Geschreven door studenten die geslaagd zijn Direct beschikbaar na je betaling Online lezen of als PDF Verkeerd document? Gratis ruilen 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

WGU D487 OA Test Bank 3 2026/2027 Actual Exam | 420 Questions and Correct Answers with Detailed Rationales | Secure Software Design Objective Assessment | Pass Guaranteed - A+ Graded

Beoordeling
-
Verkocht
-
Pagina's
143
Cijfer
A+
Geüpload op
27-03-2026
Geschreven in
2025/2026

Pass your WGU D487 Secure Software Design Objective Assessment with confidence using this 2026/2027 actual exam test bank. This complete resource contains 420 questions with correct answers and detailed rationales covering key topics such as secure software development lifecycle, threat modeling, security requirements, secure coding practices, vulnerability assessment, and risk management. Each rationale reinforces understanding and ensures exam success. Backed by our Pass Guarantee. Download now.

Meer zien Lees minder
Instelling
WGU D487 OA
Vak
WGU D487 OA

Voorbeeld van de inhoud

1



WGU D487 OA Test Bank 3 2026/2027 Actual Exam |
420 Questions and Correct Answers with Detailed
Rationales | Secure Software Design Objective
Assessment | Pass Guaranteed - A+ Graded
Section 1: Secure Software Design Fundamentals
Q1: The principle of least privilege means that:

A. Users should have the minimum level of access necessary to perform their functions
[CORRECT]
B. Users should have full access to all systems

C. Users should have no access to any systems

D. Users should share administrative accounts


Correct Answer: A

Rationale: The principle of least privilege grants users the minimum access necessary to perform
their functions. Options B, C, and D violate this principle.



Q2: Which security principle advocates for using multiple layers of security controls to protect
assets?

A. Least Privilege

B. Defense in Depth [CORRECT]

C. Security through Obscurity

D. Single Point of Failure


Correct Answer: B

Rationale: Defense in Depth involves layering security controls so that if one fails, others are in
place to stop an attack. Security through Obscurity (C) is a flawed approach relying on secrecy.

,2


Q3: A system is designed to default to a secure state if an error or exception occurs. This is an
example of:

A. Fail-safe [CORRECT]

B. Fail-open

C. Fail-secure

D. Failsafe defaults


Correct Answer: A

Rationale: Fail-safe (or fail-secure) design ensures that if a system fails, it defaults to a secure
state (e.g., a firewall blocking all traffic if it crashes). Fail-open would allow traffic through upon
failure, which is insecure.


Q4: The "Economy of Mechanism" principle in secure design states that:

A. Security mechanisms should be as complex as possible

B. Security mechanisms should be simple and small [CORRECT]

C. Security mechanisms should be expensive

D. Security mechanisms should be transparent



Correct Answer: B
Rationale: Economy of Mechanism implies that simple designs are easier to inspect, test, and
verify. Complexity increases the attack surface.


Q5: Separation of duties is primarily implemented to prevent:

A. External hackers

B. Fraud and error [CORRECT]

C. System crashes

D. Network latency

,3


Correct Answer: B

Rationale: Separation of duties ensures that a single individual cannot control all aspects of a
critical process, thereby reducing the risk of fraud or error going undetected.



Q6: What is the primary goal of "Complete Mediation"?

A. Checking permissions only at login

B. Verifying permissions for every access to every object [CORRECT]
C. Mediating network traffic only

D. Arbitrating user disputes


Correct Answer: B

Rationale: Complete Mediation ensures that access rights are checked for every access,
preventing attackers from bypassing the check once authenticated.



Q7: "Open Design" refers to the principle that:

A. The security of a system should not depend on the secrecy of its design [CORRECT]
B. The design should be open to the public for editing

C. Open-source software is always insecure

D. Closed-source software is always secure


Correct Answer: A

Rationale: Open Design suggests that security should rely on the secrecy of specific
keys/passwords, not the secrecy of the design itself (Kerckhoffs's principle).



Q8: Which design principle suggests keeping users from knowing the internal workings of a
system?

A. Least Common Mechanism
B. Psychological Acceptability

, 4


C. Work Factor

D. Least Knowledge (Need to Know) [CORRECT]



Correct Answer: D
Rationale: Also known as Information Hiding or Encapsulation, this limits the knowledge a user
or component has about the system, reducing the chance of exploiting that knowledge.


Q9: The "Weakest Link" principle in security architecture suggests:

A. Strengthening the strongest component
B. The security of the system is equal to its weakest component [CORRECT]

C. Security is irrelevant

D. All components are equally strong



Correct Answer: B
Rationale: Attackers will target the easiest point of entry. Security is only as strong as the
weakest link.


Q10: A trusted computing base (TCB) consists of:

A. All hardware, firmware, and software critical to security [CORRECT]

B. Only the hardware
C. Only the application software

D. Network switches



Correct Answer: A
Rationale: The TCB is the set of all hardware, firmware, and/or software components critical to
its security. Failures in the TCB compromise the entire system.


Q11: "Least Common Mechanism" means:

Geschreven voor

Instelling
WGU D487 OA
Vak
WGU D487 OA

Documentinformatie

Geüpload op
27 maart 2026
Aantal pagina's
143
Geschreven in
2025/2026
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

$18.49
Krijg toegang tot het volledige document:

Verkeerd document? Gratis ruilen Binnen 14 dagen na aankoop en voor het downloaden kun je een ander document kiezen. Je kunt het bedrag gewoon opnieuw besteden.
Geschreven door studenten die geslaagd zijn
Direct beschikbaar na je betaling
Online lezen of als PDF

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
STUVIAACTUALEXAMS University Of California - Los Angeles (UCLA)
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
1012
Lid sinds
3 jaar
Aantal volgers
204
Documenten
7123
Laatst verkocht
5 uur geleden
Actual Exam

STUVIAACTUALEXAMS is a trusted exam-success delivering accurate, verified, and exam-focused study materials that include real exam-style questions, correct answers, and clear, easy-to-follow rationales, all professionally organized to save time, eliminate guesswork, reduce stress, boost confidence, and help students secure top grades and pass their exams on the first attempt with certainty and ease.

3.6

140 beoordelingen

5
61
4
24
3
21
2
10
1
24

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Bezig met je bronvermelding?

Maak nauwkeurige citaten in APA, MLA en Harvard met onze gratis bronnengenerator.

Bezig met je bronvermelding?

Veelgestelde vragen