Exit demo WGU-JY02 WGU Managing Cloud Security (JY02) PDF format · free preview

WGU University WGU-JY02 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/wgu-jy02.html

Question 1
Single choice

Which business continuity and disaster recovery consideration should be part of a cloud application architecture?

A.

Architecting for failure

B.

Health status pages

C.

Compliance of applications

D.

Application message queues

Question 2
Single choice

An organization wants to track how often a file is accessed and by which users.

Which information rights management (IRM) solution should the organization implement?

A.

Automatic expiration

B.

Dynamic policy control

C.

Persistent protection

D.

Continuous auditing

Question 3
Single choice

When should a cloud service provider delete customer data?

A.

When the cloud provider oversubscribes its storage space

B.

When the data has not been accessed in the last 30 days

C.

After a scheduled data review

D.

After the specified retention period

Question 4
Single choice

Which risk relates to the removal of a person's information within the public cloud by legal authorities?

A.

Remote wiping

B.

Vendor lock-in

C.

Data masking

D.

Data seizure

Question 5
Single choice

Which security concept requires continuous identity and authorization checks to allow access to data?

A.

Traffic inspection

B.

Zero trust

C.

Intrusion prevention

D.

Secret management

Question 6
Single choice

A cloud provider that processes third-party credit card payments is unable to encrypt its customers' cardholder data because of constraints on a legacy payment processing system.

What should it implement to maintain Payment Card Industry Data Security Standard (PCI DSS) compliance?

A.

Privacy control

B.

Protection levels

C.

Risk acceptance

D.

Compensating control

Question 7
Single choice

A security analyst reviews a proposed cloud application and identifies possible spoofing, tampering, repudiation, information disclosure, denial of service, and elevation of privilege threats.

Which model is the analyst using?

A.

COSO

B.

STRIDE

C.

ITIL

D.

COBIT

Question 8
Single choice

Which security control is a countermeasure against vendor lock-in and lock-out?

A.

Offsite backups

B.

Video surveillance

C.

Disk redundancy

D.

Training programs

Question 9
Single choice

Which requirement in the Gramm-Leach-Bliley Act (GLBA) is included to protect private data?

A.

Independent auditor

B.

Gap analysis

C.

Information security plan

D.

Limited scope definition

Question 10
Single choice

A company uses a cloud access security broker to discover unsanctioned cloud applications and enforce policies on uploads of sensitive files.

Which risk is the company addressing?

A.

Shadow IT and data leakage

B.

Facility fire suppression failure

C.

Processor cache exhaustion

D.

Disk head crash

Showing 10 of 240 questions · Unlock the full set