
[Nov 16, 2025] Free Courses and Certificates Cybersecurity-Architecture-and-Engineering Exam Question
Cybersecurity-Architecture-and-Engineering dumps & Courses and Certificates sure practice dumps
NEW QUESTION # 99
When is it better to purchase software rather than build a software solution in-house?
- A. When the company has very specific needs
- B. When the company wants internal growth
- C. When there is a short timeline
- D. When the company wants to develop the skill sets of its internal IT staff
Answer: C
Explanation:
It is better to purchase software rather than build a software solution in-house when there is a short timeline.
Building software from scratch requires significant time for development, testing, and deployment. Purchasing off-the-shelf software can significantly reduce the time needed to implement a solution. Other considerations include:
* Cost-effectiveness: Pre-built software can be more cost-effective than developing a custom solution, especially when factoring in the costs of development, maintenance, and support.
* Immediate availability: Purchased software is usually ready to deploy immediately, whereas custom development can take months or even years.
* Proven reliability: Commercial software often has a track record of reliability and user support, reducing the risk of bugs and issues that may arise with custom development.
Therefore, when time is of the essence, purchasing software is the preferable option.
References
* Ian Sommerville, "Software Engineering," Pearson.
* Steve McConnell, "Rapid Development: Taming Wild Software Schedules," Microsoft Press.
NEW QUESTION # 100
Why should an information technology (IT) professional be aware of professional associations?
- A. Professional associations upgrade the company's network.
- B. Professional associations provide up-to-date training.
- C. Professional associations give feedback to management.
- D. Professional associations will ensure higher quality work.
Answer: B
Explanation:
Professional associations are vital for IT professionals because they:
* Provide up-to-date training: Offering courses, certifications, and workshops to keep members current with the latest technologies, practices, and industry standards.
* Networking opportunities: Facilitating connections with other professionals in the field, which can lead to job opportunities and collaborations.
* Professional development: Offering resources and support for career growth and development.
* Industry standards and best practices: Providing guidelines and frameworks to ensure high-quality work and ethical practices.
Staying engaged with professional associations helps IT professionals remain knowledgeable and competent in their field.
References
* CompTIA, "Advancing the Global IT Industry."
* ISACA, "Building a Better Digital World."
NEW QUESTION # 101
A security team is investigating multiple man-in-the-middle attacks that have taken place on the corporate network over the past few months. The team needs a solution that will ensure that data is not exposed if a man- in-the-middle attack occurs in the future.
What is the best solution?
- A. Enforcing password history
- B. Ensuring all users have complex passwords
- C. Disabling Wi-Fi connections
- D. Encrypting data
Answer: D
Explanation:
The correct answer is C - Encrypting data.
WGU Cybersecurity Architecture and Engineering (KFO1 / D488) states that encryption is the best defense against man-in-the-middle attacks because even if traffic is intercepted, the data remains unreadable without the appropriate decryption keys.
Disabling Wi-Fi (A) is not practical and does not eliminate MITM threats entirely. Password policies (B and D) strengthen account security but do not protect data transmission.
Reference Extract from Study Guide:
"Encryption ensures the confidentiality of data in transit, preventing unauthorized parties from accessing the content even during man-in-the-middle attacks."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Data Transmission Security
NEW QUESTION # 102
An e-learning company uses Amazon Simple Storage Service (Amazon S3) to store e-books and video files that are served to customers through a custom application. The company has realized that someone has been stealing its intellectual property.
Which threat actor is most likely in this scenario?
- A. Competitor
- B. Hacktivist
- C. Novice hacker
- D. Advanced persistent threat
Answer: A
Explanation:
The correct answer is C - Competitor.
According to WGU Cybersecurity Architecture and Engineering (KFO1 / D488), competitors often attempt to steal intellectual property to gain a business advantage. Given the theft of valuable business assets (e-books and videos), the most likely actor is a competitor motivated by financial or market advantage, not ideology or random hacking.
An APT (A) is usually nation-state-sponsored and targets critical infrastructure. A novice hacker (B) might deface or cause damage but is less likely focused on IP theft. Hacktivists (D) are politically motivated, not financially.
Reference Extract from Study Guide:
"Competitors may engage in cyber espionage to steal intellectual property and gain market advantage, representing a significant threat to business assets."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Threat Actor Categories
NEW QUESTION # 103
A government agency is evaluating its business continuity plan to ensure that its operations can continue during a crisis.
What is the term used to describe the critical services that must be maintained during a disruption?
- A. Recovery point objective (RPO)
- B. Business continuity planning (BCP)
- C. Disaster recovery (DR)
- D. Mission essential functions (MEFs)
Answer: D
Explanation:
The correct answer is D - Mission essential functions (MEFs).
WGU Cybersecurity Architecture and Engineering (KFO1 / D488) specifies that mission essential functions (MEFs) are those activities that must be maintained or resumed quickly during or after a disruption to ensure continuity of critical operations, particularly for government agencies.
BCP (A) is the plan itself. DR (B) focuses on IT and system recovery. RPO (C) measures acceptable data loss but does not define critical services.
Reference Extract from Study Guide:
"Mission essential functions (MEFs) are critical activities that must be performed continuously or resumed quickly after disruption to support business or agency operations."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Continuity of Operations Planning
NEW QUESTION # 104
Which risk management strategy will help defeat piracy efforts on a new patient management system?
- A. Implementation of regular virus scanning for all workstations
- B. Implementation of licensing technologies in order to restrict unauthorized access to the system
- C. Incorporation of end-to-end encryption for all patient data
- D. Configuration of the patient management system to disable all external device connections on all workstations
Answer: B
Explanation:
The correct answer is D - Implementation of licensing technologies in order to restrict unauthorized access to the system.
According to WGU Cybersecurity Architecture and Engineering (KFO1 / D488), using licensing technologies helps prevent software piracy by ensuring that only authorized users with valid licenses can access and operate the system. License management solutions validate user access and reduce unauthorized duplication or usage of proprietary software.
Disabling external devices (A) protects against physical data theft but not piracy. Encrypting patient data (B) protects confidentiality but not against software piracy. Virus scanning (C) detects malware, not unauthorized software copying.
Reference Extract from Study Guide:
"Licensing technologies enforce legal software use and prevent unauthorized access, helping organizations protect intellectual property and defeat piracy efforts."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Software and Intellectual Property Protection
NEW QUESTION # 105
Which item information should be stored in a database to determine an order total?
- A. Item order line
- B. Item description
- C. Item unit price
- D. Item restock levels
Answer: C
Explanation:
To determine an order total, the item unit price is essential because it represents the cost per unit of the item.
By multiplying the unit price by the quantity ordered, you can calculate the total cost for each item in the order, and then sum these totals to get the overall order total.
NEW QUESTION # 106
Which software allows the user to easily access the hardware of a computer?
- A. FTP client
- B. Application
- C. Operating system
- D. Productivity
Answer: C
Explanation:
The operating system (OS) is the primary software that manages all the hardware and other software on a computer. It acts as an intermediary between users and the computer hardware. The OS handles basic tasks such as controlling and allocating memory, prioritizing system requests, controlling input and output devices, facilitating networking, and managing files. Examples include Windows, macOS, and Linux.
NEW QUESTION # 107
Which device does a Local Area Network (LAN) need to communicate over the Internet?
- A. Multiplexer
- B. Repeater
- C. Router
- D. Switch
Answer: C
Explanation:
* A Local Area Network (LAN) requires a router to communicate over the Internet.
* The router serves as a gateway that connects the LAN to the external network (Internet) and directs data traffic between the LAN and the Internet.
* The other options:
* Multiplexer combines multiple signals into one.
* Repeater amplifies signals to extend the range.
* Switch connects devices within the LAN but does not facilitate Internet communication.
* Therefore, a router is the necessary device for a LAN to communicate over the Internet.
References:
* "Computer Networking: A Top-Down Approach" by James Kurose and Keith Ross, which explains network devices and their functions.
* "CCNA Routing and Switching Study Guide" by Todd Lammle, which covers routers and their roles in networks.
NEW QUESTION # 108
A corporate website is currently being redesigned, which leaves it vulnerable to security threats. Management does not want to provide an attacker with any information about the web server. Which strategy should be used to prevent an attacker from gaining unauthorized information?
- A. Enabling Hypertext Transfer Protocol Secure (HTTPS) over Domain Name Service (DNS)
- B. Obfuscating error messages on the site or within the Uniform Resource Locator (URL)
- C. Using HTTPS for all page and content requests
- D. Becoming PCI-DSS compliant and certified
Answer: B
Explanation:
Obfuscating error messagesprevents attackers from receiving technical details (e.g., software version, file paths, or database errors) that they can use for exploitation. This is part ofsecure codinganderror handlingpractices.
OWASP Secure Coding Practices - Error Handling and Logging:
"Applications should not disclose detailed error messages to users. Instead, provide generic messages to prevent leakage of system or application details." HTTPS secures transport, but doesn't addressinformation disclosurevia error output.
#WGU Course Alignment:
Domain:Information Systems and Architecture
Topic:Implement secure design practices (e.g., error handling, obfuscation)
NEW QUESTION # 109
A company wants to improve the security of its software development process and reduce the risk of vulnerabilities in its applications. The company is looking for a solution that can isolate its applications and provide a secure environment for development and testing.
Which security technology meets the needs of this company?
- A. Firewall
- B. Virtual private network (VPN)
- C. Data loss prevention (DLP)
- D. Containerization
Answer: D
Explanation:
The correct answer is D - Containerization.
WGU Cybersecurity Architecture and Engineering (KFO1 / D488) material states that containerization provides isolated environments (containers) where applications can be developed, tested, and deployed securely. This isolation minimizes the risk of vulnerabilities affecting the host system or other applications, improving the overall security of the development process.
DLP (A) prevents data leakage but does not isolate applications. VPNs (B) secure network traffic but do not create isolated development environments. Firewalls (C) control network traffic but do not manage application-level isolation.
Reference Extract from Study Guide:
"Containerization secures application development and deployment by isolating applications in lightweight, standalone environments, reducing risk and improving manageability."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Application Security Concepts
NEW QUESTION # 110
An IT organization recently implemented a hybrid cloud deployment. The security team must be able to correlate event data combined from different sources in a central location.
What is the best solution?
- A. File integrity monitoring (FIM)
- B. Data loss prevention (DLP)
- C. Intrusion detection system (IDS)
- D. Security information and event management (SIEM)
Answer: D
Explanation:
The correct answer is D - Security information and event management (SIEM).
According to WGU Cybersecurity Architecture and Engineering (KFO1 / D488), a SIEM collects and correlates event data from multiple sources (such as cloud and on-premises environments) in real-time. It provides centralized visibility, analysis, and alerting, which is critical in hybrid cloud deployments.
File integrity monitoring (A) watches for unauthorized file changes, not event correlation. DLP (B) protects sensitive data but does not correlate events. IDS (C) detects network intrusions but does not combine event data centrally.
Reference Extract from Study Guide:
"Security information and event management (SIEM) systems collect, normalize, correlate, andanalyze security event data from multiple sources, providing centralized monitoring and alerting."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Security Monitoring and Event Management
NEW QUESTION # 111
An IT organization needs to enable secure communication across virtual networks in Microsoft Azure and Amazon Web Services. Which protocol will offer the most reliable and secure method for data transport?
- A. File Transfer Protocol (FTP)
- B. Internet Protocol Security (IPsec)
- C. Secure Shell (SSH)
Answer: B
Explanation:
IPsecis anend-to-end encryption protocol suitethat operates at thenetwork layer, providingauthentication, integrity, and confidentialitybetween virtual networks-even across different cloud environments like Azure and AWS.
NIST SP 800-77 Rev. 1 (Guide to IPsec VPNs):
"IPsec provides network-layer protection through authentication headers (AH) and encapsulating security payloads (ESP), suitable for securing traffic across untrusted environments." FTP is insecure, and SSH is more suitable for command-line access or remote sessions-not secure VPC-to- VPC tunnels.
#WGU Course Alignment:
Domain:Cryptography
Topic:Use encryption protocols like IPsec for secure data transmission between networks
NEW QUESTION # 112
A company wants to secure its computer systems and prevent any unauthorized access to its network. The company wants to implement a security solution that can restrict network traffic to only approved services and applications.
Which security technology will meet the needs of this company?
- A. Host-based firewall
- B. Hardware security module (HSM)
- C. Antivirus tools
- D. Two-factor authentication
Answer: A
Explanation:
The correct answer is C - Host-based firewall.
According to the WGU Cybersecurity Architecture and Engineering (KFO1 / D488) materials, a host-based firewall enforces traffic control policies at the endpoint level. It can allow or deny traffic based on application, port, IP address, and protocol rules, restricting access to only approved services and applications on a system.
Antivirus tools (A) detect malware but do not control network traffic. Two-factor authentication (B) secures user access but does not manage network traffic. HSMs (D) handle encryption keys, not network access control.
Reference Extract from Study Guide:
"Host-based firewalls restrict traffic at the system level, permitting only authorized services and applications, enhancing endpoint security."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Endpoint Protection and Firewalls
NEW QUESTION # 113
An organization wants to ensure that its website is free of certain vulnerabilities before the final handoff to the client. What testing method should the organization use to inspect traffic and detect potential issues?
- A. HTTP interceptor
- B. Port scanner
- C. Bastion scanner
Answer: C
Explanation:
Abastion scanneris a tool or hardened system that inspects network traffic and identifies security vulnerabilities, particularly those visible from an external (internet-facing) viewpoint. It plays a key role inpost-development assessment.
OWASP Testing Guide v4.2:
"Use bastion hosts or hardened scanners to perform vulnerability assessments from an attacker's perspective." This option is preferable for final validation before system release, especially when looking for exposure from the public internet.
#WGU Course Alignment:
Domain:System Security Engineering
Topic:Evaluate hardened systems and scanning tools during release validation
NEW QUESTION # 114
Which is true about access rights?
- A. They are part of the System Development Life Cycle.
- B. They limit users to permitted items.
- C. They are defined by the machine language.
- D. They require the use of a compiler.
Answer: B
Explanation:
Access rights are critical components of access control mechanisms in information security. They specify what actions users or systems can perform on specific resources, limiting them to only permitted items.
* Definition: Access rights, also known as permissions, are rules that define the allowed actions on a resource (e.g., read, write, execute).
* Implementation: Access rights are typically implemented using Access Control Lists (ACLs), Role-Based Access Control (RBAC), or other access control models.
* Purpose: The main goal is to enforce the principle of least privilege, ensuring that users can only access the resources necessary for their role.
References
* NIST Special Publication 800-53
* ISO/IEC 27001:2013
* "Computer Security: Principles and Practice" by William Stallings
NEW QUESTION # 115
Which two languages are scripted?
Choose 2 answers
- A. Ada
- B. Python
- C. C
- D. PHP
Answer: B,D
Explanation:
Scripting languages are designed for integrating and communicating with other programming languages.
* Python: A high-level scripting language known for its readability and extensive library support.
* PHP: A server-side scripting language used primarily for web development.
References
* "Python Crash Course" by Eric Matthes
* "PHP and MySQL Web Development" by Luke Welling and Laura Thomson
NEW QUESTION # 116
A company is concerned about the security of its users' passwords and is looking for a solution to ensure that user credentials are kept safe.
What is the best solution?
- A. Hardware key manager
- B. Removable storage
- C. Object storage
- D. Password policies
Answer: D
Explanation:
The correct answer is B - Password policies.
WGU Cybersecurity Architecture and Engineering (KFO1 / D488) emphasizes that strong password policies, including requirements for complexity, minimum length, expiration, and reuse restrictions, are essential for protecting user credentials from compromise.
Object storage (A) and removable storage (C) deal with data storage, not password management. Hardware key managers (D) manage cryptographic keys, not passwords directly.
Reference Extract from Study Guide:
"Implementing strong password policies enforces secure password practices among users, reducing the risk of credential compromise."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Identity and Access Management Controls
NEW QUESTION # 117
Which item facilitates communication between applications and databases?
- A. Application database
- B. Application driver
- C. Database driver
- D. Database application
Answer: C
Explanation:
A database driver is a software component that enables communication between an application and a database.
* Function: It acts as a bridge, allowing applications to send queries to the database and retrieve results.
* Types: Common database drivers include ODBC (Open Database Connectivity) and JDBC (Java Database Connectivity).
References
* "Database System Concepts" by Abraham Silberschatz, Henry F. Korth, and S. Sudarshan
* "Data Management for Researchers" by Kristin Briney
Top of Form
NEW QUESTION # 118
Which risk management strategy will ensure the secure configuration and deployment of a new online banking system and help prevent credit card fraud?
- A. Implementation of a strict firewall policy to restrict access to the system's server
- B. Configuration of the system to disable all email services on all workstations
- C. Implementation of real-time transaction monitoring
- D. Use of regular system backups to an off-site location
Answer: C
Explanation:
Real-time transaction monitoringhelps detect and respond to fraudulent activities (e.g., unauthorized access, anomalous transactions) as they happen. It's critical in high-risk environments likeonline banking systems.
FFIEC IT Examination Handbook (Retail Payment Systems):
"Real-time fraud detection systems monitor for suspicious or anomalous transactions that may indicate identity theft, account takeover, or credit card fraud." This is anactive, risk-aware controlthat's far more effective than backups or email restrictions for this use case.
#WGU Course Alignment:
Domain:Security Operations and Monitoring
Topic:Implement real-time monitoring systems for financial fraud detection
NEW QUESTION # 119
A consultancy organization has many employees who travel with different mobile devices. Having the employees visit an office to update their devices is not feasible due to their travel schedule.
How should the organization ensure that its employees receive the latest security updates?
- A. By providing remote module updates
- B. By providing over-the-air updates
- C. By providing tokenized container updates
- D. By providing mobile station updates
Answer: B
Explanation:
The correct answer is D - By providing over-the-air updates.
WGU Cybersecurity Architecture and Engineering (KFO1 / D488) describes that over-the-air(OTA) updates allow organizations to remotely deploy patches and updates to mobile devices without requiring users to manually visit a central location. This method is essential for maintaining security for a geographically dispersed workforce.
Remote module updates (A), tokenized container updates (B), and mobile station updates (C) are not standard or widely recognized terms for mobile device update practices in this context.
Reference Extract from Study Guide:
"Over-the-air (OTA) updates ensure that security patches and software updates can be remotely deployed to mobile devices, supporting business continuity and device security."
- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Mobile Device Management and Security
NEW QUESTION # 120
......
WGU Cybersecurity-Architecture-and-Engineering Actual Questions and Braindumps: https://www.freecram.com/WGU-certification/Cybersecurity-Architecture-and-Engineering-exam-dumps.html
Pass Cybersecurity-Architecture-and-Engineering Exam with Updated Cybersecurity-Architecture-and-Engineering Exam Dumps PDF 2025: https://drive.google.com/open?id=174Lh7a1j-q5lbXQna8ABHlHyEXQKlPyK