Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 92 pages
Exam (elaborations)

WGU C836 Fundamentals of Information Security Final Exam | 300 Practice Questions with Answers & Rationale

Document preview thumbnail
Preview 4 out of 92 pages

Ace the WGU C836 Fundamentals of Information Security Final Exam on your first attempt! This comprehensive study guide features 300 multiple-choice questions modeled directly after the official Objective Assessment. Each question includes the correct answer in bold and a detailed rationale to help you understand the "why" behind every concept. Covers all key domains: CIA Triad, Risk Management, Access Controls (RBAC/MAC/DAC), Cryptography (Symmetric/Asymmetric), Network Security (Firewalls/VPNs), Physical Security, and Incident Response. Perfect for last-minute review or deep-dive studying. Written by a verified top-performing student. Guaranteed to boost your score! Instant digital download available. No fluff—just the exact practice you need to pass.

Content preview

1|Page




WGU C836 Fundamentals of Information
Security Final Exam | 300 Practice Questions
with Answers & Rationale
Question 1
What is the primary purpose of the CIA triad in information security?
A) To ensure regulatory compliance
B) To balance security with business operations
C) To define the core objectives of protecting information
D) To classify data based on sensitivity
Answer: C) To define the core objectives of protecting information
Rationale: The CIA triad—Confidentiality, Integrity, and Availability—is the
foundational model that defines the primary security objectives for protecting
information assets.




Question 2
Which of the following best describes confidentiality?
A) Ensuring data is accurate and untampered
B) Guaranteeing systems are accessible when needed
C) Preventing unauthorized access to sensitive data
D) Verifying the identity of users
Answer: C) Preventing unauthorized access to sensitive data
Rationale: Confidentiality focuses on restricting access to authorized individuals
only, protecting data from disclosure.




Question 3
A hospital's electronic health records system must always be accessible to doctors
during emergencies. Which CIA principle is most relevant?
A) Confidentiality
B) Integrity
C) Availability
D) Non-repudiation
Answer: C) Availability
Rationale: Availability ensures that systems and data are accessible when
needed, which is critical in emergency healthcare scenarios.

,2|Page




Question 4
An attacker modifies a financial transaction record. Which CIA principle has been
violated?
A) Confidentiality
B) Integrity
C) Availability
D) Authentication
Answer: B) Integrity
Rationale: Integrity ensures that data remains accurate and unaltered;
unauthorized modification directly violates this principle.




Question 5
Which of the following is an example of a confidentiality control?
A) RAID storage
B) Data backups
C) Encryption
D) Load balancing
Answer: C) Encryption
Rationale: Encryption transforms data into an unreadable format, ensuring that
only authorized parties with the decryption key can access it.




Question 6
What does the "A" in the Parkerian Hexad represent?
A) Accountability
B) Authentication
C) Availability
D) Authorization
Answer: C) Availability
Rationale: The Parkerian Hexad expands the CIA triad to include authenticity,
possession/control, and utility, while retaining availability.

,3|Page


Question 7
Which principle ensures that a user cannot deny having performed an action?
A) Confidentiality
B) Integrity
C) Availability
D) Non-repudiation
Answer: D) Non-repudiation
Rationale: Non-repudiation provides proof of origin and delivery, preventing
users from denying actions they have taken.




Question 8
What is the principle of least privilege?
A) Users are granted all permissions by default
B) Users are granted the minimum access necessary to perform their role
C) Users are granted access based on seniority
D) Users must re-authenticate every hour
Answer: B) Users are granted the minimum access necessary to perform their
role
Rationale: Least privilege reduces risk by limiting user permissions to only what
is essential for their job functions.




Question 9
Which access control model uses security labels and clearances?
A) DAC
B) MAC
C) RBAC
D) ABAC
Answer: B) MAC (Mandatory Access Control)
Rationale: MAC enforces access based on system-assigned labels and user
clearances, commonly used in government/military settings.




Question 10
In Discretionary Access Control (DAC), who determines access permissions?
A) The system administrator
B) The data owner

, 4|Page


C) The security policy
D) The operating system
Answer: B) The data owner
Rationale: DAC allows the owner of a resource to decide who can access it and
at what level.




Question 11
Which type of control is a firewall?
A) Administrative
B) Physical
C) Technical
D) Deterrent
Answer: C) Technical
Rationale: Firewalls are technical (logical) controls implemented through
hardware or software to enforce network security policies.




Question 12
Security awareness training for employees is what type of control?
A) Technical
B) Physical
C) Administrative
D) Detective
Answer: C) Administrative
Rationale: Administrative controls include policies, procedures, and training
that guide user behavior and support security.




Question 13
A security guard at a building entrance is an example of which control type?
A) Technical
B) Administrative
C) Physical
D) Corrective
Answer: C) Physical
Rationale: Physical controls include guards, locks, and fences that protect
physical assets and facilities.

Document information

Uploaded on
August 3, 2026
Number of pages
92
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$30.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
GradeGlide
3.5
(2)
Sold
11
Followers
2
Items
273
Last sold
1 month ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions