Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 3 fuera de 29 páginas
Examen

D413 ITEC 3201 Telecomm & Wireless Communications - Final Assessment Review

Document preview thumbnail
Vista previa 3 fuera de 29 páginas

D413 ITEC 3201 Telecomm & Wireless Communications - Final Assessment ReviewD413 ITEC 3201 Telecomm & Wireless Communications - Final Assessment ReviewD413 ITEC 3201 Telecomm & Wireless Communications - Final Assessment Review

Vista previa del contenido

D413 ITEC 3201 Telecomm & Wireless
Communications

Final Assessment Review

(Questions & Solutions)

2025




©2025

, 1. Case Study – Secure API Integration
A cloud service provider exposes its services via RESTful APIs. During a
security assessment, the team notices that some endpoints are
vulnerable to unauthorized access and injection attacks.
Question: Which combination of security measures is best suited to
protect these APIs?
A. Rely exclusively on IP whitelisting and static API keys
B. Implement HTTPS, OAuth2-based authorization, and input sanitization
C. Use only HTTPS encryption without any additional authentication
D. Replace RESTful APIs with SOAP exclusively
ANS: B. Implement HTTPS, OAuth2-based authorization, and input
sanitization
Rationale: HTTPS ensures encrypted transmission, OAuth2 provides a
robust framework for authentication and authorization, and proper input
sanitization mitigates injection vulnerabilities—together forming a
comprehensive API security strategy.

---

2. Case Study – Web Application Firewall (WAF) Configuration
A financial application that processes online transactions is experiencing
frequent attempts at SQL injection and cross‑site scripting (XSS) attacks.
Question: Which solution will best defend against these application-
layer threats?
A. Deploy a Web Application Firewall (WAF) with customized rule sets
B. Rely solely on secure coding practices without additional network
defenses
C. Disable client-side scripting altogether
D. Increase the server’s CPU resources
ANS: A. Deploy a Web Application Firewall (WAF) with customized
rule sets
Rationale: A WAF inspects incoming HTTP/HTTPS traffic and blocks
malicious requests by applying predefined rules, thereby preventing
©2025

, common injection and XSS attacks.

---

3. Case Study – TLS Certificate Management
An e-commerce website requires robust encryption for customer data.
The security team is responsible for managing TLS certificates for secure
HTTPS access.
Question: Which of the following practices is critical in TLS certificate
management?
A. Using self-signed certificates exclusively for all customers
B. Regularly renewing certificates and monitoring for revocations
C. Disabling certificate transparency logs
D. Sharing private keys among multiple servers
ANS: B. Regularly renewing certificates and monitoring for
revocations
Rationale: Timely renewal and revocation checking of certificates are
key to maintaining trust and ensuring that expired or compromised
certificates do not jeopardize secure communications.

---

4. Case Study – Data Encryption at Rest
A business storing sensitive client records in a cloud-based database
needs to ensure that data is protected if unauthorized access occurs.
Question: Which approach is most appropriate for protecting data at
rest?
A. Relying solely on physical security measures
B. Implementing full-disk encryption and using application-level
encryption
C. Storing data unencrypted but limiting access to trusted users
D. Using obfuscation techniques only
ANS: B. Implementing full-disk encryption and using application-level
encryption
Rationale: Encrypting data at both the disk and application levels
©2025

Información del documento

Subido en
22 de mayo de 2025
Número de páginas
29
Escrito en
2024/2025
Tipo
Examen
Contiene
Desconocido
$15.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
EmilioOchieng
4.1
(24)
Vendido
148
Seguidores
17
Artículos
4032
Última venta
3 meses hace


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes