WGU D488 - CYBERSECURITY ARCHITECTURE & ENGINEERING
Cybersecurity Architecture and Engineering - D488
EXAM QUESTIONS AND ANSWERS (VERIFIED AND WELL DETAILED
Study online at https://quizlet.com/_fujvpk
ANSWERS)
1. The security team recently enabled pub- Web application firewall (WAF)
lic access to a web application hosted
on a server inside the corporate net-
work. The developers of the application
report that the server has received sev-
eral structured query language (SQL) in-
jection attacks in the past several days.
The team needs to deploy a solution that
will block the SQL injection attacks.
Which solution fulfills these require-
ments?
2. An IT security team has been notified Implementing port security
that external contractors are using their
personal laptops to gain access to the
corporate network. The team needs to
recommend a solution that will prevent
unapproved devices from accessing the
network.
Which solution fulfills these require-
ments?
3. The chief technology officer for a small Deploying a unified threat management (UTM)
publishing company has been tasked appliance
with improving the company's security
posture. As part of a network upgrade,
the company has decided to implement
intrusion detection, spam filtering, con-
tent filtering, and antivirus controls. The
project needs to be completed using
, Cybersecurity Architecture and Engineering - D488
Study online at https://quizlet.com/_fujvpk
the least amount of infrastructure while
meeting all requirements.
Which solution fulfills these require-
ments?
4. The security team plans to deploy an Signature-based detection
intrusion detection system (IDS) solu-
tion to alert engineers about inbound
threats. The team already has a data-
base of signatures that they want the
IDS solution to validate.
Which detection technique meets the re-
quirements?
5. An IT organization had a security breach Implementing versioning
after deploying an update to its produc-
tion web servers. The application cur-
rently goes through a manual update
process a few times per year. The securi-
ty team needs to recommend a failback
option for future deployments.
Which solution fulfills these require-
ments?
6. A software development team is work- Code signing
ing on a new mobile application that will
be used by customers. The security team
must ensure that builds of the applica-
tion will be trusted by a variety of mobile
devices.
, Cybersecurity Architecture and Engineering - D488
Study online at https://quizlet.com/_fujvpk
Which solution fulfills these require-
ments?
7. * An IT organization recently suffered Digital rights management (DRM)
a data leak incident. Management has
asked the security team to implement a
print blocking mechanism for all docu-
ments stored on a corporate file share.
Which solution fulfills these require-
ments?
8. A company has recently discovered that Digital rights management (DRM)
a competitor is distributing copyrighted
videos produced by the in-house mar-
keting team. Management has asked
the security team to prevent these types
of violations in the future.
Which solution fulfills these require-
ments?
9. * A security team has been tasked with Automatically
performing regular vulnerability scans
for a cloud-based infrastructure.
How should these vulnerability scans
be conducted when implementing zero
trust security?
10. * A healthcare company needs to en- Anonymization
sure that medical researchers cannot in-
Cybersecurity Architecture and Engineering - D488
EXAM QUESTIONS AND ANSWERS (VERIFIED AND WELL DETAILED
Study online at https://quizlet.com/_fujvpk
ANSWERS)
1. The security team recently enabled pub- Web application firewall (WAF)
lic access to a web application hosted
on a server inside the corporate net-
work. The developers of the application
report that the server has received sev-
eral structured query language (SQL) in-
jection attacks in the past several days.
The team needs to deploy a solution that
will block the SQL injection attacks.
Which solution fulfills these require-
ments?
2. An IT security team has been notified Implementing port security
that external contractors are using their
personal laptops to gain access to the
corporate network. The team needs to
recommend a solution that will prevent
unapproved devices from accessing the
network.
Which solution fulfills these require-
ments?
3. The chief technology officer for a small Deploying a unified threat management (UTM)
publishing company has been tasked appliance
with improving the company's security
posture. As part of a network upgrade,
the company has decided to implement
intrusion detection, spam filtering, con-
tent filtering, and antivirus controls. The
project needs to be completed using
, Cybersecurity Architecture and Engineering - D488
Study online at https://quizlet.com/_fujvpk
the least amount of infrastructure while
meeting all requirements.
Which solution fulfills these require-
ments?
4. The security team plans to deploy an Signature-based detection
intrusion detection system (IDS) solu-
tion to alert engineers about inbound
threats. The team already has a data-
base of signatures that they want the
IDS solution to validate.
Which detection technique meets the re-
quirements?
5. An IT organization had a security breach Implementing versioning
after deploying an update to its produc-
tion web servers. The application cur-
rently goes through a manual update
process a few times per year. The securi-
ty team needs to recommend a failback
option for future deployments.
Which solution fulfills these require-
ments?
6. A software development team is work- Code signing
ing on a new mobile application that will
be used by customers. The security team
must ensure that builds of the applica-
tion will be trusted by a variety of mobile
devices.
, Cybersecurity Architecture and Engineering - D488
Study online at https://quizlet.com/_fujvpk
Which solution fulfills these require-
ments?
7. * An IT organization recently suffered Digital rights management (DRM)
a data leak incident. Management has
asked the security team to implement a
print blocking mechanism for all docu-
ments stored on a corporate file share.
Which solution fulfills these require-
ments?
8. A company has recently discovered that Digital rights management (DRM)
a competitor is distributing copyrighted
videos produced by the in-house mar-
keting team. Management has asked
the security team to prevent these types
of violations in the future.
Which solution fulfills these require-
ments?
9. * A security team has been tasked with Automatically
performing regular vulnerability scans
for a cloud-based infrastructure.
How should these vulnerability scans
be conducted when implementing zero
trust security?
10. * A healthcare company needs to en- Anonymization
sure that medical researchers cannot in-