100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

WGU MASTER'S COURSE C706 - SECURE SOFTWARE DESIGN EXAM LATEST 2024 ACTUAL EXAM 400 QUESTIONS AND CORRECT DETAILED ANSWERS WITH RATIONALES (VERIFIED ANSWERS) | GRADED A+

Rating
-
Sold
-
Pages
138
Grade
A+
Uploaded on
14-11-2024
Written in
2024/2025

What is a step for constructing a threat model for a project when using practical risk analysis? A Align your business goals B Apply engineering methods C Estimate probability of project time D Make a list of what you are trying to protect - ANSWER-D Which cyber threats are typically surgical by nature, have highly specific targeting, and are technologically sophisticated? A Tactical attacks B Criminal attacks C Strategic attacks D User-specific attacks - ANSWER-A Which type of cyberattacks are often intended to elevate awareness of a topic?

Show more Read less











Whoops! We can’t load your doc right now. Try again or contact support.

Document information

Uploaded on
November 14, 2024
Number of pages
138
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Content preview

WGU MASTER'S
DESIGN COURSE
EXAM LATEST C706
2024 - SECURE
ACTUAL EXAMSOFTWARE
400 QUESTIONS




WGU MASTER'S COURSE C706 - SECURE SOFTWARE
DESIGN EXAM LATEST 2024 ACTUAL EXAM 400 QUESTIONS
AND CORRECT DETAILED ANSWERS WITH RATIONALES
(VERIFIED ANSWERS) | GRADED A+
What is a step for constructing a threat model for a project when using practical risk analysis?



A Align your business goals

B Apply engineering methods

C Estimate probability of project time

D Make a list of what you are trying to protect - ANSWER-D



Which cyber threats are typically surgical by nature, have highly specific targeting, and are
technologically sophisticated?



A Tactical attacks

B Criminal attacks

C Strategic attacks

D User-specific attacks - ANSWER-A



Which type of cyberattacks are often intended to elevate awareness of a topic?



A Cyberwarfare

B Tactical attacks

C User-specific attacks

D Sociopolitical attacks - ANSWER-D



What type of attack locks a user's desktop and then requires a payment to unlock it?

,WGU MASTER'S
DESIGN COURSE
EXAM LATEST C706
2024 - SECURE
ACTUAL EXAMSOFTWARE
400 QUESTIONS




A Phishing

,WGU MASTER'S
DESIGN COURSE
EXAM LATEST C706
2024 - SECURE
ACTUAL EXAMSOFTWARE
400 QUESTIONS




B Keylogger

C Ransomware

D Denial-of-service - ANSWER-C



What is a countermeasure against various forms of XML and XML path injection attacks?



A XML name wrapping

B XML unicode encoding

C XML attribute escaping

D XML distinguished name escaping - ANSWER-C



Which countermeasure is used to mitigate SQL injection attacks?



A SQL Firewall

B Projected bijection

C Query parameterization

D Progressive ColdFusion - ANSWER-C



What is an appropriate countermeasure to an escalation of privilege attack?



A Enforcing strong password policies

B Using standard encryption algorithms and correct key sizes

C Enabling the auditing and logging of all administration activities

D Restricting access to specific operations through role-based access controls - ANSWER-D

, WGU MASTER'S
DESIGN COURSE
EXAM LATEST C706
2024 - SECURE
ACTUAL EXAMSOFTWARE
400 QUESTIONS




Which configuration management security countermeasure implements least privilege access control?



A Following strong password policies to restrict access

B Restricting file access to users based on authorization

C Avoiding clear text format for credentials and sensitive data

D Using AES 256 encryption for communications of a sensitive nature - ANSWER-B



Which phase of the software development life cycle (SDL/SDLC) would be used to determine the
minimum set of privileges required to perform the targeted task and restrict the user to a domain
with those privileges?



A Design

B Deploy

C Development

D Implementation - ANSWER-A



Which least privilege method is more granular in scope and grants specific processes only the
privileges necessary to perform certain required functions, instead of granting them unrestricted
access to the system?



A Entitlement privilege

B Separation of privilege

C Aggregation of privileges

D Segregation of responsibilities - ANSWER-B



Why does privilege creep pose a potential security risk?

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Exammate Indiana University Of Pennsylvania
View profile
Follow You need to be logged in order to follow users or courses
Sold
56
Member since
4 year
Number of followers
8
Documents
3200
Last sold
1 day ago
The plug

You cannot simultaneously prevent and prepare for war. Albert Einstein We'd love to hear how satisfied you are with your order. Please take a moment to leave a review, Thank you.

2.6

9 reviews

5
1
4
1
3
3
2
1
1
3

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions