A company wants to ensure that the integrity of its systems is maintained during the startup process.
Which security technology can ensure the integrity of the system during startup by verifying that the system has not been compromised?
The correct answer is D --- Measured boot.
WGU Cybersecurity Architecture and Engineering (KFO1 / D488) explains that Measured Boot, often implemented with Trusted Platform Modules (TPMs), ensures that each component of theboot process is verified for integrity. It provides cryptographic evidence that the system's startup sequence has not been tampered with.
Two-factor authentication (A) secures user logins but does not verify boot integrity. IDS (B) monitors network or host behavior but does not protect the boot process. HSM (C) secures cryptographic operations, not the system boot.
Reference Extract from Study Guide:
'Measured Boot verifies the integrity of the boot process, providing assurance that the system has not been compromised during startup.'
--- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), System Hardening and Trusted Computing
=============================================
An on-call security engineer has been notified after business hours that a possible threat could be impacting production applications.
Which type of threat intelligence should be used by first responders?
The correct answer is A --- Tactical.
Based on WGU Cybersecurity Architecture and Engineering (KFO1 / D488) study material, tactical threat intelligence provides technical details such as indicators of compromise (IOCs), IP addresses, file hashes, domain names, and other evidence needed to detect and respond to threats immediately. This type of intelligence is used by security teams to perform real-time monitoring and incident response.
Operational intelligence (C) addresses campaigns or actor behavior but is not immediately actionable. Strategic intelligence (D) provides high-level, long-term threat trends. Commodity malware (B) refers to low-level malware types, not intelligence classifications.
Reference Extract from Study Guide:
'Tactical threat intelligence focuses on technical indicators of compromise (IOCs) and immediate actionable information that responders use to detect and contain active threats.'
--- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Threat Intelligence Concepts
=============================================
When is it better to purchase software rather than build a software solution in-house?
It is better to purchase software rather than build a software solution in-house when there is a short timeline. Building software from scratch requires significant time for development, testing, and deployment. Purchasing off-the-shelf software can significantly reduce the time needed to implement a solution. Other considerations include:
Cost-effectiveness: Pre-built software can be more cost-effective than developing a custom solution, especially when factoring in the costs of development, maintenance, and support.
Immediate availability: Purchased software is usually ready to deploy immediately, whereas custom development can take months or even years.
Proven reliability: Commercial software often has a track record of reliability and user support, reducing the risk of bugs and issues that may arise with custom development.
Therefore, when time is of the essence, purchasing software is the preferable option.
Reference
Ian Sommerville, 'Software Engineering,' Pearson.
Steve McConnell, 'Rapid Development: Taming Wild Software Schedules,' Microsoft Press.
While undergoing a security audit, it is determined that an organization has several backup repositories hosted in the cloud without any level of protection.
Which action should be taken to protect the backup repositories first?
The correct answer is C --- Restrict access to the backups.
According to WGU Cybersecurity Architecture and Engineering (KFO1 / D488), the first step in protecting sensitive data such as cloud backups is enforcing access controls to limit who can access the data. Restricting access immediately mitigates the risk of unauthorized exposure or tampering.
Auditing access logs (A) provides insight but does not actively protect. Running vulnerability scans (B) identifies issues but does not protect immediately. Disabling repositories (D) is not practical for maintaining backup availability.
Reference Extract from Study Guide:
'Access control is the first line of defense for sensitive data repositories, ensuring that only authorized users can access backup data.'
--- WGU Cybersecurity Architecture and Engineering (KFO1 / D488), Data Security and Access Control
=============================================
What signals the development of scope creep?
The development of scope creep is often signaled by the addition of many unplanned features to the original project. This indicates that the project scope is expanding beyond its initial boundaries. Key indicators include:
Uncontrolled changesto the project scope.
Continuous new requestsfrom stakeholders that were not part of the original requirements.
Increased project complexityand difficulty in managing the project timeline and resources.
Scope creep can lead to delays, budget overruns, and project failure if not managed properly.
Reference
Project Management Institute, 'A Guide to the Project Management Body of Knowledge (PMBOK Guide),' PMI.
Harold Kerzner, 'Project Management: A Systems Approach to Planning, Scheduling, and Controlling,' Wiley.
Charles Lopez
11 days agoMatthew Parker
16 days agoElizabeth Ramirez
1 month agoKaren Edwards
2 months agoAnthony Peterson
2 months agoRonald Green
3 months agoGary Clark
2 months agoThomas Murphy
2 months agoAngela Torres
2 months agoMargaret Turner
3 months agoMelissa Cook
2 months agoSarina
3 months agoLouvenia
4 months agoCherrie
4 months agoLashaun
4 months agoJulio
4 months agoPamella
5 months agoNguyet
5 months agoSelene
5 months agoRenea
6 months agoTerrilyn
6 months agoEun
6 months agoScot
6 months agoLenna
7 months agoLauna
7 months agoHoa
7 months agoTawny
7 months agoJeanice
7 months agoFrancisca
8 months agoBarrett
8 months agoAlaine
8 months ago