Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 109 pages
Exam (elaborations)

WGU D484 Study Questions with Correct Answers Questions and Correct Answers/ Latest Update / Already Graded

Document preview thumbnail
Preview 4 out of 109 pages

WGU D484 Study Questions with Correct Answers Questions and Correct Answers/ Latest Update / Already Graded

Content preview

Page |1


WGU D484 Study Questions with Correct
Answers Questions and Correct Answers/
Latest Update / Already Graded
A security professional is researching the latest vulnerabilities that
have been released. Where is a good resource they can go to in order
to look at these?

A.CVSS

B.CVE

C.NVD

D.ISSAF

Ans: C.NVD


To learn more about the vulnerabilities, you can often click on
CVE names, which have hyperlinks to the record in the National
Vulnerability Database (NVD). Once there, you can read more
details.


A new penetration tester is creating a strategy for their first upcoming
process and wants to follow the standard process. What step takes
place after planning?

A.Scanning

B.Recon

All rights reserved © 2025/ 2026 |

, Page |2

C.Gaining access

D.Analysis

Ans: B.Recon


A marketing coordinator meets with many high-profile companies to
discuss penetration testing engagements. Which of the following is
NOT something they might want to show to ensure confidence and
trust in their team?

A.Credentials

B.Pre-Discovered information

C.Background check

D.Clearances

Ans: B.Pre-Discovered information


Penetration testing companies should never do work before
entering into an agreement including scope. This could possibly
lead to prosecution.


PTES

Ans: The Penetration Testing Execution Standard (PTES) has
seven main sections that provide a comprehensive overview of
the proper structure of a complete PenTest. Some of the

All rights reserved © 2025/ 2026 |

, Page |3

sections include details on topics such as pre -engagement
interactions, threat modeling, vulnerability analysis,
exploitation, and reporting.


ISSAF

Ans: The ISSAF contains a list of 14 documents that relate to
PenTesting, such as guidelines on business continuity and
disaster recovery along with legal and regulatory compliance.


A penetration tester has been contracted to do a test for a hospital and
is looking at computerized electronic patient records. What are these
referred to as?

A.HIPAA

B.e-PHI

C.CCPA

D.GDPR

Ans: B.e-PHI


Computerized electronic patient records are referred to as
electronic protected health information (e-PHI). With HIPAA,
the e-PHI of any patient must be protected from exposure, or
the organization can face a hefty fine.



All rights reserved © 2025/ 2026 |

, Page |4


The Health Insurance Portability and Accountability Act
(HIPAA) is a law that mandates rigorous requirements for
anyone that deals with patient information.


A penetration tester is conducting a PCI DSS compliance report for a
large company that does ten million transactions a year. What level
should they comply with?

A.1

B.2

C.3

D.4

Ans: A.1


Level 1 is a large merchant with over six million transactions a
year and must have an external auditor perform the assessment
by an approved Qualified Security Assessor (QSA).
Level 2 is a merchant with one to six million transactions a year.
Both levels 1 and 2 must complete a Report on Compliance
(RoC).
Level 3 is a merchant with 20,000 to one million transactions a
year. Levels 2 through 4 can either have an external auditor or
submit a self-test that proves they are taking active steps to
secure the infrastructure.


All rights reserved © 2025/ 2026 |

Document information

Uploaded on
August 9, 2026
Number of pages
109
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$15.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Expert1
4.5
(8)
Sold
65
Followers
3
Items
7594
Last sold
1 month ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions