100% de satisfacción garantizada Inmediatamente disponible después del pago Tanto en línea como en PDF No estas atado a nada 4,6 TrustPilot
logo-home
Examen

WGU D487 OA EXAM LATEST UPDATED WITH ACCURATE SOLUTIONS RATED A+ 2026

Puntuación
-
Vendido
-
Páginas
60
Grado
A+
Subido en
18-01-2026
Escrito en
2025/2026

WGU D487 OA EXAM LATEST UPDATED WITH ACCURATE SOLUTIONS RATED A+ 2026 Which principle involves multiple layers of security controls to protect a system? Which secure coding practice ensures that sessions expire after a set period or inactivity?

Mostrar más Leer menos
Institución
WGU D487
Grado
WGU D487











Ups! No podemos cargar tu documento ahora. Inténtalo de nuevo o contacta con soporte.

Escuela, estudio y materia

Institución
WGU D487
Grado
WGU D487

Información del documento

Subido en
18 de enero de 2026
Número de páginas
60
Escrito en
2025/2026
Tipo
Examen
Contiene
Preguntas y respuestas

Temas

Vista previa del contenido

WGU D487 OA EXAM LATEST UPDATED WITH
ACCURATE SOLUTIONS RATED A+ 2026
1. What is the study of real-world software security
initiatives organized so companies can measure their
initiatives and understand how to evolve them over time?
 A) Building Security in Maturity Model (BSIMM) ✅
 B) Security features and design
 C) OWASP Software Assurance Maturity Model (SAMM)
 D) ISO 27001

Explanation: BSIMM is a framework that studies how real-world
organizations implement software security initiatives. It provides a
structured way to measure security activities and offers guidance on
evolving software security practices over time.




2. What is the analysis of computer software that is
performed without executing programs?
 A) Static analysis ✅
 B) Fuzzing
 C) Dynamic analysis
 D) OWASP ZAP

Explanation: Static analysis examines code, binaries, or other artifacts
without executing the program. It helps identify vulnerabilities such as buffer
overflows, injection flaws, and insecure coding practices early in the
development process.

,3. Which secure coding best practice says to use
parameterized queries, encrypted connection strings stored
in separate configuration files, and strong passwords or
multi-factor authentication?
 A) Access control
 B) Database security ✅
 C) File management
 D) Session management

Explanation: Database security ensures that sensitive data is protected
from unauthorized access or manipulation. Using parameterized queries,
encrypted connections, and strong authentication helps prevent SQL
injection and other database-related attacks.




4. Which secure coding best practice says that all
information passed to other systems should be encrypted?
 A) Output encoding
 B) Memory management
 C) Communication security ✅
 D) Database security

Explanation: Communication security focuses on protecting data
transmitted across networks. Encryption ensures confidentiality, integrity,
and prevents attackers from intercepting sensitive information.




5. A company is preparing to add a new feature to its
flagship software product. The new feature is similar to
features that have been added in previous years, and the
requirements are well-documented. The project is expected
to last three to four months, at which time the new feature

,will be released to customers. Project team members will
focus solely on the new feature until the project ends. Which
software development methodology is being used?
 A) Agile
 B) Waterfall ✅
 C) Scrum
 D) Extreme programming

Explanation: Waterfall methodology is a linear, sequential approach where
each phase must be completed before the next begins. It is best suited for
projects with well-defined requirements and minimal expected changes
during development.




6. A new product will require an administration section for a
small number of users. Normal users will be able to view
limited customer information and should not see admin
functionality within the application. Which concept is being
used?
 A) Privacy
 B) POLP ✅
 C) Software security champion
 D) Elevation of privilege

Explanation: The Principle of Least Privilege (POLP) ensures users have only
the permissions necessary to perform their tasks. Limiting access reduces
the risk of accidental or intentional misuse of sensitive functions.




7. The software security team is currently working to
identify approaches for input validation, authentication,
authorization, and configuration management of a new

, software product so they can deliver a security profile.
Which threat modeling step is being described?
 A) Rating threats
 B) Identifying and documenting threats
 C) Analyzing the target ✅
 D) Drawing data flow diagram

Explanation: Analyzing the target involves understanding the software, its
architecture, and its components. Security teams identify how attackers
could exploit weaknesses and determine controls needed to mitigate risks.




8. The scrum team is attending their morning meeting,
which is scheduled at the beginning of the work day. Each
team member reports what they accomplished yesterday,
what they plan to accomplish today, and if they have any
impediments that may cause them to miss their delivery
deadline. Which scrum ceremony is the team participating
in?
 A) Daily scrum ✅
 B) Sprint review
 C) Sprint retrospective
 D) Sprint planning
Explanation: The Daily Scrum is a short, time-boxed meeting for the
development team to synchronize activities and create a plan for the next 24
hours. It helps detect impediments and ensures progress toward sprint goals.


9. Which software security principle ensures that sensitive
information is not disclosed to unauthorized users?
 A) Integrity
 B) Confidentiality ✅
 C) Availability
 D) Authentication

Explanation: Confidentiality is the protection of sensitive information from
unauthorized access. Techniques like encryption, access controls, and secure
$14.99
Accede al documento completo:

100% de satisfacción garantizada
Inmediatamente disponible después del pago
Tanto en línea como en PDF
No estas atado a nada

Conoce al vendedor

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
CLOUND Exam
Seguir Necesitas iniciar sesión para seguir a otros usuarios o asignaturas
Vendido
605
Miembro desde
2 año
Número de seguidores
389
Documentos
11069
Última venta
5 días hace
PROF MM

HELLO WELCOME TO THIS PAGE WHERE YOU WILL FIND ALL EXAMS ,STUDY GUIDE ,CASE, TESTBANKS AND ANY OTHER STUDY MATERIALS,

3.9

116 reseñas

5
58
4
16
3
29
2
3
1
10

Recientemente visto por ti

Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes