks by granting only the
minimum access required.
Question 3
What is the primary purpose of Multi-Factor Authentication (MFA)?
A. Increase internet speed
B. Require multiple forms of identity verification before granting access
C. Encrypt hard drives
D. Replace antivirus software
Correct Answer: B. Require multiple forms of identity verification before
granting access
Explanation:
MFA combines two or more authentication factors (something you know,
have, or are) to strengthen security.
Question 4
Which attack attempts to trick users into revealing sensitive information
through deceptive emails?
A. SQL Injection
B. Phishing
C. Buffer Overflow
D. Cross-Site Scripting
Correct Answer: B. Phishing
pg. 2
,Explanation:
Phishing uses fraudulent communications to steal credentials or install
malware.
Question 5
Which type of malware encrypts files and demands payment to restore
access?
A. Worm
B. Trojan
C. Spyware
D. Ransomware
Correct Answer: D. Ransomware
Explanation:
Ransomware encrypts files or systems and demands a ransom for decryption.
Question 6
Which security control category includes security awareness training?
A. Physical
B. Administrative
C. Technical
D. Environmental
Correct Answer: B. Administrative
pg. 3
, Explanation:
Administrative controls include policies, procedures, training, and
governance.
Question 7
A firewall primarily protects a network by:
A. Encrypting databases
B. Filtering incoming and outgoing network traffic
C. Creating user accounts
D. Performing data backups
Correct Answer: B. Filtering incoming and outgoing network traffic
Explanation:
Firewalls inspect traffic based on predefined security rules.
Question 8
Which type of attack attempts to overwhelm a server with excessive traffic?
A. Brute Force Attack
B. Distributed Denial-of-Service (DDoS)
C. Phishing
D. Password Spraying
Correct Answer: B. Distributed Denial-of-Service (DDoS)
Explanation:
A DDoS attack uses many compromised systems to flood a target and disrupt
availability.
pg. 4
with 100% Guaranteed pass |Correct Answers & Detailed
Explanations (C845).
Question 1
Which component of the CIA triad ensures that information is accessible to
authorized users when needed?
A. Confidentiality
B. Integrity
C. Availability
D. Authentication
Correct Answer: C. Availability
Explanation:
Availability ensures systems, applications, and data remain accessible to
authorized users despite failures or attacks.
Question 2
Which cybersecurity principle limits users to only the permissions necessary
to perform their job duties?
A. Defense in Depth
B. Least Privilege
C. Separation of Duties
D. Nonrepudiation
Correct Answer: B. Least Privilege
pg. 1
,Explanation:
The principle of least privilege minimizes security risks by granting only the
minimum access required.
Question 3
What is the primary purpose of Multi-Factor Authentication (MFA)?
A. Increase internet speed
B. Require multiple forms of identity verification before granting access
C. Encrypt hard drives
D. Replace antivirus software
Correct Answer: B. Require multiple forms of identity verification before
granting access
Explanation:
MFA combines two or more authentication factors (something you know,
have, or are) to strengthen security.
Question 4
Which attack attempts to trick users into revealing sensitive information
through deceptive emails?
A. SQL Injection
B. Phishing
C. Buffer Overflow
D. Cross-Site Scripting
Correct Answer: B. Phishing
pg. 2
,Explanation:
Phishing uses fraudulent communications to steal credentials or install
malware.
Question 5
Which type of malware encrypts files and demands payment to restore
access?
A. Worm
B. Trojan
C. Spyware
D. Ransomware
Correct Answer: D. Ransomware
Explanation:
Ransomware encrypts files or systems and demands a ransom for decryption.
Question 6
Which security control category includes security awareness training?
A. Physical
B. Administrative
C. Technical
D. Environmental
Correct Answer: B. Administrative
pg. 3
, Explanation:
Administrative controls include policies, procedures, training, and
governance.
Question 7
A firewall primarily protects a network by:
A. Encrypting databases
B. Filtering incoming and outgoing network traffic
C. Creating user accounts
D. Performing data backups
Correct Answer: B. Filtering incoming and outgoing network traffic
Explanation:
Firewalls inspect traffic based on predefined security rules.
Question 8
Which type of attack attempts to overwhelm a server with excessive traffic?
A. Brute Force Attack
B. Distributed Denial-of-Service (DDoS)
C. Phishing
D. Password Spraying
Correct Answer: B. Distributed Denial-of-Service (DDoS)
Explanation:
A DDoS attack uses many compromised systems to flood a target and disrupt
availability.
pg. 4