Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

D487 STUDY GUIDE 2026 PRACTICE QUESTIONS AND ANSWERS FULL SOLUTION VERIFIED STUDY PACK GRADED A+

Rating
-
Sold
-
Pages
22
Grade
A+
Uploaded on
15-05-2026
Written in
2025/2026

D487 STUDY GUIDE 2026 PRACTICE QUESTIONS AND ANSWERS FULL SOLUTION VERIFIED STUDY PACK GRADED A+

Institution
D487 STUDY
Course
D487 STUDY

Content preview

D487 STUDY GUIDE 2026 PRACTICE
QUESTIONS AND ANSWERS FULL
SOLUTION VERIFIED STUDY PACK
GRADED A+

⩥ Secure Design Principles.
Answer: Common principles like least privilege, fail-safe defaults, and
defense in depth.


⩥ Saltzer and Schroeder Principles.
Answer: Security design principles used to build secure systems.


⩥ Fail-Safe Defaults.
Answer: Deny by default unless explicitly allowed.


⩥ Economy of Mechanism.
Answer: Keep designs simple to reduce mistakes and hidden paths.


⩥ Complete Mediation.
Answer: Check every access request, every time.


⩥ Separation of Duties.

,Answer: Require multiple conditions/roles for sensitive actions.


⩥ Least Common Mechanism.
Answer: Avoid shared mechanisms that create hidden channels.


⩥ Psychological Acceptability.
Answer: Security controls must be usable or people will bypass them.


⩥ Open Design.
Answer: Security should not rely on secret designs; rely on strong
controls.


⩥ Weakest Link.
Answer: A system's security is only as strong as its weakest component.


⩥ Privacy Impact Assessment (PIA).
Answer: Review of how software handles personal data and privacy risk.


⩥ PII (Personally Identifiable Information).
Answer: Data that can identify a person (name, email, ID number).


⩥ PHI (Protected Health Information).

, Answer: Health-related information that must be protected under
healthcare rules.


⩥ Privacy by Design.
Answer: Building privacy controls into every SDLC stage.


⩥ Data Minimization.
Answer: Collect only the data that is necessary for business purpose.


⩥ Notice and Consent.
Answer: Telling users what data is collected and getting permission
when required.


⩥ Privacy Impact Rating.
Answer: P1 high risk, P2 moderate risk, P3 low risk.


⩥ P1 Privacy Risk.
Answer: Stores/transmits PII, installs software, or changes user settings.


⩥ P2 Privacy Risk.
Answer: One-time anonymous data transfer initiated by user.

Written for

Institution
D487 STUDY
Course
D487 STUDY

Document information

Uploaded on
May 15, 2026
Number of pages
22
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$10.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller
Seller avatar
EddieJessup

Get to know the seller

Seller avatar
EddieJessup Havard School
Follow You need to be logged in order to follow users or courses
Sold
12
Member since
6 months
Number of followers
1
Documents
6187
Last sold
2 days ago

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions