Page 1 of 216
WGU C727 - CYBERSECURITY MANAGEMENT STRATEGIC
EXAM COMPLETE 280 QUESTIONS AND VERIFIED SOLUTIONS
LATEST UPDATE THIS YEAR
C727 - Cybersecurity Management Strategic EXAM Which principle limits resource access to only authorized subjects?
Authentication Integrity Availability Confidentiality - ANSWER-Confidentiality
This is a high level assurance that data, objects, or resources are restricted from unauthorized subjects
QUESTION: Which principle focuses on protecting the reliability and correctness of data?
Authorization Integrity Availability Confidentiality - ANSWER-Integrity 1 / 4
Page 2 of 216
This is protecting the reliability and correctness of data.
QUESTION: Which plan defines the long-term goals of an organization?
Business Continuity Tactical Operational Strategic - ANSWER-Strategic
This is a long term plan that is fairly stable and defines the organization's security purpose.
QUESTION: Which principle is based on what a reasonable person would do to protect the reputational, financial, and legal best interest of an organization? - ANSWER-Due Care
This is using reasonable steps to protect the reputational, financial, and legal best interests of an organization
QUESTION: Tactical - ANSWER-This a midterm plan developed to provide more details on accomplishing the goals set forth in the strategic plan or can be crafted ad hoc based upon unpredicted events 2 / 4
Page 3 of 216
QUESTION: Operational - ANSWER-This is a short term, highly detailed plan based on the strategic and tactical plans. It is valid or useful for a short time and must be updated often
QUESTION: Due Diligence - ANSWER-This is practicing the activities that maintain the due care effort.
QUESTION: Due classification - ANSWER-aka: Categorization
This is the primary means by which data is protected based on its need for secrecy, sensitivity, or confidentiality.
QUESTION: What are the four elements of the business model for information security (BMIS)? - ANSWER-People, Process, Organization, and Technology
QUESTION: What are the five functions of the NIST Framework for Improving Critical Infrastructure Cybersecurity? - ANSWER-Identify, Protect, Detect, Respond, and Recover
QUESTION: What is a goal of the SDL process? (Security Development Lifecycle) - ANSWER-Reduce the security-related design and coding defects
The other goal of the SDL process is to identify and reduce the severity of any remaining defects. 3 / 4
Page 4 of 216
QUESTION: Which document describes the step-by-step instructions on how to perform a task?
Baseline Guideline Standard Procedure - ANSWER-Procedure
QUESTION: Which risk analysis formula calculates the cost to safeguard as asset?
# / year ALE = SLE * ARO or ALE = AV*EF*ARO
(ALE1 - ALE2) - ACS
$ / year - ANSWER-$ / year
This formula calculates the annual cost of a safeguard (ACS)
QUESTION: # / year - ANSWER-This formula calculates the annualized rate of occurrence (ARO).
- / 4