Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

WGU (KFO1/D488) Cybersecurity Architecture and Engineering Exam - Topic 5 Question 16 Discussion

A company is concerned about the potential risks associated with unauthorized modifications to the Basic Input/Output System (BIOS) firmware on its servers. The company has decided to implement hardening techniques and endpoint security controls to mitigate the risk.Which technique will prevent unauthorized modifications to the BIOS firmware on a server?
B) BIOS protection
A) Using an intrusion detection system to detect and prevent attacks
C) BIOS monitoring
D) Conducting regular backups of the server's data

WGU (KFO1/D488) Cybersecurity Architecture and Engineering Exam - Topic 5 Question 16 Discussion

Actual exam question for WGU's WGU (KFO1/D488) Cybersecurity Architecture and Engineering exam
Question #: 16
Topic #: 5
[All WGU (KFO1/D488) Cybersecurity Architecture and Engineering Questions]

A company is concerned about the potential risks associated with unauthorized modifications to the Basic Input/Output System (BIOS) firmware on its servers. The company has decided to implement hardening techniques and endpoint security controls to mitigate the risk.

Which technique will prevent unauthorized modifications to the BIOS firmware on a server?

Show Suggested Answer Hide Answer
Suggested Answer: B

BIOS protectioninvolves enabling hardware security features such asfirmware password protection,secure boot, andwrite protection, which prevent unauthorized firmware modifications.

NIST SP 800-147 (BIOS Protection Guidelines):

''Proper BIOS protection mechanisms, including authenticated updates and access control, are critical to maintaining the integrity of the platform's startup environment.''

This is apreventive control. BIOS monitoring is reactive; backups protect data, not firmware integrity.

WGU Course Alignment:

Domain:System Security Engineering

Topic:Apply firmware and BIOS security controls to prevent low-level tampering


Contribute your Thoughts:

0/2000 characters
Toshia
1 day ago
Agreed, D) is the way to go! Can't risk those firmware changes.
upvoted 0 times
...
Georgeanna
6 days ago
Wait, can BIOS protection really prevent all modifications? Sounds too good to be true.
upvoted 0 times
...
Sueann
11 days ago
Regular backups are important, but they won't stop unauthorized changes.
upvoted 0 times
...
Ariel
17 days ago
I think A) BIOS monitoring is also crucial, though.
upvoted 0 times
...
Hassie
22 days ago
Definitely D) BIOS protection! That's the best way to lock it down.
upvoted 0 times
...
Elmira
27 days ago
I’m a bit confused; I thought using an intrusion detection system could help, but I guess it’s more about detection than prevention.
upvoted 0 times
...
Linsey
1 month ago
I practiced a similar question about endpoint security, and I think BIOS protection is definitely the right choice for preventing modifications.
upvoted 0 times
...
Cecily
1 month ago
I think BIOS monitoring could be relevant, but I feel like it might not fully prevent unauthorized changes.
upvoted 0 times
...
Nicolette
1 month ago
I remember studying BIOS protection techniques, but I'm not entirely sure if that's the best answer here.
upvoted 0 times
...

Save Cancel