WGU D320 – Questions With Correct Solutions (A+)
Which methodology could cloud data storage utilize to encrypt all data
associated in an infrastructure as a service (IaaS) deployment model?
A Sandbox encryption
B Polymorphic encryption
C Client-side encryption
D Whole-instance encryption Right Ans - D
There is a threat to a banking cloud platform service. The developer needs to
provide inclusion in a relational database that is seamless and readily
searchable by search engine algorithms.
Which platform as a service (PaaS) data type should be used?
A Short-term storage
B Structured
C Unstructured
D Long-term storage Right Ans - B
Which platform as a service (PaaS) storage architecture should be used if an
organization wants to store presentations, documents, and audio files?
A Relational database
B Block
C Distributed
D Object Right Ans - D
Which technique scrambles the content of data using a mathematical
algorithm while keeping the structural arrangement of the data?
A Dynamic masking
B Format-preserving encryption
C Proxy-based encryption
D Tokenization Right Ans - B
Which phase of the cloud data life cycle allows both read and process
functions to be performed?
,A Create
B Archive
C Store
D Share Right Ans - A
Which phase of the cloud data security life cycle typically occurs
simultaneously with creation?
A Share
B Store
C Use
D Destroy Right Ans - B
Which phase of the cloud data life cycle uses content delivery networks?
A Destroy
B Archive
C Share
D Create Right Ans - C
Which phase of the cloud data life cycle is associated with crypto-shredding?
A Share
B Use
C Destroy
D Store Right Ans - C
Which cloud data storage architecture allows sensitive data to be replaced
with unique identification symbols that retain all the essential information
about the data without compromising its security?
A Randomization
B Obfuscation
C Anonymization
D Tokenization Right Ans - D
,Which encryption technique connects the instance to the encryption instance
that handles all crypto operations?
A Database
B Proxy
C Externally managed
D Server-side Right Ans - B
Which type of control should be used to implement custom controls that
safeguard data?
A Public and internal sharing
B Options for access
C Management plane
D Application level Right Ans - D
Which element is protected by an encryption system?
A Ciphertext
B Management engine
C Data
D Public key Right Ans - C
A cloud administrator recommends using tokenization as an alternative to
protecting data without encryption. The administrator needs to make an
authorized application request to access the data.
Which step should occur immediately before this action is taken?
A The tokenization server returns the token to the application.
B The tokenization server generates the token.
C The application collects a token.
D The application stores the token. Right Ans - D
A company has recently defined classification levels for its data.
During which phase of the cloud data life cycle should this definition occur?
A Use
, B Create
C Share
D Archive Right Ans - B
Which jurisdictional data protection includes dealing with the international
transfer of data?
A Financial modernization
B Secure choice authorization (SCA)
C Sarbanes-Oxley act (SOX)
D Privacy regulation Right Ans - D
Which jurisdictional data protection controls the ways that financial
institutions deal with the private information of individuals?
A Stored communications act (SCA)
B Health insurance portability and accountability act (HIPAA)
C Gramm-Leach-Bliley act (GLBA)
D Sarbanes-Oxley act (SOX) Right Ans - C
Which jurisdictional data protection safeguards protected health information
(PHI)?
A Directive 95/46/EC
B Safe harbor regime
C Personal Data Protection Act of 2000
D Health Insurance Portability and Accountability Act (HIPAA) Right Ans -
D
How is the compliance of the cloud service provider's legal and regulatory
requirements verified when securing personally identifiable information (PII)
data in the cloud?
A Contractual agreements
B Third-party audits and attestations
C e-Discovery process
D Researching data retention laws Right Ans - B
Which security strategy is associated with data rights management solutions?
Which methodology could cloud data storage utilize to encrypt all data
associated in an infrastructure as a service (IaaS) deployment model?
A Sandbox encryption
B Polymorphic encryption
C Client-side encryption
D Whole-instance encryption Right Ans - D
There is a threat to a banking cloud platform service. The developer needs to
provide inclusion in a relational database that is seamless and readily
searchable by search engine algorithms.
Which platform as a service (PaaS) data type should be used?
A Short-term storage
B Structured
C Unstructured
D Long-term storage Right Ans - B
Which platform as a service (PaaS) storage architecture should be used if an
organization wants to store presentations, documents, and audio files?
A Relational database
B Block
C Distributed
D Object Right Ans - D
Which technique scrambles the content of data using a mathematical
algorithm while keeping the structural arrangement of the data?
A Dynamic masking
B Format-preserving encryption
C Proxy-based encryption
D Tokenization Right Ans - B
Which phase of the cloud data life cycle allows both read and process
functions to be performed?
,A Create
B Archive
C Store
D Share Right Ans - A
Which phase of the cloud data security life cycle typically occurs
simultaneously with creation?
A Share
B Store
C Use
D Destroy Right Ans - B
Which phase of the cloud data life cycle uses content delivery networks?
A Destroy
B Archive
C Share
D Create Right Ans - C
Which phase of the cloud data life cycle is associated with crypto-shredding?
A Share
B Use
C Destroy
D Store Right Ans - C
Which cloud data storage architecture allows sensitive data to be replaced
with unique identification symbols that retain all the essential information
about the data without compromising its security?
A Randomization
B Obfuscation
C Anonymization
D Tokenization Right Ans - D
,Which encryption technique connects the instance to the encryption instance
that handles all crypto operations?
A Database
B Proxy
C Externally managed
D Server-side Right Ans - B
Which type of control should be used to implement custom controls that
safeguard data?
A Public and internal sharing
B Options for access
C Management plane
D Application level Right Ans - D
Which element is protected by an encryption system?
A Ciphertext
B Management engine
C Data
D Public key Right Ans - C
A cloud administrator recommends using tokenization as an alternative to
protecting data without encryption. The administrator needs to make an
authorized application request to access the data.
Which step should occur immediately before this action is taken?
A The tokenization server returns the token to the application.
B The tokenization server generates the token.
C The application collects a token.
D The application stores the token. Right Ans - D
A company has recently defined classification levels for its data.
During which phase of the cloud data life cycle should this definition occur?
A Use
, B Create
C Share
D Archive Right Ans - B
Which jurisdictional data protection includes dealing with the international
transfer of data?
A Financial modernization
B Secure choice authorization (SCA)
C Sarbanes-Oxley act (SOX)
D Privacy regulation Right Ans - D
Which jurisdictional data protection controls the ways that financial
institutions deal with the private information of individuals?
A Stored communications act (SCA)
B Health insurance portability and accountability act (HIPAA)
C Gramm-Leach-Bliley act (GLBA)
D Sarbanes-Oxley act (SOX) Right Ans - C
Which jurisdictional data protection safeguards protected health information
(PHI)?
A Directive 95/46/EC
B Safe harbor regime
C Personal Data Protection Act of 2000
D Health Insurance Portability and Accountability Act (HIPAA) Right Ans -
D
How is the compliance of the cloud service provider's legal and regulatory
requirements verified when securing personally identifiable information (PII)
data in the cloud?
A Contractual agreements
B Third-party audits and attestations
C e-Discovery process
D Researching data retention laws Right Ans - B
Which security strategy is associated with data rights management solutions?