MOST EXAM QUESTIONS WILL COME
FROM HERE /ALREADY GRADED A+
✅ WGU D774 Pre-Assessment – FULL EXAM
COVERAGE
The WGU D774 (Cybersecurity Architecture / Security
Foundations–aligned) pre-assessment typically evaluates
your ability to apply cybersecurity principles across
governance, risk, architecture, and technical controls.
🔷 1. Security Governance & Risk Management
Security frameworks: NIST CSF, ISO/IEC 27001, CIS
Controls
Policies, standards, procedures, guidelines
Risk management lifecycle:
o Risk identification
o Risk assessment (qualitative vs quantitative)
o Risk treatment (mitigate, transfer, avoid, accept)
Business Impact Analysis (BIA)
, Regulatory compliance (HIPAA, GDPR, PCI-DSS
concepts)
Security roles and responsibilities
Third-party/vendor risk
🔷 2. Security Architecture & Design
Secure system design principles:
o Least privilege
o Defense in depth
o Zero Trust
o Separation of duties
Enterprise architecture models:
o TOGAF basics
Trust boundaries
Security zones and segmentation
Secure SDLC (DevSecOps concepts)
Threat modeling (STRIDE)
🔷 3. Network Security
Network architecture:
, o LAN/WAN, VLANs, DMZ
Firewalls:
o Stateless vs stateful vs NGFW
IDS/IPS systems
VPNs:
o Site-to-site vs remote access
Network protocols security (TLS, HTTPS, SSH)
Wireless security (WPA2, WPA3)
Zero Trust networking
🔷 4. Identity & Access Management (IAM)
Authentication vs authorization vs accounting (AAA)
MFA (multi-factor authentication)
Identity federation (SAML, OAuth)
Role-Based Access Control (RBAC)
Privileged Access Management (PAM)
Single Sign-On (SSO)
Directory services (Active Directory basics)
, 🔷 5. Cryptography
Encryption types:
o Symmetric (AES)
o Asymmetric (RSA)
Hashing (SHA-256, MD5 weaknesses)
Digital signatures
Certificates and PKI
Key management lifecycle
TLS/SSL handshake basics
🔷 6. Security Operations & Incident Response
Incident response lifecycle:
o Preparation
o Detection
o Containment
o Eradication
o Recovery
o Lessons learned
Logging and monitoring (SIEM)