g g g g g g
DESIGN EXAM LATEST 2024 ACTUAL EXAM 400 QUESTIONS
g g g g g g g g
AND CORRECT DETAILED ANSWERS WITH RATIONALES (VE
g g g g g g
RIFIED ANSWERS) |ALREADY GRADED A+
g g g g
Whatgisgagstepgforgconstructinggagthreatgmodelgforgagprojectgwhengusinggpracticalgriskganalysis?
AgAligngyourgbusinessggoals
BgApplygengineeringgmethods
CgEstimategprobabilitygofgprojectgtime
DgMakegaglistgofgwhatgyougaregtryinggtogprotectg-gANSWER-D
Whichgcybergthreatsgaregtypicallygsurgicalgbygnature,ghaveghighlygspecificgtargeting,gandgaregtechnolo
gicallygsophisticated?
AgTacticalgattacks
BgCriminalgattacks
CgStrategicgattacks
DgUser-specificgattacksg-gANSWER-A
Whichgtypegofgcyberattacksgaregoftengintendedgtogelevategawarenessgofgagtopic?
AgCyberwarfare
BgTacticalgattacks
CgUser-specificgattacks
DgSociopoliticalgattacksg-gANSWER-D
Whatgtypegofgattackglocksgaguser'sgdesktopgandgthengrequiresgagpaymentgtogunlockgit?
AgPhishing
, WGU MASTER'S COURSE C706 - SECURE SOFTWARE
g g g g g g
DESIGN EXAM LATEST 2024 ACTUAL EXAM 400 QUESTIONS
g g g g g g g g
AND CORRECT DETAILED ANSWERS WITH RATIONALES (VE
g g g g g g
RIFIED ANSWERS) |ALREADY GRADED A+
g g g g
BgKeylogger
CgRansomware
DgDenial-of-serviceg-gANSWER-C
WhatgisgagcountermeasuregagainstgvariousgformsgofgXMLgandgXMLgpathginjectiongattacks?
AgXMLgnamegwrapping
BgXMLgunicodegencoding
CgXMLgattributegescaping
DgXMLgdistinguishedgnamegescapingg-gANSWER-C
WhichgcountermeasuregisgusedgtogmitigategSQLginjectiongattacks?
AgSQLgFirewall
BgProjectedgbijection
CgQuerygparameterization
DgProgressivegColdFusiong-gANSWER-C
Whatgisgangappropriategcountermeasuregtogangescalationgofgprivilegegattack?
AgEnforcinggstronggpasswordgpolicies
BgUsinggstandardgencryptiongalgorithmsgandgcorrectgkeygsizes
CgEnablinggthegauditinggandglogginggofgallgadministrationgactivities
DgRestrictinggaccessgtogspecificgoperationsgthroughgrole-basedgaccessgcontrolsg-gANSWER-D
, WGU MASTER'S COURSE C706 - SECURE SOFTWARE
g g g g g g
DESIGN EXAM LATEST 2024 ACTUAL EXAM 400 QUESTIONS
g g g g g g g g
AND CORRECT DETAILED ANSWERS WITH RATIONALES (VE
g g g g g g
RIFIED ANSWERS) |ALREADY GRADED A+
g g g g
Whichgconfigurationgmanagementgsecuritygcountermeasuregimplementsgleastgprivilegegaccessgcontrol
?
AgFollowinggstronggpasswordgpoliciesgtogrestrictgaccess
BgRestrictinggfilegaccessgtogusersgbasedgongauthorization
CgAvoidinggcleargtextgformatgforgcredentialsgandgsensitivegdata
DgUsinggAESg256gencryptiongforgcommunicationsgofgagsensitivegnatureg-gANSWER-B
Whichgphasegofgthegsoftwaregdevelopmentglifegcycleg(SDL/SDLC)gwouldgbegusedgtogdeterminegtheg
minimumgsetgofgprivilegesgrequiredgtogperformgthegtargetedgtaskgandgrestrictgthegusergtogagdomaing
withgthosegprivileges?
AgDesign
BgDeploy
CgDevelopment
DgImplementationg-gANSWER-A
Whichgleastgprivilegegmethodgisgmoreggranulargingscopegandggrantsgspecificgprocessesgonlygthegprivi
legesgnecessarygtogperformgcertaingrequiredgfunctions,ginsteadgofggrantinggthemgunrestrictedgaccess
gtogthegsystem?
AgEntitlementgprivilege
BgSeparationgofgprivilege
CgAggregationgofgprivileges
DgSegregationgofgresponsibilitiesg-gANSWER-B
Whygdoesgprivilegegcreepgposegagpotentialgsecuritygrisk?
, WGU MASTER'S COURSE C706 - SECURE SOFTWARE
g g g g g g
DESIGN EXAM LATEST 2024 ACTUAL EXAM 400 QUESTIONS
g g g g g g g g
AND CORRECT DETAILED ANSWERS WITH RATIONALES (VE
g g g g g g
RIFIED ANSWERS) |ALREADY GRADED A+
g g g g
AgUsergprivilegesgdognotgmatchgtheirgjobgrole.
BgWithgmoregprivileges,gtheregaregmoregresponsibilities.
CgAuditinggwillgshowgagmismatchgbetweengindividualgresponsibilitiesgandgtheirgaccessgrights.
DgUsersghavegmoregprivilegesgthangtheygneedgandgmaygperformgactionsgoutsidegtheirgjobgdescriptio
n.g-gANSWER-D
Agsystemgdevelopergisgimplementinggagnewgsalesgsystem.gThegsystemgdevelopergisgconcernedgthatgun
authorizedgindividualsgmaygbegablegtogviewgsensitivegcustomergfinancialgdata.
Whichgfamilygofgnonfunctionalgrequirementsgshouldgbegconsideredgasgpartgofgthegacceptancegcriteria?
AgIntegrity
BgAvailability
CgNonrepudition
DgConfidentialityg-gANSWER-D
Agprojectgmanagergisggivengthegtaskgtogcomegupgwithgnonfunctionalgacceptancegcriteriagrequirement
sgforgbusinessgownersgasgpartgofgagprojectgdelivery.
Whichgnonfunctionalgrequirementgshouldgbegappliedgtogthegacceptancegcriteria?
AgGivegsearchgoptionsgtogusers
BgEvaluategtestgexecutiongresults
CgDividegusersgintoggroupsgandggivegthemgseparategrights
DgDevelopgsoftwaregthatgkeepsgdownwardgcompatibilitygintactg-gANSWER-B