1
WGU C836 STUDY QUESTIONS 2025
Comprehensive Questions And Verified
Answers/ Complete Solutions With
Rationales |Get It 100% Accurate!!
Already Passed!!
What is the CIA triad in information security? - (ANSWER)Confidentiality,
Integrity, and Availability.
What is the main purpose of an information security procedure? - (ANSWER)The
main purpose of an information security procedure is to provide step-by-step
instructions for implementing and maintaining security controls, in accordance
with the organization's security policies.
What is the difference between a policy, a standard, and a procedure in the
context of information security? - (ANSWER)A policy is a high-level statement
that outlines the organization's approach to information security. A standard is a
specific requirement that supports the policy, while a procedure provides step-by-
step instructions for implementing the standard.
What is NOT one of the seven domains of a typical IT infrastructure? -
(ANSWER)Human Resources Domain
What are the two main types of information security policies? -
(ANSWER)organizational (or enterprise) policies and system-specific policies.
, 2
Why is it important to have a policy review and update process in place? -
(ANSWER)to ensure that information security policies remain relevant and
effective, adapting to changes in technology, threats, regulatory requirements,
and the organization's business environment.
What is an example of a security control that would typically be defined in a
procedure? - (ANSWER)A firewall rule set
What is the role of the information security awareness and training program in
supporting an organization's security policies and procedures? - (ANSWER)The
information security awareness and training program helps to ensure that
employees understand and follow the organization's security policies and
procedures, by providing them with the necessary knowledge, skills, and
motivation to protect information assets.
What are the five functions of the NIST Cybersecurity Framework? -
(ANSWER)Identify, Protect, Detect, Respond, and Recover.
What is an operating system? - (ANSWER)An operating system (OS) is a software
that manages computer hardware and software resources, and provides services
to applications.
What is operating system security? - (ANSWER)Operating system security refers
to the measures taken to protect the operating system from unauthorized access,
malicious attacks, and other security threats.
WGU C836 STUDY QUESTIONS 2025
Comprehensive Questions And Verified
Answers/ Complete Solutions With
Rationales |Get It 100% Accurate!!
Already Passed!!
What is the CIA triad in information security? - (ANSWER)Confidentiality,
Integrity, and Availability.
What is the main purpose of an information security procedure? - (ANSWER)The
main purpose of an information security procedure is to provide step-by-step
instructions for implementing and maintaining security controls, in accordance
with the organization's security policies.
What is the difference between a policy, a standard, and a procedure in the
context of information security? - (ANSWER)A policy is a high-level statement
that outlines the organization's approach to information security. A standard is a
specific requirement that supports the policy, while a procedure provides step-by-
step instructions for implementing the standard.
What is NOT one of the seven domains of a typical IT infrastructure? -
(ANSWER)Human Resources Domain
What are the two main types of information security policies? -
(ANSWER)organizational (or enterprise) policies and system-specific policies.
, 2
Why is it important to have a policy review and update process in place? -
(ANSWER)to ensure that information security policies remain relevant and
effective, adapting to changes in technology, threats, regulatory requirements,
and the organization's business environment.
What is an example of a security control that would typically be defined in a
procedure? - (ANSWER)A firewall rule set
What is the role of the information security awareness and training program in
supporting an organization's security policies and procedures? - (ANSWER)The
information security awareness and training program helps to ensure that
employees understand and follow the organization's security policies and
procedures, by providing them with the necessary knowledge, skills, and
motivation to protect information assets.
What are the five functions of the NIST Cybersecurity Framework? -
(ANSWER)Identify, Protect, Detect, Respond, and Recover.
What is an operating system? - (ANSWER)An operating system (OS) is a software
that manages computer hardware and software resources, and provides services
to applications.
What is operating system security? - (ANSWER)Operating system security refers
to the measures taken to protect the operating system from unauthorized access,
malicious attacks, and other security threats.