100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

WGU D487 — Secure Software Design (KEO1) Pre-Assessment Style Practice Exam (100 Questions + Answers + Rationales)

Rating
-
Sold
-
Pages
21
Grade
A+
Uploaded on
28-11-2025
Written in
2025/2026

WGU D487 — Secure Software Design (KEO1) Pre-Assessment Style Practice Exam (100 Questions + Answers + Rationales)

Institution
WGU D487 — Secure Software Design
Course
WGU D487 — Secure Software Design










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
WGU D487 — Secure Software Design
Course
WGU D487 — Secure Software Design

Document information

Uploaded on
November 28, 2025
Number of pages
21
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

  • wgu d487

Content preview

WGU D487 — Secure Software Design (KEO1) Pre-Assessment Style Practice
Exam (100 Questions + Answers + Rationales)


1. Which security principle ensures a system is designed to minimize the amount
of code exposed to attack?
A. Defense in depth
B. Least privilege
C. Attack surface reduction
D. Fail securely
Correct Answer: C
Rationale: Attack surface reduction reduces exposed components, lowering
possible entry points.


2. What is the primary purpose of threat modeling?
A. To design test cases
B. To identify, classify, and prioritize threats
C. To write secure code
D. To encrypt data
Correct Answer: B
Rationale: Threat modeling determines what can go wrong and where controls
are needed.


3. In STRIDE, the “S” (Spoofing) is prevented primarily by:
A. Access control
B. Input validation
C. Authentication
D. Encryption
Correct Answer: C
Rationale: Spoofing relates to identity; authentication mitigates it.

,4. Which design flaw allows attackers to modify data between two components?
A. Cross-site scripting
B. Man-in-the-middle
C. SQL injection
D. CSRF
Correct Answer: B
Rationale: MITM intercepts/changes data during communication.


5. In a secure SDLC, security requirements should be defined during which
phase?
A. Deployment
B. Testing
C. Design
D. Maintenance
Correct Answer: C
Rationale: Security requirements must be established early, before development.


6. Which secure coding practice prevents SQL injection?
A. Session tokens
B. Parameterized queries
C. Load balancing
D. Logging
Correct Answer: B
Rationale: Parameterized statements prevent interpretation of user input as SQL
commands.


7. Least privilege dictates that:
A. Users get no access until they request it
B. Users only receive permissions necessary to perform tasks
C. All privileges are granted to admins

, D. Access is determined by encryption keys
Correct Answer: B


8. A system is designed so that any error does not expose stack traces. This is an
example of:
A. Defense in depth
B. Fail securely
C. Separation of duties
D. Open design
Correct Answer: B


9. Which OWASP item is most related to poor input validation?
A. Broken access control
B. Security misconfiguration
C. Injection attacks
D. Server-side request forgery
Correct Answer: C


10. Which is the best method to reduce insecure direct object references
(IDOR)?
A. Input sanitization
B. Strong logging
C. Access control checks on object access
D. Database encryption
Correct Answer: C


11. A developer wants to isolate microservices so compromise of one service
does not affect others. Which principle applies?
A. Open design
B. Defense in depth

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
teachme2expert nursing
View profile
Follow You need to be logged in order to follow users or courses
Sold
1225
Member since
2 year
Number of followers
535
Documents
2818
Last sold
1 day ago
MY specialty at Teachme2expert is offering premium, expert-verified study guides for a variety of nursing and medical exams.

Our specialty at Teachme2expert is offering premium, expert-verified study guides for a variety of nursing and medical exams. With the use of our materials, nursing students, medical professionals, and test takers can easily accomplish their educational and certification objectives. Our Offerings: Complete Nursing Exam Guides: Proctored exam solutions, in-depth responses, and explanations for ATI, NCLEX, HESI, and other exams. Study Guides for Pharmacology and Pathophysiology: The most recent test questions and confirmed answers for 2024 are included for advanced courses such as NSG 530 and NSG 533. Resources on Psychopharmacology: Comprehensive study guides and test banks for courses like NSG 552 are available. Medical Case Studies: thorough case studies and scenarios (NRNP 6531, for example) that are examined by professionals and concentrate on the medical history, diagnosis, and treatment strategies of the patients. Theoretical Esthetician You will always have access to the most recent versions, the most recent content, and answers that have already received an A+ because every document is carefully selected. Why Opt for ME ? Vast Variety of Subjects: We cover everything, from fundamental nursing concepts to specialized qualifications and real-world medical case studies. Use our reliable resources to help you prepare for your exam!

Read more Read less
4.9

5503 reviews

5
5327
4
94
3
37
2
18
1
27

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions