100% tevredenheidsgarantie Direct beschikbaar na je betaling Lees online óf als PDF Geen vaste maandelijkse kosten 4.2 TrustPilot
logo-home
Tentamen (uitwerkingen)

WGU Penetration Testing D484 EXAM WITH ANSWERS

Beoordeling
-
Verkocht
-
Pagina's
36
Cijfer
A+
Geüpload op
27-11-2025
Geschreven in
2025/2026

WGU Penetration Testing D484 EXAM WITH ANSWERS

Instelling
Vak











Oeps! We kunnen je document nu niet laden. Probeer het nog eens of neem contact op met support.

Geschreven voor

Instelling
Vak

Documentinformatie

Geüpload op
27 november 2025
Aantal pagina's
36
Geschreven in
2025/2026
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

Voorbeeld van de inhoud

WGU Penetration Testing D484 EXAM
|\ |\ |\ |\ |\




WITH ANSWERS |\




Administrative controls - CORRECT ANSWERS ✔✔security |\ |\ |\ |\ |\ |\


measures implemented to monitor the adherence to
|\ |\ |\ |\ |\ |\ |\


organizational policies and procedures. Those include activities |\ |\ |\ |\ |\ |\ |\


such as hiring and termination policies, employee training along
|\ |\ |\ |\ |\ |\ |\ |\ |\


with creating business continuity and incident response plans.
|\ |\ |\ |\ |\ |\ |\




Physical controls - CORRECT ANSWERS ✔✔restrict, detect and
|\ |\ |\ |\ |\ |\ |\ |\


monitor access to specific physical areas or assets. Methods
|\ |\ |\ |\ |\ |\ |\ |\ |\


include barriers, tokens, biometrics or other controls such as
|\ |\ |\ |\ |\ |\ |\ |\ |\


ensuring the server room doors are properly locked, along with
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


using surveillance cameras and access cards.
|\ |\ |\ |\ |\




Technical or logical controls - CORRECT ANSWERS ✔✔automate
|\ |\ |\ |\ |\ |\ |\ |\


protection to prevent unauthorized access or misuse, and include
|\ |\ |\ |\ |\ |\ |\ |\


Access Control Lists (ACL), and Intrusion Detection System (IDS)/
|\ |\ |\ |\ |\ |\ |\ |\ |\


Intrusion Prevention System (IPS) signatures and antimalware
|\ |\ |\ |\ |\ |\ |\ |\


protection that are implemented as a system hardware, software,
|\ |\ |\ |\ |\ |\ |\ |\


or firmware solution.
|\ |\ |\




What is the primary goal of PenTesting? - CORRECT ANSWERS
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


✔✔Reduce overall risk by taking proactive steps to reduce
|\ |\ |\ |\ |\ |\ |\ |\ |\


vulnerabilities.


Principle of Least Privilege - CORRECT ANSWERS ✔✔Basic
|\ |\ |\ |\ |\ |\ |\ |\


principle of security stating that something should be allocated
|\ |\ |\ |\ |\ |\ |\ |\ |\

,the minimum necessary rights, privileges, or information to
|\ |\ |\ |\ |\ |\ |\ |\


perform its role. |\ |\




Risk - CORRECT ANSWERS ✔✔Likelihood and impact (or
|\ |\ |\ |\ |\ |\ |\ |\


consequence) of a threat actor exercising a vulnerability. |\ |\ |\ |\ |\ |\ |\




Threat - CORRECT ANSWERS ✔✔represents something such as
|\ |\ |\ |\ |\ |\ |\ |\


malware or a natural disaster, that can accidentally or
|\ |\ |\ |\ |\ |\ |\ |\ |\


intentionally exploit a vulnerability and cause undesirable results. |\ |\ |\ |\ |\ |\ |\




Vulnerability - CORRECT ANSWERS ✔✔is a weakness or flaw, such |\ |\ |\ |\ |\ |\ |\ |\ |\


as a software bug, system flaw, or human error. A vulnerability
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\


can be exploited by a threat
|\ |\ |\ |\ |\




Risk Analysis - CORRECT ANSWERS ✔✔is a security process used
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


to assess risk damages that can affect an organization.
|\ |\ |\ |\ |\ |\ |\ |\




Unified Threat Management (UTM) - CORRECT ANSWERS ✔✔All-
|\ |\ |\ |\ |\ |\ |\


in-one security appliances and agents that combine the functions
|\ |\ |\ |\ |\ |\ |\ |\


of a firewall, malware scanner, intrusion detection, vulnerability
|\ |\ |\ |\ |\ |\ |\ |\ |\


scanner, data loss prevention, content filtering, and so on.
|\ |\ |\ |\ |\ |\ |\ |\




Main steps of the structured PenTesting Process: - CORRECT
|\ |\ |\ |\ |\ |\ |\ |\ |\


ANSWERS ✔✔Planning and scoping, Reconnaissance, Scanning, |\ |\ |\ |\ |\ |\


Gaining Access, Maintaining Access, Covering Tracks, Analysis,
|\ |\ |\ |\ |\ |\ |\


Reporting

,Unauthorized Hacker - CORRECT ANSWERS ✔✔A hacker operating |\ |\ |\ |\ |\ |\ |\


with malicious intent.
|\ |\ |\




Payment Card Industry Data Security Standard (PCI DSS) -
|\ |\ |\ |\ |\ |\ |\ |\ |\


CORRECT ANSWERS ✔✔Information security standard for
|\ |\ |\ |\ |\ |\


organizations that process credit or bank card payments. |\ |\ |\ |\ |\ |\ |\




An organization must do the following in order to protect
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


cardholder data: - CORRECT ANSWERS ✔✔Maintain secure|\ |\ |\ |\ |\ |\ |\


infrastructure using dedicated appliances and software to |\ |\ |\ |\ |\ |\ |\


monitor and prevent attacks. Implement best practices like
|\ |\ |\ |\ |\ |\ |\ |\


changing default passwords, educating users on email safety,
|\ |\ |\ |\ |\ |\ |\ |\


and continuously monitoring for vulnerabilities with updated anti-
|\ |\ |\ |\ |\ |\ |\


malware protection. Enforce strict access controls through the
|\ |\ |\ |\ |\ |\ |\ |\


principle of least privilege and regularly test and monitor
|\ |\ |\ |\ |\ |\ |\ |\ |\


networks.


PCI DSS Level 1 - CORRECT ANSWERS ✔✔Large merchant with
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


over six million transactions a year and external auditor by a
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\


Qualified Security Assessor (QSA), must complete a RoC.
|\ |\ |\ |\ |\ |\ |\




PCI DSS Level 2 - CORRECT ANSWERS ✔✔merchant with one to
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\


six million transactions a year, must complete a RoC.
|\ |\ |\ |\ |\ |\ |\ |\




PCI DSS Level 3 - CORRECT ANSWERS ✔✔merchant with 20000 to
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


one million transactions a year
|\ |\ |\ |\ |\




PCI DSS Level 4 - CORRECT ANSWERS ✔✔small merchant with
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


under 20000 transactions a year
|\ |\ |\ |\

, General Data Protection Regulation (GDPR) - CORRECT ANSWERS
|\ |\ |\ |\ |\ |\ |\ |\


✔✔Provisions and requirements protecting the personal data of
|\ |\ |\ |\ |\ |\ |\ |\


European Union (EU) citizens. Transfers of personal data outside
|\ |\ |\ |\ |\ |\ |\ |\ |\


the EU Single Market are restricted unless protected by like-for-
|\ |\ |\ |\ |\ |\ |\ |\ |\


like regulations, such as the US's Privacy Shield requirements.
|\ |\ |\ |\ |\ |\ |\ |\




GDRP Components: - CORRECT ANSWERS ✔✔Require consent,
|\ |\ |\ |\ |\ |\ |\


Rescind Consent, Global reach, Restrict data collection, Violation
|\ |\ |\ |\ |\ |\ |\ |\


reporting


Stop Hacks and Improve Electronic Data Security (SHIELD) -
|\ |\ |\ |\ |\ |\ |\ |\ |\


CORRECT ANSWERS ✔✔is a law that was enacted in New York
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\


state in March 2020 to protect citizens data. The law requires
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\ |\


companies to bolster their cybersecurity defense methods to
|\ |\ |\ |\ |\ |\ |\ |\


prevent a data breach and protect consumer data.
|\ |\ |\ |\ |\ |\ |\




California Consumer Privacy Act (CCPA) - CORRECT ANSWERS
|\ |\ |\ |\ |\ |\ |\ |\


✔✔was enacted in 2020 and outlines specific guidelines on how
|\ |\ |\ |\ |\ |\ |\ |\ |\ |\


to appropriately handle consumer data. To ensure that customer
|\ |\ |\ |\ |\ |\ |\ |\ |\


data is adequately protected, vendors should include PenTesting
|\ |\ |\ |\ |\ |\ |\ |\


of all web applications, internal systems along with social
|\ |\ |\ |\ |\ |\ |\ |\ |\


engineering assessments. |\




Health Insurance Portability and Accountability Act (HIPAA) -
|\ |\ |\ |\ |\ |\ |\ |\


CORRECT ANSWERS ✔✔is a law that mandates rigorous
|\ |\ |\ |\ |\ |\ |\ |\


requirements for anyone that deals with patient information.
|\ |\ |\ |\ |\ |\ |\ |\


Computerized electronic patient records are referred to as |\ |\ |\ |\ |\ |\ |\ |\


electronic protected health information (e-PHI). With HIPAA, the
|\ |\ |\ |\ |\ |\ |\ |\

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
EXAMSTUDYPLUG Stanford University
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
301
Lid sinds
3 jaar
Aantal volgers
107
Documenten
17722
Laatst verkocht
1 week geleden
GRADE BUDDY

Welcome to My Page! Are you looking for high-quality study resources to ace your exams or better understand your coursework? You've come to the right place! I'm passionate about sharing my knowledge and helping students succeed academically. Here, you'll find a wide range of well-organized notes, study guides, and helpful materials across various subjects, including Maths ,nursig, Biology, History, etc.. Each resource is carefully crafted with detailed explanations, clear examples, and relevant key points to help simplify complex concepts. Whether you're preparing for a test, reviewing lectures, or need extra support, my resources are designed to make your learning experience smoother and more effective. Let me be a part of your academic journey, and feel free to reach out if you have any questions or need personalized assistance!

Lees meer Lees minder
4,5

230 beoordelingen

5
155
4
50
3
13
2
5
1
7

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Veelgestelde vragen