Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 4 fuera de 94 páginas
Examen

WGU D488 Cybersecurity Architecture & Engineering OA Exam | 200 Practice Questions & Detailed Answers | Final Exam Test Bank with Rationales | A+ Graded

Document preview thumbnail
Vista previa 4 fuera de 94 páginas

This comprehensive WGU D488 Objective Assessment (OA) test bank provides 200 practice questions and verified answers with detailed rationales, fully aligned with the Western Governors University Cybersecurity Architecture and Engineering (KFO1/D488) course competencies. The material covers all six core domains including Security Architecture & Design (25-30% of the exam), Risk Management Framework (NIST RMF), Cryptography (symmetric/asymmetric, hashing, PKI), Network Security (firewalls, segmentation, Zero Trust architecture), Cloud Security, Identity and Access Management (IAM), and Incident Response. Based on the actual WGU D488 OA blueprint, this resource includes the most frequently tested questions with step-by-step rationales for each answer, covering secure network design concepts, access control methods (ACLs, RBAC), threat modeling, and enterprise security frameworks. Perfect for WGU students seeking to master cybersecurity architecture and engineering concepts and achieve a top score on their final objective assessment

Vista previa del contenido

WGU D488 Cybersecurity Architecture & Engineering OA
Exam
200 Practice Questions & Detailed Answers | Final Exam Test
Bank with Rationales | A+ Graded

Domain: Security Architecture & Design (Questions 145)



1. What is the primary goal of defenseindepth?

A) To rely on a single strong security control

B) To eliminate all threats completely

C) To implement multiple layers of security controls

D) To focus only on network security



Correct Answer: C



Rationale: Defenseindepth uses layered security measures so that if one control fails, others still provide
protection. This approach ensures that no single point of failure compromises the entire system.
Multiple layers address physical, technical, and administrative controls to create redundancy in
protection.




2. Which of the following is the core principle of Zero Trust architecture?

A) Trust all internal traffic and verify external traffic

B) Trust never, always verify

C) Trust only after successful authentication once

D) Trust based on network location



Correct Answer: B

,Rationale: Zero Trust architecture assumes no implicit trust granted to any user or device based solely
on network location (inside vs. outside the corporate perimeter). Every access request must be fully
authenticated, authorized, and encrypted before granting access.




3. Which security model focuses primarily on confidentiality and is commonly used in government and
military systems?

A) Biba Model

B) ClarkWilson Model

C) BellLaPadula Model

D) BrewerNash Model



Correct Answer: C



Rationale: The BellLaPadula model enforces confidentiality using the rules "no read up" (a subject
cannot read an object at a higher classification level) and "no write down" (a subject cannot write to an
object at a lower classification level). This model is designed to prevent unauthorized disclosure of
classified information.




4. Which security model focuses on integrity and prevents unauthorized modification of data?

A) BellLaPadula Model

B) Biba Model

C) BrewerNash Model

D) ClarkWilson Model



Correct Answer: B

,Rationale: The Biba model is the integrity counterpart to BellLaPadula. It enforces "no read down" and
"no write up" to prevent untrusted subjects from modifying trusted objects, ensuring data integrity.




5. The NIST Cybersecurity Framework (CSF) consists of five core functions. Which of the following is NOT
one of these functions?

A) Identify

B) Protect

C) Detect

D) Audit

E) Respond

F) Recover



Correct Answer: D



Rationale: The NIST CSF core functions are Identify, Protect, Detect, Respond, and Recover. Audit is not a
core function but rather a control activity that spans multiple functions.




6. Which NIST Cybersecurity Framework function involves developing and implementing appropriate
safeguards to ensure delivery of critical services?

A) Identify

B) Protect

C) Detect

D) Respond



Correct Answer: B

, Rationale: The Protect function of the NIST CSF involves developing and implementing appropriate
safeguards to ensure delivery of critical infrastructure services. This includes access control, awareness
training, data security, and protective technology.




7. Which SABSA layer is concerned with the business requirements and security policy?

A) Contextual Layer

B) Conceptual Layer

C) Logical Layer

D) Physical Layer



Correct Answer: A



Rationale: SABSA (Sherwood Applied Business Security Architecture) uses a sixlayer model. The
Contextual Layer is the highest level, focusing on business requirements and security policy. It answers
"Why" security is needed from a business perspective.




8. What is the primary purpose of the TOGAF Architecture Development Method (ADM)?

A) To provide a securityspecific architecture framework

B) To develop enterprise architecture through an iterative process

C) To manage risk across the organization

D) To implement technical security controls



Correct Answer: B



Rationale: TOGAF ADM is an iterative process for developing enterprise architecture. It provides a
method for developing and managing the lifecycle of an enterprise architecture, consisting of phases

Información del documento

Subido en
7 de agosto de 2026
Número de páginas
94
Escrito en
2026/2027
Tipo
Examen
Contiene
Preguntas y respuestas
$24.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
francisndungu1
5.0
(1)
Vendido
7
Seguidores
0
Artículos
589
Última venta
2 días hace


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes