QUESTIONS & CORRECT ANSWERS 2026
UPDATED 100% CORRECT TRINE UNIVERSITY
143 QUESTIONS
TABLE OF CONTENTS
# TOPIC
1 Analyze and mitigate complex security threats using defense-in-depth and zero-trust principles
2 Evaluate cryptographic protocols and their implementation pitfalls in real-world systems
3 Design incident response and risk management strategies aligned with NIST and ISO standards
4 IS 5403 Cybersecurity Week 6 Quizzes Questions & Correct Answers 2026 Updated 100% Correct Trine
University
5 Foundations of Cybersecurity
6 Applied Cybersecurity
7 Advanced Cybersecurity
8 Cybersecurity Review
ABSTRACT
This study document brings together 143 carefully worded exam questions drawn from IS 5403
Cybersecurity Week 6 Quizzes Questions & Correct Answers 2026 Updated 100% Correct Trine
University, with the strongest emphasis placed on Analyze and mitigate complex security threats
using defense-in-depth and zero-trust principles, Evaluate cryptographic protocols and their
implementation pitfalls in real-world systems and Design incident response and risk management
strategies aligned with NIST and ISO standards. Every item follows the wording style and level of
reasoning you meet in the real paper, and each one is paired with a clear rationale so the correct
choice is never a guess. Work through the set at your own pace, mark the questions that slow you
down, then come back to them until the reasoning feels automatic. Learners who revise this way
walk into the exam room recognising the pattern behind the questions instead of meeting them for
the first time. Keep going - steady, honest practice is what turns a difficult paper into a comfortable
pass.
Page 1
,Q1 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
An organization implements a zero-trust architecture but continues to experience
lateral movement after credential compromise. Which control gap most directly
undermines zero-trust principles?
A. Lack of micro-segmentation and continuous authentication CORRECT
B. Insufficient perimeter firewall throughput
C. Absence of a DMZ for public-facing services
D. Over-reliance on VPN for remote access
RATIONALE: Zero-trust requires micro-segmentation and continuous verification; without them,
compromised credentials enable lateral movement. Firewall throughput, DMZ, and VPN are
perimeter-centric and do not address internal trust assumptions.
Q2 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
During a TLS 1.3 handshake, a client receives a certificate with a valid signature
but the server later presents a different certificate for the same session. Which
security property is violated?
A. Forward secrecy
B. Certificate pinning
C. Handshake integrity CORRECT
D. Session resumption
RATIONALE: Handshake integrity ensures the transcript is not altered; presenting a different
certificate mid-session violates the integrity of the handshake. Forward secrecy protects past
sessions, pinning is a client-side control, and resumption is a performance feature.
Page 2
,Q3 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
A security team uses the NIST Cybersecurity Framework. After a ransomware
incident, which function should be prioritized to restore operations while
preserving forensic evidence?
A. Identify
B. Protect
C. Detect
D. Respond CORRECT
RATIONALE: The Respond function includes incident response activities such as containment
and recovery while preserving evidence. Identify, Protect, and Detect are earlier phases and do
not directly address post-incident restoration.
Q4 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
In a role-based access control (RBAC) system, a user is assigned to multiple roles
with conflicting permissions. Which principle is most effective to resolve this?
A. Separation of duties CORRECT
B. Least privilege
C. Mandatory access control
D. Discretionary access control
RATIONALE: Separation of duties prevents a single user from holding conflicting roles that could
lead to fraud or errors. Least privilege limits access but does not resolve conflicts; MAC and DAC
are different access control models.
Page 3
, Q5 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
A cryptographic system uses AES-256 in GCM mode. An attacker captures a
ciphertext and its authentication tag but cannot decrypt it. Which property ensures
the attacker cannot forge a valid tag for modified ciphertext?
A. Confidentiality
B. Integrity CORRECT
C. Non-repudiation
D. Availability
RATIONALE: GCM provides integrity through the authentication tag, preventing forgery.
Confidentiality hides plaintext, non-repudiation requires digital signatures, and availability is
unrelated to tag forgery.
Q6 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
Which incident response metric best indicates the effectiveness of containment
strategies during a breach?
A. Mean time to detect (MTTD)
B. Mean time to respond (MTTR)
C. Mean time to contain (MTTC) CORRECT
D. Mean time between failures (MTBF)
RATIONALE: MTTC measures the time taken to contain an incident, directly reflecting
containment effectiveness. MTTD is detection, MTTR is overall response, and MTBF is reliability.
Page 4