WGU MASTERS COURSE C706 - SECURE SOFTWARE

WGU EXAMS Aug 29, 2025
Loading...

Loading document viewer...

Page 0 of 0

Document Text

WGU MASTER'S COURSE C706 - SECURE SOFTWARE

DESIGN LATEST 2022DETAILED SOLUTIONSWESTERN

GOVERNORS UNIVERSITY

1.Which due diligence activity for supply chain security should occur in the initiation phase of the software acquisition life cycle?

A Developing a request for proposal (RFP) that includes supply chain security risk management B Lessening the risk of disseminating information during disposal C Facilitating knowledge transfer between suppliers D Mitigating supply chain security risk by providing user guidance (correct answers)A

2.Which due diligence activity for supply chain security investigates the means by which data sets are shared and assessed?

A on-site assessment B process policy review C third-party assessment D document exchange and review (correct answers)D

Consider these characteristics:

-Identification of the entity making the access request -Verification that the request has not changed since its initiation 1 / 4

-Application of the appropriate authorization procedures -Reexamination of previously authorized requests by the same entity

3.Which security design analysis is being described?

A Open design B Complete mediation C Economy of mechanism D Least common mechanism (correct answers)B

4.Which software security principle guards against the improper modification or destruction of information and ensures the nonrepudiation and authenticity of information?

A Quality B Integrity C Availability D Confidentiality (correct answers)B

5.What type of functional security requirement involves receiving, processing, storing, transmitting, and delivering in report form?

A Logging B Error handling C Primary dataflow 2 / 4

D Access control flow (correct answers)C

6.Which nonfunctional security requirement provides a way to capture information correctly and a way to store that information to help support later audits?

A Logging B Error handling C Primary dataflow D Access control flow (correct answers)A

7.Which security concept refers to the quality of information that could cause harm or damage if disclosed?

A Isolation B Discretion C Seclusion D Sensitivity (correct answers)D

8.Which technology would be an example of an injection flaw, according to the OWASP Top 10?

A SQL B API

C XML 3 / 4

D XSS (correct answers)A

9.A company is creating a new software to track customer balance and wants to design a secure application.

10.Which best practice should be applied?

A Develop a secure authentication method that has a closed design B Allow mediation bypass or suspension for software testing and emergency planning C Ensure there is physical acceptability to ensure software is intuitive for the users to do their jobs D Create multiple layers of protection so that a subsequent layer provides protection if a layer is breached (correct answers)D

11.A company is developing a secure software that has to be evaluated and tested by a large number of experts.

Which security principle should be applied?

A Fail safe B Open design C Defense in depth D Complete mediation (correct answers)B

  • / 4

Download Document

Buy This Document

$30.00 One-time purchase
Buy Now
  • Full access to this document
  • Download anytime
  • No expiration

Document Information

Category: WGU EXAMS
Added: Aug 29, 2025
Description:

WGU MASTER'S COURSE C706 - SECURE SOFTWARE DESIGN LATEST 2022DETAILED SOLUTIONSWESTERN GOVERNORS UNIVERSITY 1.Which due diligence activity for supply chain security should occur in the initiation p...

Get this document $30.00