Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU D488 – Cybersecurity Architecture & Engineering Practice Questions & Answers (with Rationales)

Rating
-
Sold
-
Pages
29
Grade
A+
Uploaded on
19-12-2025
Written in
2025/2026

WGU D488 – Cybersecurity Architecture & Engineering Practice Questions & Answers (with Rationales)

Institution
WGU D488 – Cybersecurity
Course
WGU D488 – Cybersecurity

Content preview

WGU D488 – Cybersecurity Architecture &
Engineering Practice Questions & Answers (with
Rationales)

1. Which principle ensures users are given only the minimum access required
to perform their job?

A. Defense in Depth
B. Separation of Duties
C. Least Privilege
D. Zero Trust

Correct Answer: C. Least Privilege
Rationale: Least privilege reduces attack surface by limiting access rights to only what is
necessary.



2. Which security model focuses on confidentiality and is commonly used in
government systems?

A. Biba Model
B. Clark-Wilson Model
C. Bell-LaPadula Model
D. Brewer-Nash Model

Correct Answer: C. Bell-LaPadula Model
Rationale: Bell-LaPadula enforces confidentiality using “no read up, no write down.”


3. What is the primary goal of Zero Trust Architecture (ZTA)?

A. Eliminate firewalls
B. Trust internal users by default
C. Verify every access request
D. Centralize authentication

Correct Answer: C. Verify every access request
Rationale: Zero Trust assumes no implicit trust, regardless of network location.

,4. Which architecture component is responsible for enforcing access control
decisions?

A. Policy Decision Point (PDP)
B. Policy Enforcement Point (PEP)
C. Identity Provider (IdP)
D. Security Information Event Manager

Correct Answer: B. Policy Enforcement Point (PEP)
Rationale: PEP enforces access decisions made by the PDP.


5. What type of control is a firewall?

A. Detective
B. Corrective
C. Preventive
D. Compensating

Correct Answer: C. Preventive
Rationale: Firewalls prevent unauthorized network access before it occurs.


6. Which cryptographic concept ensures data has not been altered in transit?

A. Confidentiality
B. Authentication
C. Integrity
D. Non-repudiation

Correct Answer: C. Integrity
Rationale: Integrity verifies that data remains unchanged.


7. What is the primary purpose of a DMZ in network architecture?

A. Encrypt internal traffic
B. Isolate public-facing services
C. Authenticate users
D. Monitor internal logs

, Correct Answer: B. Isolate public-facing services
Rationale: A DMZ limits exposure of internal networks.


8. Which protocol provides secure remote access using encryption?

A. FTP
B. Telnet
C. SSH
D. SNMP

Correct Answer: C. SSH
Rationale: SSH encrypts remote access sessions.


9. Which cloud responsibility belongs to the customer under the shared
responsibility model?

A. Physical data center security
B. Hypervisor security
C. Data classification
D. Hardware maintenance

Correct Answer: C. Data classification
Rationale: Customers are responsible for protecting their own data.


10. What security concept combines something you know, have, and are?

A. Single Sign-On
B. Federation
C. Multi-Factor Authentication
D. Role-Based Access Control

Correct Answer: C. Multi-Factor Authentication
Rationale: MFA uses multiple authentication factors.


11. Which architecture strategy uses multiple layers of security controls?

A. Zero Trust
B. Defense in Depth

Written for

Institution
WGU D488 – Cybersecurity
Course
WGU D488 – Cybersecurity

Document information

Uploaded on
December 19, 2025
Number of pages
29
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers
$24.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Thumbnail
Package deal
WGU D bundle exam questions and verified answers with latest update and version 2026
-
27 2026
$ 272.08 More info

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Excellentdocsolution Stanford University
View profile
Follow You need to be logged in order to follow users or courses
Sold
13
Member since
1 year
Number of followers
2
Documents
3038
Last sold
1 week ago
EXELENCE IN EDUCATIOIN

BEST AND AFFORDABLE PRICE

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions