• ¿Documento equivocado? Cámbialo gratis
  • Escrito por estudiantes que aprobaron
  • Inmediatamente disponible después del pago
  • Leer en línea o como PDF
Vender
¿Dónde estudias?
Tu idioma
Document preview thumbnail
Vista previa 4 fuera de 83 páginas
Examen

WGU D487 Secure Software Design Objective Assessment 2026 | Questions & Answers with Rationales | Complete Study Guide | Latest Update

Document preview thumbnail
Vista previa 4 fuera de 83 páginas

Prepare for the WGU D487 Secure Software Design Objective Assessment with a comprehensive study guide covering secure software acquisition and development throughout the software development life cycle (SDLC). Topics include secure application design, Defense in Depth, security processes, Agile, DevSecOps, software development practices, and secure development principles. Includes practice questions, answers, and rationales to support effective exam preparation and review.

Vista previa del contenido

WGU D487 Secure Software Design Objective
Assessment 2026 | Questions & Answers with
Rationales | Complete Study Guide | Latest
Update | Instant Download



Section 1: Foundational Security Concepts and Design Principles (Questions 1–30)


Question 1

What is the primary goal of secure software design?

A. Maximize software performance
B. Protect applications from security threats
C. Reduce development time
D. Enhance user interface

Correct Answer: B

Rationale: Secure design focuses on mitigating vulnerabilities throughout the SDLC. The
primary goal is to protect applications from security threats by building security into the
product from the earliest stages of development .

,Question 2

Which SDLC phase is most critical for integrating security?

A. Testing
B. Requirements gathering
C. Deployment
D. Maintenance

Correct Answer: B

Rationale: Early integration in requirements ensures security is built-in, per NIST guidelines.
Defining security requirements during the requirements phase ensures security drives
design, implementation, and verification rather than being bolted on later .




Question 3

What is the purpose of threat modeling in secure software design?

A. Optimize code efficiency
B. Identify potential security risks
C. Increase system uptime
D. Reduce hardware costs

Correct Answer: B

Rationale: Threat modeling, as per OWASP, maps risks to mitigate them proactively. It is a
structured process for identifying potential security risks before software is deployed .

,Question 4

The principle of least privilege means that:

A. Users should have full access to all systems
B. Users should have the minimum level of access necessary to perform their functions
C. Users should have no access to any systems
D. Users should share administrative accounts

Correct Answer: B

Rationale: The principle of least privilege grants users the minimum access necessary to
perform their functions. Each microservice should have a dedicated account with only
necessary permissions .




Question 5

Which security principle advocates for using multiple layers of security controls to protect
assets?

A. Security through Obscurity
B. Defense in Depth
C. Single Point of Failure
D. Fail-Open

Correct Answer: B

, Rationale: Defense in Depth involves layering security controls so that if one fails, others
are in place to stop an attack. Firewalls, IDS, encryption, access controls, and training
together represent this strategy .




Question 6

A system is designed to default to a secure state if an error or exception occurs. This is an
example of:

A. Fail-Open
B. Fail-Safe (Fail-Secure)
C. Economy of Mechanism
D. Open Design

Correct Answer: B

Rationale: Fail-safe (or fail-secure) design ensures that if a system fails, it defaults to a
secure state (e.g., a firewall blocking all traffic if it crashes). Fail-open would allow traffic
through upon failure, which is insecure .




Question 7

The "Economy of Mechanism" principle in secure design states that:

A. Security mechanisms should be as complex as possible
B. Security mechanisms should be simple and small

Información del documento

Subido en
21 de septiembre de 2026
Número de páginas
83
Escrito en
2026/2027
Tipo
Examen
Contiene
Preguntas y respuestas
$16.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Vendido
4
Seguidores
1
Artículos
225
Última venta
1 semana hace



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes