Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 111 pages
Exam (elaborations)

WGU D488 Cybersecurity Architecture & Engineering Final Exam Test Bank (2026/2027) – Verified Q&A, Complete Rationales & Zero Trust Architecture Principles (Grade A+)

Document preview thumbnail
Preview 4 out of 111 pages

Secure your course pass and accelerate your degree with this definitive 2026/2027 master test bank for the WGU D488 Cybersecurity Architecture & Engineering final examination.This high-density preparatory resource provides 200 realistic, scenario-based multiple-choice questions mapped perfectly to Western Governors University competencies across enterprise infrastructure security, cloud security architecture, data protection engineering, and identity management. Every question features verified correct answers and detailed technical rationales to ensure absolute concept mastery and guarantee an A+ grade on your Objective Assessment.

Content preview

WGU D488 FINAL EXAM TEST BANK (2027)
Cybersecurity Architecture & Engineering | Verified
Q&A with Rationales | A+ Graded



SECTION 1: NETWORK & APPLICATION SECURITY
1. An organization recently suffered a data leak and needs to implement a print
blocking mechanism for documents on a corporate file share. Which solution
should be used?

A) Virtual Desktop Infrastructure (VDI)
B) Remote Desktop Protocol (RDP)
C) Digital Rights Management (DRM)
D) Watermarking

Correct Answer: C) Digital Rights Management (DRM)

Rationale: DRM technologies can implement print blocking controls, restricting the ability
to print sensitive documents and preventing data leakage .




2. A security team has been tasked with performing regular vulnerability scans for
a cloud-based infrastructure. How should these vulnerability scans be conducted
when implementing zero trust security?

A) Manually
B) Annually
C) Automatically
D) As needed

Correct Answer: C) Automatically

,Rationale: In a zero trust architecture, vulnerability scans should be automated and
continuous to ensure ongoing assessment and immediate detection of security weaknesses
in cloud infrastructure .




3. A healthcare company must prevent researchers from inadvertently sharing PHI
data. What is the best solution?

A) Encryption
B) Metadata
C) Anonymization
D) Obfuscation

Correct Answer: C) Anonymization

Rationale: Anonymization removes or de-identifies personal identifiers from medical
records, making it impossible to trace data back to specific individuals. This is the most
effective way to prevent inadvertent PHI sharing while allowing research use .




4. What should be implemented to mitigate the risk of stolen credentials and
isolate privileged account use?

A) Identity and Access Management (IAM)
B) Password policies
C) Privileged Access Management (PAM)
D) Password complexity

Correct Answer: C) Privileged Access Management (PAM)

Rationale: PAM solutions specifically manage and secure privileged accounts, isolating
their use, requiring approval for access, and monitoring activities to mitigate the risk of
credential theft .

,5. Which access control model should be used when end users need different
features based on their location and department?

A) Kerberos
B) Mandatory Access Control (MAC)
C) Attribute-Based Access Control (ABAC)
D) Privileged Access Management (PAM)

Correct Answer: C) Attribute-Based Access Control (ABAC)

Rationale: ABAC grants access based on attributes of the user, resource, and environment.
This allows fine-grained access decisions based on location and department, making it
ideal for dynamic authorization requirements .




6. A team of developers is building a new corporate web application. The security
team requires authentication through two separate channels. Which method
should be included?

A) Single Sign-On (SSO)
B) Multi-Factor Authentication (MFA)
C) Biometric authentication
D) Challenge-Handshake Authentication Protocol (CHAP)

Correct Answer: B) Multi-Factor Authentication (MFA)

Rationale: MFA requires users to provide two or more verification factors from independent
categories of credentials, such as something they know (password) and something they
have (mobile device). This ensures authentication through two separate channels .




7. A financial institution must comply with PCI DSS and uses various software
programs to manage payment card data. Which control ensures software
integrity?

A) Code signing
B) Code scanning

, C) Versioning
D) Regression testing

Correct Answer: A) Code signing

Rationale: Code signing verifies the authenticity and integrity of software, ensuring that
payment card data management programs have not been tampered with. This is critical
for PCI DSS compliance .




8. A security team enabled public access to a web application and has received SQL
injection attacks. Which solution should be deployed?

A) VPN
B) SIEM
C) Web Application Firewall (WAF)
D) SSH

Correct Answer: C) Web Application Firewall (WAF)

Rationale: A WAF is specifically designed to protect web applications by filtering and
monitoring HTTP traffic, blocking SQL injection attacks and other web-based threats .




9. External contractors are using personal laptops to access the corporate network.
How can the organization prevent unapproved devices from connecting?

A) Implementing a DMZ
B) Installing a hardware security module
C) Implementing port security
D) Deploying a software firewall

Correct Answer: C) Implementing port security

Rationale: Port security restricts which devices can connect to a switch port based on MAC
addresses, effectively preventing unapproved devices from accessing the network .

Document information

Uploaded on
August 10, 2026
Number of pages
111
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$33.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
CornelWest
3.7
(250)
Sold
1580
Followers
1128
Items
12252
Last sold
12 hours ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions