← Back to Past Exams Database
Verified Exam Record Score: 90%+

Fundamentals of Information Security - D430: Set 4

Review this completed exam record, including subject, platform, academic level, completion details, and preview question.

Cybersecurity ProctorU - Guardian Browser University
Subject
Cybersecurity
Platform
ProctorU - Guardian Browser
Academic Level
University
Date Completed
22 Sep 2026
Preview Question

72 previously done information-security practice questions with answer choices and explanations. WGU exam questions. 72 previously done information-security practice questions with answer choices and explanations. WGU exam questions. 

Exam Record Details

Original practice material: This 72-question set was independently authored for study and review. It is not an official WGU assessment, a ProctorU assessment, a recovered question set, or evidence of a completed exam. Use it only for independent preparation.

Fundamentals of Information Security - D430 Practice Set 4

Format: Self-paced practice
Level: University
Questions: 72 original multiple-choice items
Created: 22 Sep 2026
Study benchmark: 90%+

Questions

  1. Question 1. In a security review, this description appears: prevent unauthorized disclosure of sensitive information. Which term is the best match?

    1. Availability
    2. Nonrepudiation
    3. Confidentiality
    4. Integrity
    Answer and explanation

    Correct answer: C. Confidentiality
    Confidentiality best matches the stated objective: prevent unauthorized disclosure of sensitive information.

  2. Question 2. In a security review, this description appears: keep information accurate and protected from unauthorized alteration. Which term is the best match?

    1. Privacy
    2. Integrity
    3. Confidentiality
    4. Availability
    Answer and explanation

    Correct answer: B. Integrity
    Integrity best matches the stated objective: keep information accurate and protected from unauthorized alteration.

  3. Question 3. In a security review, this description appears: ensure approved users can access systems and data when required. Which term is the best match?

    1. Availability
    2. Integrity
    3. Authentication
    4. Nonrepudiation
    Answer and explanation

    Correct answer: A. Availability
    Availability best matches the stated objective: ensure approved users can access systems and data when required.

  4. Question 4. In a security review, this description appears: use multiple complementary safeguards so one failed control does not expose the whole asset. Which term is the best match?

    1. Single sign-on
    2. Data minimization
    3. Job rotation
    4. Defense in depth
    Answer and explanation

    Correct answer: D. Defense in depth
    Defense in depth best matches the stated objective: use multiple complementary safeguards so one failed control does not expose the whole asset.

  5. Question 5. In a security review, this description appears: give each user, process, or service only the access needed for its assigned task. Which term is the best match?

    1. Mandatory vacation
    2. Separation of duties
    3. Least privilege
    4. Job rotation
    Answer and explanation

    Correct answer: C. Least privilege
    Least privilege best matches the stated objective: give each user, process, or service only the access needed for its assigned task.

  6. Question 6. In a security review, this description appears: limit access to information to people with a justified work purpose. Which term is the best match?

    1. Key escrow
    2. Need to know
    3. Open access
    4. Job rotation
    Answer and explanation

    Correct answer: B. Need to know
    Need to know best matches the stated objective: limit access to information to people with a justified work purpose.

  7. Question 7. In a security review, this description appears: divide sensitive tasks so one person cannot complete an entire high-risk process alone. Which term is the best match?

    1. Separation of duties
    2. Least privilege
    3. Mandatory vacation
    4. Change freeze
    Answer and explanation

    Correct answer: A. Separation of duties
    Separation of duties best matches the stated objective: divide sensitive tasks so one person cannot complete an entire high-risk process alone.

  8. Question 8. In a security review, this description appears: assign permissions according to job role rather than managing every user individually. Which term is the best match?

    1. Mandatory access control
    2. Discretionary access control
    3. Attribute-based access control
    4. Role-based access control (RBAC)
    Answer and explanation

    Correct answer: D. Role-based access control (RBAC)
    Role-based access control (RBAC) best matches the stated objective: assign permissions according to job role rather than managing every user individually.

  9. Question 9. In a security review, this description appears: allow a resource owner to decide who receives access to that resource. Which term is the best match?

    1. Role-based access control
    2. Network segmentation
    3. Discretionary access control (DAC)
    4. Mandatory access control
    Answer and explanation

    Correct answer: C. Discretionary access control (DAC)
    Discretionary access control (DAC) best matches the stated objective: allow a resource owner to decide who receives access to that resource.

  10. Question 10. In a security review, this description appears: enforce access decisions using centrally defined labels and clearances. Which term is the best match?

    1. Least privilege
    2. Mandatory access control (MAC)
    3. Discretionary access control
    4. Role-based access control
    Answer and explanation

    Correct answer: B. Mandatory access control (MAC)
    Mandatory access control (MAC) best matches the stated objective: enforce access decisions using centrally defined labels and clearances.

  11. Question 11. In a security review, this description appears: evaluate attributes such as department, device state, time, or location before permitting access. Which term is the best match?

    1. Attribute-based access control (ABAC)
    2. Role-based access control
    3. Mandatory access control
    4. Discretionary access control
    Answer and explanation

    Correct answer: A. Attribute-based access control (ABAC)
    Attribute-based access control (ABAC) best matches the stated objective: evaluate attributes such as department, device state, time, or location before permitting access.

  12. Question 12. In a security review, this description appears: require evidence from more than one independent authentication factor. Which term is the best match?

    1. Single sign-on
    2. Password rotation
    3. Authorization
    4. Multi-factor authentication (MFA)
    Answer and explanation

    Correct answer: D. Multi-factor authentication (MFA)
    Multi-factor authentication (MFA) best matches the stated objective: require evidence from more than one independent authentication factor.

  13. Question 13. In a security review, this description appears: verify that a person, service, or device is who or what it claims to be. Which term is the best match?

    1. Accounting
    2. Availability
    3. Authentication
    4. Authorization
    Answer and explanation

    Correct answer: C. Authentication
    Authentication best matches the stated objective: verify that a person, service, or device is who or what it claims to be.

  14. Question 14. In a security review, this description appears: decide which actions an authenticated identity is permitted to perform. Which term is the best match?

    1. Nonrepudiation
    2. Authorization
    3. Authentication
    4. Accounting
    Answer and explanation

    Correct answer: B. Authorization
    Authorization best matches the stated objective: decide which actions an authenticated identity is permitted to perform.

  15. Question 15. In a security review, this description appears: record activity so actions can be traced to an identity and reviewed later. Which term is the best match?

    1. Accounting
    2. Authorization
    3. Authentication
    4. Data masking
    Answer and explanation

    Correct answer: A. Accounting
    Accounting best matches the stated objective: record activity so actions can be traced to an identity and reviewed later.

  16. Question 16. In a security review, this description appears: create reliable evidence that prevents a sender or actor from credibly denying an action. Which term is the best match?

    1. Availability
    2. Confidentiality
    3. Data minimization
    4. Nonrepudiation
    Answer and explanation

    Correct answer: D. Nonrepudiation
    Nonrepudiation best matches the stated objective: create reliable evidence that prevents a sender or actor from credibly denying an action.

  17. Question 17. In a security review, this description appears: produce a fixed-length value used to detect whether data has changed. Which term is the best match?

    1. Tokenization
    2. Compression
    3. Hashing
    4. Encryption
    Answer and explanation

    Correct answer: C. Hashing
    Hashing best matches the stated objective: produce a fixed-length value used to detect whether data has changed.

  18. Question 18. In a security review, this description appears: add unique random data before hashing passwords to make precomputed attacks less useful. Which term is the best match?

    1. Tokenization
    2. Salting
    3. Key rotation
    4. Data masking
    Answer and explanation

    Correct answer: B. Salting
    Salting best matches the stated objective: add unique random data before hashing passwords to make precomputed attacks less useful.

  19. Question 19. In a security review, this description appears: use the same secret key to encrypt and decrypt data. Which term is the best match?

    1. Symmetric encryption
    2. Asymmetric encryption
    3. Hashing
    4. Digital signing
    Answer and explanation

    Correct answer: A. Symmetric encryption
    Symmetric encryption best matches the stated objective: use the same secret key to encrypt and decrypt data.

  20. Question 20. In a security review, this description appears: use a related public and private key pair for cryptographic operations. Which term is the best match?

    1. Symmetric encryption
    2. Hashing
    3. Steganography
    4. Asymmetric encryption
    Answer and explanation

    Correct answer: D. Asymmetric encryption
    Asymmetric encryption best matches the stated objective: use a related public and private key pair for cryptographic operations.

  21. Question 21. In a security review, this description appears: use cryptography to verify message origin and detect alteration. Which term is the best match?

    1. Symmetric encryption
    2. Access control list
    3. Digital signature
    4. Data compression
    Answer and explanation

    Correct answer: C. Digital signature
    Digital signature best matches the stated objective: use cryptography to verify message origin and detect alteration.

  22. Question 22. In a security review, this description appears: manage certificates, public keys, and trust relationships for public-key cryptography. Which term is the best match?

    1. Secure shell
    2. Public key infrastructure (PKI)
    3. Virtual private network
    4. Network address translation
    Answer and explanation

    Correct answer: B. Public key infrastructure (PKI)
    Public key infrastructure (PKI) best matches the stated objective: manage certificates, public keys, and trust relationships for public-key cryptography.

  23. Question 23. In a security review, this description appears: issue and validate digital certificates that bind identities to public keys. Which term is the best match?

    1. Certificate authority (CA)
    2. Network switch
    3. Security information and event management
    4. Keylogger
    Answer and explanation

    Correct answer: A. Certificate authority (CA)
    Certificate authority (CA) best matches the stated objective: issue and validate digital certificates that bind identities to public keys.

  24. Question 24. In a security review, this description appears: protect data exchanged between a client and server over a network connection. Which term is the best match?

    1. Secure file transfer
    2. Virtual private network
    3. Data loss prevention
    4. Transport Layer Security (TLS)
    Answer and explanation

    Correct answer: D. Transport Layer Security (TLS)
    Transport Layer Security (TLS) best matches the stated objective: protect data exchanged between a client and server over a network connection.

  25. Question 25. In a security review, this description appears: create an encrypted tunnel across an untrusted network. Which term is the best match?

    1. Proxy server
    2. Web application firewall
    3. Virtual private network (VPN)
    4. Wireless access point
    Answer and explanation

    Correct answer: C. Virtual private network (VPN)
    Virtual private network (VPN) best matches the stated objective: create an encrypted tunnel across an untrusted network.

  26. Question 26. In a security review, this description appears: apply traffic rules to allow, deny, or restrict network connections. Which term is the best match?

    1. Digital certificate
    2. Firewall
    3. Intrusion detection system
    4. Proxy cache
    Answer and explanation

    Correct answer: B. Firewall
    Firewall best matches the stated objective: apply traffic rules to allow, deny, or restrict network connections.

  27. Question 27. In a security review, this description appears: observe events or traffic and alert when suspicious activity is detected. Which term is the best match?

    1. Intrusion detection system (IDS)
    2. Intrusion prevention system
    3. Firewall
    4. Data loss prevention
    Answer and explanation

    Correct answer: A. Intrusion detection system (IDS)
    Intrusion detection system (IDS) best matches the stated objective: observe events or traffic and alert when suspicious activity is detected.

  28. Question 28. In a security review, this description appears: detect malicious traffic and actively block or interrupt it. Which term is the best match?

    1. Intrusion detection system
    2. Log retention
    3. Vulnerability scanner
    4. Intrusion prevention system (IPS)
    Answer and explanation

    Correct answer: D. Intrusion prevention system (IPS)
    Intrusion prevention system (IPS) best matches the stated objective: detect malicious traffic and actively block or interrupt it.

  29. Question 29. In a security review, this description appears: broker requests between a client and another service while applying policy or filtering. Which term is the best match?

    1. Wireless controller
    2. Endpoint agent
    3. Proxy server
    4. Certificate authority
    Answer and explanation

    Correct answer: C. Proxy server
    Proxy server best matches the stated objective: broker requests between a client and another service while applying policy or filtering.

  30. Question 30. In a security review, this description appears: filter HTTP requests to help protect a web application from common web attacks. Which term is the best match?

    1. Virtual private network
    2. Web application firewall (WAF)
    3. Network switch
    4. Data backup
    Answer and explanation

    Correct answer: B. Web application firewall (WAF)
    Web application firewall (WAF) best matches the stated objective: filter HTTP requests to help protect a web application from common web attacks.

  31. Question 31. In a security review, this description appears: detect and help stop sensitive data from leaving approved channels. Which term is the best match?

    1. Data loss prevention (DLP)
    2. Patch management
    3. Network segmentation
    4. Data compression
    Answer and explanation

    Correct answer: A. Data loss prevention (DLP)
    Data loss prevention (DLP) best matches the stated objective: detect and help stop sensitive data from leaving approved channels.

  32. Question 32. In a security review, this description appears: centralize and correlate security logs to support monitoring and investigation. Which term is the best match?

    1. Certificate authority
    2. Data warehouse
    3. Virtual private network
    4. Security information and event management (SIEM)
    Answer and explanation

    Correct answer: D. Security information and event management (SIEM)
    Security information and event management (SIEM) best matches the stated objective: centralize and correlate security logs to support monitoring and investigation.

  33. Question 33. In a security review, this description appears: keep security records long enough to support troubleshooting, audit, and investigation. Which term is the best match?

    1. Key revocation
    2. Job rotation
    3. Log retention
    4. Data destruction
    Answer and explanation

    Correct answer: C. Log retention
    Log retention best matches the stated objective: keep security records long enough to support troubleshooting, audit, and investigation.

  34. Question 34. In a security review, this description appears: identify known weaknesses or misconfigurations in systems using automated checks. Which term is the best match?

    1. Disaster recovery
    2. Vulnerability scanning
    3. Penetration testing
    4. Threat hunting
    Answer and explanation

    Correct answer: B. Vulnerability scanning
    Vulnerability scanning best matches the stated objective: identify known weaknesses or misconfigurations in systems using automated checks.

  35. Question 35. In a security review, this description appears: conduct an authorized, bounded attempt to validate whether weaknesses can be exploited. Which term is the best match?

    1. Penetration testing
    2. Vulnerability scanning
    3. Change management
    4. Business impact analysis
    Answer and explanation

    Correct answer: A. Penetration testing
    Penetration testing best matches the stated objective: conduct an authorized, bounded attempt to validate whether weaknesses can be exploited.

  36. Question 36. In a security review, this description appears: identify assets, threats, vulnerabilities, likelihood, and impact to prioritize treatment. Which term is the best match?

    1. Risk transfer
    2. Log retention
    3. Patch deployment
    4. Risk assessment
    Answer and explanation

    Correct answer: D. Risk assessment
    Risk assessment best matches the stated objective: identify assets, threats, vulnerabilities, likelihood, and impact to prioritize treatment.

  37. Question 37. In a security review, this description appears: stop or change an activity so the associated risk is no longer accepted. Which term is the best match?

    1. Risk transfer
    2. Risk mitigation
    3. Risk avoidance
    4. Risk acceptance
    Answer and explanation

    Correct answer: C. Risk avoidance
    Risk avoidance best matches the stated objective: stop or change an activity so the associated risk is no longer accepted.

  38. Question 38. In a security review, this description appears: shift some financial consequences of risk to another party through a contract or insurance. Which term is the best match?

    1. Risk mitigation
    2. Risk transfer
    3. Risk avoidance
    4. Risk acceptance
    Answer and explanation

    Correct answer: B. Risk transfer
    Risk transfer best matches the stated objective: shift some financial consequences of risk to another party through a contract or insurance.

  39. Question 39. In a security review, this description appears: reduce either the likelihood or impact of a risk through safeguards. Which term is the best match?

    1. Risk mitigation
    2. Risk transfer
    3. Risk acceptance
    4. Risk avoidance
    Answer and explanation

    Correct answer: A. Risk mitigation
    Risk mitigation best matches the stated objective: reduce either the likelihood or impact of a risk through safeguards.

  40. Question 40. In a security review, this description appears: identify critical processes and the consequences of disruption. Which term is the best match?

    1. Vulnerability scanning
    2. Change management
    3. Threat intelligence
    4. Business impact analysis (BIA)
    Answer and explanation

    Correct answer: D. Business impact analysis (BIA)
    Business impact analysis (BIA) best matches the stated objective: identify critical processes and the consequences of disruption.

  41. Question 41. In a security review, this description appears: restore technology and data after a major disruption. Which term is the best match?

    1. Job rotation
    2. Data classification
    3. Disaster recovery (DR)
    4. Business continuity planning
    Answer and explanation

    Correct answer: C. Disaster recovery (DR)
    Disaster recovery (DR) best matches the stated objective: restore technology and data after a major disruption.

  42. Question 42. In a security review, this description appears: keep critical business functions operating during and after disruption. Which term is the best match?

    1. Data retention
    2. Business continuity planning (BCP)
    3. Disaster recovery
    4. Patch management
    Answer and explanation

    Correct answer: B. Business continuity planning (BCP)
    Business continuity planning (BCP) best matches the stated objective: keep critical business functions operating during and after disruption.

  43. Question 43. In a security review, this description appears: prepare for, detect, contain, eradicate, and recover from security incidents. Which term is the best match?

    1. Incident response
    2. Business continuity
    3. Risk acceptance
    4. Change control
    Answer and explanation

    Correct answer: A. Incident response
    Incident response best matches the stated objective: prepare for, detect, contain, eradicate, and recover from security incidents.

  44. Question 44. In a security review, this description appears: document who handled evidence, when, and how it was preserved. Which term is the best match?

    1. Data classification
    2. Asset inventory
    3. Key management
    4. Chain of custody
    Answer and explanation

    Correct answer: D. Chain of custody
    Chain of custody best matches the stated objective: document who handled evidence, when, and how it was preserved.

  45. Question 45. In a security review, this description appears: use deceptive messages to trick recipients into revealing information or taking unsafe action. Which term is the best match?

    1. SQL injection
    2. Privilege escalation
    3. Phishing
    4. DDoS
    Answer and explanation

    Correct answer: C. Phishing
    Phishing best matches the stated objective: use deceptive messages to trick recipients into revealing information or taking unsafe action.

  46. Question 46. In a security review, this description appears: target a specific person or group with a tailored deceptive message. Which term is the best match?

    1. Watering-hole attack
    2. Spear phishing
    3. Generic phishing
    4. Brute-force attack
    Answer and explanation

    Correct answer: B. Spear phishing
    Spear phishing best matches the stated objective: target a specific person or group with a tailored deceptive message.

  47. Question 47. In a security review, this description appears: manipulate people into bypassing normal security judgment or procedure. Which term is the best match?

    1. Social engineering
    2. Network segmentation
    3. Data masking
    4. Patch management
    Answer and explanation

    Correct answer: A. Social engineering
    Social engineering best matches the stated objective: manipulate people into bypassing normal security judgment or procedure.

  48. Question 48. In a security review, this description appears: malware that denies access to data or systems while demanding payment. Which term is the best match?

    1. Spyware
    2. Rootkit
    3. Adware
    4. Ransomware
    Answer and explanation

    Correct answer: D. Ransomware
    Ransomware best matches the stated objective: malware that denies access to data or systems while demanding payment.

  49. Question 49. In a security review, this description appears: software intentionally designed to harm, disrupt, spy on, or gain unauthorized access. Which term is the best match?

    1. Firmware
    2. Data cache
    3. Malware
    4. Middleware
    Answer and explanation

    Correct answer: C. Malware
    Malware best matches the stated objective: software intentionally designed to harm, disrupt, spy on, or gain unauthorized access.

  50. Question 50. In a security review, this description appears: abuse unsafe database queries by supplying malicious input. Which term is the best match?

    1. Session timeout
    2. SQL injection
    3. Cross-site scripting
    4. DNS caching
    Answer and explanation

    Correct answer: B. SQL injection
    SQL injection best matches the stated objective: abuse unsafe database queries by supplying malicious input.

  51. Question 51. In a security review, this description appears: cause a web application to deliver untrusted script to another user's browser. Which term is the best match?

    1. Cross-site scripting (XSS)
    2. SQL injection
    3. Packet filtering
    4. Data encryption
    Answer and explanation

    Correct answer: A. Cross-site scripting (XSS)
    Cross-site scripting (XSS) best matches the stated objective: cause a web application to deliver untrusted script to another user's browser.

  52. Question 52. In a security review, this description appears: write beyond intended memory boundaries and potentially alter program behavior. Which term is the best match?

    1. SQL injection
    2. Clickjacking
    3. DNS poisoning
    4. Buffer overflow
    Answer and explanation

    Correct answer: D. Buffer overflow
    Buffer overflow best matches the stated objective: write beyond intended memory boundaries and potentially alter program behavior.

  53. Question 53. In a security review, this description appears: gain permissions beyond those originally granted. Which term is the best match?

    1. Data classification
    2. Network segmentation
    3. Privilege escalation
    4. Credential rotation
    Answer and explanation

    Correct answer: C. Privilege escalation
    Privilege escalation best matches the stated objective: gain permissions beyond those originally granted.

  54. Question 54. In a security review, this description appears: repeatedly try credentials or keys until a valid one is found. Which term is the best match?

    1. Session management
    2. Brute-force attack
    3. Spear phishing
    4. Data masking
    Answer and explanation

    Correct answer: B. Brute-force attack
    Brute-force attack best matches the stated objective: repeatedly try credentials or keys until a valid one is found.

  55. Question 55. In a security review, this description appears: test previously exposed username-password pairs on other services. Which term is the best match?

    1. Credential stuffing
    2. Password salting
    3. Tokenization
    4. Data classification
    Answer and explanation

    Correct answer: A. Credential stuffing
    Credential stuffing best matches the stated objective: test previously exposed username-password pairs on other services.

  56. Question 56. In a security review, this description appears: overwhelm a service with traffic from many sources to reduce availability. Which term is the best match?

    1. Data exfiltration
    2. Privilege escalation
    3. Phishing
    4. Distributed denial-of-service (DDoS)
    Answer and explanation

    Correct answer: D. Distributed denial-of-service (DDoS)
    Distributed denial-of-service (DDoS) best matches the stated objective: overwhelm a service with traffic from many sources to reduce availability.

  57. Question 57. In a security review, this description appears: keep three copies of data on two media types with one copy offsite or otherwise isolated. Which term is the best match?

    1. Data masking
    2. Log rotation
    3. Three-two-one backup strategy
    4. Key escrow
    Answer and explanation

    Correct answer: C. Three-two-one backup strategy
    Three-two-one backup strategy best matches the stated objective: keep three copies of data on two media types with one copy offsite or otherwise isolated.

  58. Question 58. In a security review, this description appears: information stored on a device, disk, database, or backup media. Which term is the best match?

    1. Data classification
    2. Data at rest
    3. Data in transit
    4. Data in use
    Answer and explanation

    Correct answer: B. Data at rest
    Data at rest best matches the stated objective: information stored on a device, disk, database, or backup media.

  59. Question 59. In a security review, this description appears: information moving between systems or across a network. Which term is the best match?

    1. Data in transit
    2. Data at rest
    3. Data in use
    4. Data remanence
    Answer and explanation

    Correct answer: A. Data in transit
    Data in transit best matches the stated objective: information moving between systems or across a network.

  60. Question 60. In a security review, this description appears: information actively being processed in memory or by an application. Which term is the best match?

    1. Data at rest
    2. Data in transit
    3. Data retention
    4. Data in use
    Answer and explanation

    Correct answer: D. Data in use
    Data in use best matches the stated objective: information actively being processed in memory or by an application.

  61. Question 61. In a security review, this description appears: use people, facilities, and physical safeguards to protect equipment and locations. Which term is the best match?

    1. Network monitoring
    2. Log analysis
    3. Physical security
    4. Cryptographic signing
    Answer and explanation

    Correct answer: C. Physical security
    Physical security best matches the stated objective: use people, facilities, and physical safeguards to protect equipment and locations.

  62. Question 62. In a security review, this description appears: manage conditions such as fire, power, humidity, and temperature that can damage systems. Which term is the best match?

    1. Endpoint encryption
    2. Environmental controls
    3. Access control list
    4. Network segmentation
    Answer and explanation

    Correct answer: B. Environmental controls
    Environmental controls best matches the stated objective: manage conditions such as fire, power, humidity, and temperature that can damage systems.

  63. Question 63. In a security review, this description appears: review, authorize, test, document, and communicate significant system changes. Which term is the best match?

    1. Change management
    2. Risk acceptance
    3. Disaster recovery
    4. Data destruction
    Answer and explanation

    Correct answer: A. Change management
    Change management best matches the stated objective: review, authorize, test, document, and communicate significant system changes.

  64. Question 64. In a security review, this description appears: evaluate, test, deploy, and verify updates that address software weaknesses. Which term is the best match?

    1. Data classification
    2. Business continuity
    3. Key escrow
    4. Patch management
    Answer and explanation

    Correct answer: D. Patch management
    Patch management best matches the stated objective: evaluate, test, deploy, and verify updates that address software weaknesses.

  65. Question 65. In a security review, this description appears: continually verify access requests and avoid assuming trust based only on network location. Which term is the best match?

    1. Discretionary access control
    2. Data retention
    3. Zero trust
    4. Implicit trust
    Answer and explanation

    Correct answer: C. Zero trust
    Zero trust best matches the stated objective: continually verify access requests and avoid assuming trust based only on network location.

  66. Question 66. In a security review, this description appears: separate systems or networks to limit unnecessary communication and lateral movement. Which term is the best match?

    1. Log retention
    2. Network segmentation
    3. Network address translation
    4. Wireless encryption
    Answer and explanation

    Correct answer: B. Network segmentation
    Network segmentation best matches the stated objective: separate systems or networks to limit unnecessary communication and lateral movement.

  67. Question 67. In a security review, this description appears: define and maintain approved security settings for systems. Which term is the best match?

    1. Secure configuration baseline
    2. Business impact analysis
    3. Risk transfer
    4. Data minimization
    Answer and explanation

    Correct answer: A. Secure configuration baseline
    Secure configuration baseline best matches the stated objective: define and maintain approved security settings for systems.

  68. Question 68. In a security review, this description appears: maintain an accurate record of hardware, software, and important technology assets. Which term is the best match?

    1. Chain of custody
    2. Key rotation
    3. Data destruction
    4. Asset inventory
    Answer and explanation

    Correct answer: D. Asset inventory
    Asset inventory best matches the stated objective: maintain an accurate record of hardware, software, and important technology assets.

  69. Question 69. In a security review, this description appears: label information by sensitivity so handling rules match its value and risk. Which term is the best match?

    1. Log retention
    2. Job rotation
    3. Data classification
    4. Asset disposal
    Answer and explanation

    Correct answer: C. Data classification
    Data classification best matches the stated objective: label information by sensitivity so handling rules match its value and risk.

  70. Question 70. In a security review, this description appears: build privacy safeguards into processes and systems from the start. Which term is the best match?

    1. Risk acceptance
    2. Privacy by design
    3. Data destruction
    4. Network segmentation
    Answer and explanation

    Correct answer: B. Privacy by design
    Privacy by design best matches the stated objective: build privacy safeguards into processes and systems from the start.

  71. Question 71. In a security review, this description appears: define the maximum acceptable amount of data loss measured in time. Which term is the best match?

    1. Recovery point objective (RPO)
    2. Recovery time objective
    3. Mean time to repair
    4. Service-level agreement
    Answer and explanation

    Correct answer: A. Recovery point objective (RPO)
    Recovery point objective (RPO) best matches the stated objective: define the maximum acceptable amount of data loss measured in time.

  72. Question 72. In a security review, this description appears: define the maximum acceptable time to restore a service after disruption. Which term is the best match?

    1. Recovery point objective
    2. Log retention
    3. Data classification
    4. Recovery time objective (RTO)
    Answer and explanation

    Correct answer: D. Recovery time objective (RTO)
    Recovery time objective (RTO) best matches the stated objective: define the maximum acceptable time to restore a service after disruption.

Study responsibly: Do not use this resource during graded, proctored, or restricted assessments. Follow your institution's academic-integrity rules.

PDF Preview

Generate, preview, and download this exam record.

Waiting Download PDF
Size
—
Pages
—
Created
—
Page — / —
100%
Generating PDF…
Expert Help Available

Ace Your Online Exams

Connect with trusted academic professionals for reliable test support and secure results. Order now to get started.