- | P a g e
WGU C836 Objective Assessment Final 2025 with 200 accurate and verified questions covering Fundamentals of Information Security, including risk management, cryptography, network security, access control, and cybersecurity policies.
The act of dividing a network into multiple smaller networks, each acting as its own small network (subnet) - ANSWER- network segmentation
certain points in the network, such as routers, firewalls, or proxies, where we can inspect, filter, and control network traffic
- ANSWER-choke points
a method of security that involves designing a network to always have another route if something fails or loses connection - ANSWER-redundancy
a mechanism for maintaining control over the traffic that flows into and out of our networks - ANSWER-firewall
- / 4
- | P a g e
A firewall technology that inspects the contents of each packet in network traffic individually and makes a gross determination (based on source and destination IP address, port number, and the protocol being used) of whether the traffic should be allowed to pass - ANSWER-packet filtering
a firewall that can watch packets and monitor the traffic from a given connection - ANSWER-SPI (Stateful Packet Inspection)
a firewall technology that can analyze the actual content of the traffic that is flowing through - ANSWER-DPI (Deep Packet Inspection)
a specialized type of firewall that can serve as a choke point, log traffic for later inspection, and provides a layer of security by serving as a single source of requests for the devices behind it - ANSWER-proxy server
a combination of a network design feature and a protective device such as a firewall.Often used for systems that need to be exposed to external networks but are connected to our own network (such as a web server) - ANSWER-DMZ (demilitarized zone) 2 / 4
- | P a g e
A system that monitors network traffic and alerts for unauthorized activity - ANSWER-NIDS (Network intrusion detection system)
An IDS that maintains a database of signatures that might signal a particular type of attack and compares incoming traffic to those signatures - ANSWER-signature-based IDS
an IDS that takes a baseline of normal network traffic and activity and measures current traffic against this baseline to detect unusual events - ANSWER-anomaly-based IDS
an encrypted connection between two points - ANSWER-VPN (Virtual Private Network)
protocol used to secure traffic in a variety of ways, including file transfers and terminal access. uses RSA encryption (asymmetric encryption) - ANSWER-SSH (Secure Shell)
a phrase that refers to an organization's strategy and policies regarding the use of personal vs. corporate devices - ANSWER- BYOD (bring your own device) 3 / 4
- | P a g e
a solution that manages security elements for mobile devices in the workplace - ANSWER-MDM (mobile device management)
a well-known Linux sniffing tool used to detect wireless access points - ANSWER-kismet
A Windows tool used to detect wireless access points - ANSWER-NetStumbler
A well-known port scanner that can also search for hosts on a network, identify the operating systems those hosts are running, detect the version of the services running on any open ports, and more - ANSWER-nmap
this type of tool can intercept traffic on a network; listens for any traffic that the network interface of our computer or device can see - ANSWER-packet sniffer (aka network or protocol analyzer)
classic, command-line sniffing tool that monitors network activities, filters traffic, and more
- / 4