Cybersecurity WGU C844 EXAM
QUESTIONS WITH CORRECT
ANSWERS||100%GUARANTEED
PASS||A+ GRADED!!||UPDATED
2025/2026||<LATEST VERSION>|
What does the PDCA cycle stand for? - ANSWER ✓ Plan, Do, Check, Act
What is the Sarbanes-Oxley Act (SOX)? - ANSWER ✓ Enacted to address
investor confidence and corporate financial fraud through reporting standards for
public companies. It ensured that public accounting firms would be liable for
failures in financial reporting. Interestingly, SOX did not address information
security directly. In fact, it barely got a mention. What it did address, however, was
corporate governance and the integrity of financial reporting. However, because
financial auditors were one of the principal targets of SOX— and they had
experience implementing and auditing information security systems— the
emphasis was on ensuring the integrity of financial data, which is an information
security role.
What is the purpose of the Gramm-Leach-Bliley Act? - ANSWER ✓ To secure
and protect personally identifiable information held by financial institutions. The
legislation explicitly states that institutions must protect the confidentiality and
integrity of the financial information stored on their systems.
How does the Health Insurance Portability and Accountability Act (HIPAA) relate
to IT? - ANSWER ✓ Focuses on privacy and security for patients receiving health
care, it has a direct impact on IT with regard to how electronic information is
stored and transferred. HIPAA is concerned with C-I-A.
How does the Health Information Technology for Economic and Clinical Health
Act relate to IT? - ANSWER ✓ Addresses privacy and security concerns
,associated with the electronic transmission of health information and supplements
and strengthens the enforcement of HIPAA rules.
What is the Payment Card Industry Data Security Standard (PCI DSS)? -
ANSWER ✓ A comprehensive industry standard aimed at ensuring the safe and
secure handling of credit cardholder information at all steps of the payment
process. This mandatory industry regulation, which began as a series of separate
programs at each of the major credit card companies, was developed in 2004. It
now covers credit, debit, and ATM cards, as well as other forms of electronic
payment.
Which security concern is mitigated when a digital signature is required for shared
documents? - ANSWER ✓ The correct answer is non-repudiation
This is mitigated when a digital signature is required for shared documents
What are Advanced Persistent Threats (APTs)? - ANSWER ✓ They launch multi-
phased attacks to break into networks to harvest valuable information while
avoiding detection. These highly complex, long-term infiltration attacks present a
significant risk to financial institutions and government agencies, among others.
What is a target of opportunity? - ANSWER ✓ A target of opportunity is a target
that has not previously been identified or considered by that becomes available due
to circumstances outside the hacker's control. For example, if someone were to
leave a smartphone or tablet at a coffee shop, that might constitute a target of
opportunity for a hacker.
What is a specific target? - ANSWER ✓ With a specific target, the hacker has a
specific goal in mind. This might be the disruption of a business, the theft of
customer financial data, or even theft of information for market advantage
(corporate espionage).
What is Social Engineering? - ANSWER ✓ Social engineering is the practice of
teasing out information from people that should not be shared to use it to one's
advantage.
What is wardriving? - ANSWER ✓ Wardriving is the 802.11 wireless equivalent
of wardialing , in which phreakers would search banks of telephone numbers
looking for a modem to answer. In this way, they found computer systems that
, were connected to external resources by modems. Now, wardriving attackers
search for wireless access points (WAPs) in a form of unauthorized and covert
reconnaissance.
What is masquerading? - ANSWER ✓ The attacker impersonates authorized users
to gain their level of privilege.
What is replay attack? - ANSWER ✓ The attacker uses a packet analyzer to
capture network traffic between hosts. The hacker can then retransmit that traffic
as through from a legitimate user. The message is correct received, but being
"random" can cause disruptions or server errors.
What is message modification? - ANSWER ✓ This is where an attacker alters,
deletes, adds, or reorders the contents of a message. It is an attack on the integrity.
What is Denial of Service (DoS)? - ANSWER ✓ By constantly transmitting on the
Layer 1 level, a client station can deny others access to the network.
What is a wireless personal area network (WPAN)? - ANSWER ✓ It enables
wearable or mobile wireless devices to peer with each other to form ad hoc
wireless networks. Bluetooth is used to connect peripherals to computers and is
widely employed in business and home electronic consumer devices, which can be
conveniently interconnected without the need for cables.
What is Secure Simple Pairing (SSP)? - ANSWER ✓ SSP is a method of pairing
or connecting Bluetooth devices.
What is bluejacking? - ANSWER ✓ Bluejacking came about through the misuse
of a Bluetooth feature whereby a mobile phone could exchange a "business card"
or messages with another phone in vicinity. It soon became clear, however, that
this was a fine opportunity interruption marketing and advertising.
What is bluesnarfing? - ANSWER ✓ Bluesnarfing a technique whereby an
attacker gains access to unauthorized information on a Bluetooth-enabled device
such as a laptop or, more commonly, a mobile phone. In the case of a mobile
phone, the attacker can then access the contacts, calendar, emails, and text
messages.