Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Pass the WGU Courses and Certificates Cybersecurity-Architecture-and-Engineering Questions and answers with ValidTests

Exam Cybersecurity-Architecture-and-Engineering All Questions
Exam Cybersecurity-Architecture-and-Engineering Premium Access

View all detail and faqs for the Cybersecurity-Architecture-and-Engineering exam

Viewing page 6 out of 7 pages
Viewing questions 51-60 out of questions
Questions # 51:

An e-learning company uses Amazon Simple Storage Service (Amazon S3) to store e-books and video files that are served to customers through a custom application. The company has realized that someone has been stealing its intellectual property. Which threat actor is most likely in this scenario?

Options:

A.

Competitor

B.

Hacktivist

C.

Advanced Persistent Threat

D.

Novice hacker

Expert Solution
Questions # 52:

Which action should an IT department take if an organization decides to expand its business by selling products online?

Options:

A.

Make sure the website can handle e-commerce transactions

B.

Ensure that the strategic goals aligned with the organization's mission statement

C.

Market the company’s products or services

D.

Manage capital to ensure a successful website

Expert Solution
Questions # 53:

An IT organization has recently migrated its servers to the cloud. The security team needs to delegate administrative control of multiple cloud services to various administrators inside the company. This team needs a granular solution that will offer the most flexibility while maintaining a secure posture.

What is the best solution?

Options:

A.

Open Authorization (OAuth)

B.

Security Assertion Markup Language (SAML)

C.

Role-based access control (RBAC)

D.

Kerberos

Expert Solution
Questions # 54:

A company with a hybrid cloud deployment needs to identify all possible threat types that could impact production systems.

Which threat hunting technique should be used to identify potential attacks that have already occurred?

Options:

A.

Honeypots

B.

Log analysis

C.

Social engineering

D.

Penetration testing

Expert Solution
Questions # 55:

The DevSecOps team for an organization manages a continuous integration and continuous deployment (CI/CD) pipeline for a three-tier web application. Management has asked the team to perform a series of comprehensive post-deployment tests to make sure that all of the components of the application can interact and function properly.

Options:

A.

Dynamic code analysis

B.

Integration testing

C.

Static code analysis

D.

Package scanning

Expert Solution
Questions # 56:

Which part of the Uniform Resource Locator (URL) identifies the server on which the web page can be found?

Options:

A.

Resource path ID

B.

Domain name

C.

Protocol

D.

IP address

Expert Solution
Questions # 57:

Which risk management strategy will help prevent cheating using a learning management system as a platform?

Options:

A.

Implementation of secure user authentication protocols

B.

Implementation of regular software updates and patch management

C.

Enforcement of a strict firewall policy to restrict access to the system’s server

D.

Configuration of the system to disable all Bluetooth services on all workstations

Expert Solution
Questions # 58:

An IT team has been tasked with improving the security of a company’s web applications.

Which threats should the IT team consider detecting when defending the network with a web application firewall (WAF)?

Options:

A.

Phishing attacks

B.

Brute force attacks

C.

Structured Query Language (SQL) injection attacks

D.

Social engineering attacks

Expert Solution
Questions # 59:

A company has discovered a vulnerability in its Domain Name System (DNS) that could allow attackers to redirect users to malicious websites. The company has decided to implement a risk management strategy to mitigate this vulnerability.

What is the most effective risk management strategy for this vulnerability?

Options:

A.

Increasing the frequency of DNS server patching

B.

Conducting regular security awareness training for employees on the risks of phishing attacks

C.

Implementing Domain Name System Security Extensions (DNSSEC) to digitally sign DNS responses and prevent DNS spoofing attacks

D.

Restricting DNS access to trusted Internet Protocol (IP) addresses only

Expert Solution
Questions # 60:

A large technology company has discovered a known vulnerability in its network infrastructure.The infrastructure contains a number of retired assets that are no longer receiving security updates, which could potentially be exploited by attackers to compromise the network. The company has decided to implement hardening techniques and endpoint security controls to mitigate the risk.

Which hardening technique will meet the needs of this company?

Options:

A.

Conducting regular vulnerability scans to identify potential weaknesses

B.

Implementing intrusion detection and prevention systems (IDPS)

C.

Enforcing strict access control policies for all network devices

D.

Removing all end-of-life devices from the network

Expert Solution
Viewing page 6 out of 7 pages
Viewing questions 51-60 out of questions