Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 4 out of 73 pages
Exam (elaborations)

IS 5403 Cybersecurity Week 6 Quizzes Questions & Correct Answers 2026 Updated 100% Correc

Document preview thumbnail
Preview 4 out of 73 pages

This document contains Week 6 quiz questions and correct answers for the IS 5403 Cybersecurity course. It is intended as a study resource for students reviewing Week 6 material, offering practice questions with answers to support exam preparation and course review.

Content preview

IS 5403 CYBERSECURITY WEEK 6 QUIZZES
QUESTIONS & CORRECT ANSWERS 2026
UPDATED 100% CORRECT TRINE UNIVERSITY
143 QUESTIONS

TABLE OF CONTENTS

# TOPIC

1 Analyze and mitigate complex security threats using defense-in-depth and zero-trust principles

2 Evaluate cryptographic protocols and their implementation pitfalls in real-world systems

3 Design incident response and risk management strategies aligned with NIST and ISO standards

4 IS 5403 Cybersecurity Week 6 Quizzes Questions & Correct Answers 2026 Updated 100% Correct Trine
University

5 Foundations of Cybersecurity

6 Applied Cybersecurity

7 Advanced Cybersecurity

8 Cybersecurity Review


ABSTRACT

This study document brings together 143 carefully worded exam questions drawn from IS 5403
Cybersecurity Week 6 Quizzes Questions & Correct Answers 2026 Updated 100% Correct Trine
University, with the strongest emphasis placed on Analyze and mitigate complex security threats
using defense-in-depth and zero-trust principles, Evaluate cryptographic protocols and their
implementation pitfalls in real-world systems and Design incident response and risk management
strategies aligned with NIST and ISO standards. Every item follows the wording style and level of
reasoning you meet in the real paper, and each one is paired with a clear rationale so the correct
choice is never a guess. Work through the set at your own pace, mark the questions that slow you
down, then come back to them until the reasoning feels automatic. Learners who revise this way
walk into the exam room recognising the pattern behind the questions instead of meeting them for
the first time. Keep going - steady, honest practice is what turns a difficult paper into a comfortable
pass.




Page 1

,Q1 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
An organization implements a zero-trust architecture but continues to experience
lateral movement after credential compromise. Which control gap most directly
undermines zero-trust principles?
A. Lack of micro-segmentation and continuous authentication CORRECT

B. Insufficient perimeter firewall throughput

C. Absence of a DMZ for public-facing services

D. Over-reliance on VPN for remote access

RATIONALE: Zero-trust requires micro-segmentation and continuous verification; without them,
compromised credentials enable lateral movement. Firewall throughput, DMZ, and VPN are
perimeter-centric and do not address internal trust assumptions.




Q2 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
During a TLS 1.3 handshake, a client receives a certificate with a valid signature
but the server later presents a different certificate for the same session. Which
security property is violated?
A. Forward secrecy

B. Certificate pinning

C. Handshake integrity CORRECT

D. Session resumption

RATIONALE: Handshake integrity ensures the transcript is not altered; presenting a different
certificate mid-session violates the integrity of the handshake. Forward secrecy protects past
sessions, pinning is a client-side control, and resumption is a performance feature.




Page 2

,Q3 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
A security team uses the NIST Cybersecurity Framework. After a ransomware
incident, which function should be prioritized to restore operations while
preserving forensic evidence?
A. Identify

B. Protect

C. Detect

D. Respond CORRECT

RATIONALE: The Respond function includes incident response activities such as containment
and recovery while preserving evidence. Identify, Protect, and Detect are earlier phases and do
not directly address post-incident restoration.




Q4 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
In a role-based access control (RBAC) system, a user is assigned to multiple roles
with conflicting permissions. Which principle is most effective to resolve this?
A. Separation of duties CORRECT

B. Least privilege

C. Mandatory access control

D. Discretionary access control

RATIONALE: Separation of duties prevents a single user from holding conflicting roles that could
lead to fraud or errors. Least privilege limits access but does not resolve conflicts; MAC and DAC
are different access control models.




Page 3

, Q5 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
A cryptographic system uses AES-256 in GCM mode. An attacker captures a
ciphertext and its authentication tag but cannot decrypt it. Which property ensures
the attacker cannot forge a valid tag for modified ciphertext?
A. Confidentiality

B. Integrity CORRECT

C. Non-repudiation

D. Availability

RATIONALE: GCM provides integrity through the authentication tag, preventing forgery.
Confidentiality hides plaintext, non-repudiation requires digital signatures, and availability is
unrelated to tag forgery.




Q6 ANALYZE AND MITIGATE COMPLEX SECURITY THREATS USING DEFENSE-IN-DEPTH
AND ZERO-TRUST PRINCIPLES
Which incident response metric best indicates the effectiveness of containment
strategies during a breach?
A. Mean time to detect (MTTD)

B. Mean time to respond (MTTR)

C. Mean time to contain (MTTC) CORRECT

D. Mean time between failures (MTBF)

RATIONALE: MTTC measures the time taken to contain an incident, directly reflecting
containment effectiveness. MTTD is detection, MTTR is overall response, and MTBF is reliability.




Page 4

Document information

Uploaded on
September 18, 2026
Number of pages
73
Written in
2026/2027
Type
Exam (elaborations)
Contains
Questions & answers
$28.99

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
PremiumExamBank
4.8
(1060)
Sold
466
Followers
74
Items
7109
Last sold
1 day ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions