• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 4 out of 163 pages
Exam (elaborations)

Wgu Masters Course C706 - Secure Software Design Exam Latest 2024

Document preview thumbnail
Preview 4 out of 163 pages

WGU MASTERS COURSE C706 - SECURE SOFTWARE DESIGN EXAM LATEST 2024

Content preview

WGU MASTER'S COURSE C706 - SECURE
SOFTWARE
DESIGN EXAM LATEST 2024 ACTUAL EXAM
400 QUESTIONS
AND CORRECT DETAILED ANSWERS WITH
RATIONALES
(VERIFIED ANSWERS) |ALREADY GRADED A+

What is a step for constructing a threat model for a project when using
practical risk analysis?


AAlign your business goals
B Apply engineering methods
C Estimate probability of project time
DMake a list of what you are trying to protect - ANSWER-D


Which cyber threats are typically surgical by nature, have highly specific
targeting, and are technologically sophisticated?


ATactical attacks
B Criminal attacks
C Strategic attacks
DUser-specific attacks - ANSWER-A


Which type of cyberattacks are often intended to elevate awareness of a
topic?


ACyberwarfare
B Tactical attacks
C User-specific attacks
DSociopolitical attacks - ANSWER-D


666

, WGU MASTER'S COURSE C706 - SECURE
SOFTWARE
DESIGN EXAM LATEST 2024 ACTUAL EXAM
400 QUESTIONS
AND CORRECT DETAILED ANSWERS WITH
RATIONALES
(VERIFIED ANSWERS) |ALREADY GRADED A+

What type of attack locks a user's desktop and then requires a payment to
unlock it?


APhishing
B Keylogger
C Ransomware
DDenial-of-service - ANSWER-C


What is a countermeasure against various forms of XML and XML path
injection attacks?


AXML name wrapping
B XML unicode encoding
C XML attribute escaping
DXML distinguished name escaping - ANSWER-C


Which countermeasure is used to mitigate SQL injection attacks?


ASQL Firewall
B Projected bijection
C Query parameterization
DProgressive ColdFusion - ANSWER-C



666

, WGU MASTER'S COURSE C706 - SECURE
SOFTWARE
DESIGN EXAM LATEST 2024 ACTUAL EXAM
400 QUESTIONS
AND CORRECT DETAILED ANSWERS WITH
RATIONALES
(VERIFIED ANSWERS) |ALREADY GRADED A+

What is an appropriate countermeasure to an escalation of privilege
attack?


AEnforcing strong password policies
BUsing standard encryption algorithms and correct key sizes
C Enabling the auditing and logging of all administration activities
DRestricting access to specific operations through role-based access
controls - ANSWER-D Which configuration management security
countermeasure implements least privilege access control?


AFollowing strong password policies to restrict access
B Restricting file access to users based on authorization
C Avoiding clear text format for credentials and sensitive data
DUsing AES 256 encryption for communications of a sensitive nature -
ANSWER-B


Which phase of the software development life cycle (SDL/SDLC) would be
used to determine the minimum set of privileges required to perform the
targeted task and restrict the user to a domain with those privileges?


ADesign
B Deploy
C Development
DImplementation - ANSWER-A


666

, WGU MASTER'S COURSE C706 - SECURE
SOFTWARE
DESIGN EXAM LATEST 2024 ACTUAL EXAM
400 QUESTIONS
AND CORRECT DETAILED ANSWERS WITH
RATIONALES
(VERIFIED ANSWERS) |ALREADY GRADED A+

Which least privilege method is more granular in scope and grants specific
processes only the privileges necessary to perform certain required
functions, instead of granting them unrestricted access to the system?


AEntitlement privilege
B Separation of privilege
C Aggregation of privileges
DSegregation of responsibilities - ANSWER-B


Why does privilege creep pose a potential security risk?


AUser privileges do not match their job role.
BWith more privileges, there are more responsibilities.
C Auditing will show a mismatch between individual responsibilities and
their access rights.
DUsers have more privileges than they need and may perform actions
outside their job description. - ANSWER-D


A system developer is implementing a new sales system. The system
developer is concerned that unauthorized individuals may be able to view
sensitive customer financial data.


Which family of nonfunctional requirements should be considered as part
of the acceptance criteria?




666

Document information

Uploaded on
September 12, 2026
Number of pages
163
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$21.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
exammaster1
5.0
(2)
Sold
15
Followers
3
Items
724
Last sold
1 week ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions