Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

D488 | D488 Cybersecurity Architecture and Engineering Exam 2 | Questions with Correct Answers and Expert Explanation for Each Question | WGU

Rating
-
Sold
-
Pages
39
Grade
A+
Uploaded on
29-04-2026
Written in
2025/2026

D488 | D488 Cybersecurity Architecture and Engineering Exam 2 | Questions with Correct Answers and Expert Explanation for Each Question | WGU

Institution
Course

Content preview

D488 | D488 Cybersecurity Architecture and
Engineering Exam 2 Version 2 Questions with
Correct Answers and Expert Explanation for Each
Question
1. Under the shared responsibility model, which of the following is typically the

responsibility of the Cloud Service Provider (CSP) in an Infrastructure as a Service

(IaaS) environment?

A. Managing guest operating systems


B. Patching application software


C. Configuring network security groups


D. Securing physical data center facilities


Correct Answer: D


Expert Explanation: The shared responsibility model clarifies the security

obligations of both providers and consumers. In IaaS, the provider is strictly

responsible for the physical security of the host and underlying hardware. The

consumer assumes responsibility for the guest OS, applications, and network

configuration. AI analysis must be 5 sentences. This clear division prevents security

gaps in complex cloud environments. Therefore, physical facility protection always

falls under the provider’s domain.

,2. Which cloud service model provides the consumer with the highest level of control

over the underlying infrastructure, including the operating system?

A. Software as a Service (SaaS)


B. Platform as a Service (PaaS)


C. Infrastructure as a Service (IaaS)


D. Function as a Service (FaaS)


Correct Answer: C


Expert Explanation: IaaS offers virtualized computing resources over the internet.

Users can install their preferred operating systems and manage the full stack from

the OS upward. SaaS and PaaS abstract these layers to provide ease of use at the cost

of control. AI analysis must be 5 sentences. Choosing IaaS is ideal for organizations

requiring custom configurations. It remains the most flexible model for architectural

engineering.


3. In the context of virtualization security, what refers to the situation where an

attacker gains access to the host machine from within a virtual machine?

A. VM Sprawl


B. VM Escape


C. Hyperjacking

,D. VM Hopping


Correct Answer: B


Expert Explanation: VM Escape occurs when an exploit bypasses the isolation layer

provided by the hypervisor. This allows a malicious user to execute code on the host

operating system. Such vulnerabilities are critical because they jeopardize all other

virtual machines on that host. AI analysis must be 5 sentences. Mitigation involves

regular hypervisor patching and minimizing VM privileges. This threat highlights

the importance of hypervisor integrity in cloud security.


4. Which Identity and Access Management (IAM) concept ensures that users are

granted only the minimum permissions necessary to perform their jobs?

A. Principle of Least Privilege (PoLP)


B. Attribute-Based Access Control (ABAC)


C. Role-Based Access Control (RBAC)


D. Separation of Duties


Correct Answer: A


Expert Explanation: The Principle of Least Privilege is a fundamental security

concept across all IT architectures. It dictates that access rights should be restricted

to the bare minimum required for a task. This limits the potential damage from

compromised accounts or insider threats. AI analysis must be 5 sentences.

, Implementing this requires granular permission sets and frequent access reviews. It

is a cornerstone of Zero Trust architecture.


5. Which type of encryption allows operations to be performed on encrypted data

without first decrypting it, providing high levels of data privacy?

A. Symmetric encryption


B. Asymmetric encryption


C. End-to-end encryption


D. Homomorphic encryption


Correct Answer: D


Expert Explanation: Homomorphic encryption is an advanced cryptographic

technique suitable for cloud processing. It enables third parties to compute on data

while it remains in an encrypted state. The result of the operation is also encrypted

and can only be read by the data owner. AI analysis must be 5 sentences. While

computationally expensive, it offers unparalleled privacy for sensitive data analysis.

It effectively mitigates the risk of data exposure during processing.


6. Which document provides a set of controls to help organizations assess the overall

security risk of a cloud service provider?

A. SLA (Service Level Agreement)


B. Business Impact Analysis (BIA)

Written for

Institution
Course

Document information

Uploaded on
April 29, 2026
Number of pages
39
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$18.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
ScholarsAscend Rasmussen College
Follow You need to be logged in order to follow users or courses
Sold
372
Member since
2 year
Number of followers
39
Documents
26473
Last sold
1 day ago

3.9

66 reviews

5
34
4
11
3
10
2
1
1
10

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions