Professional Standards & Competencies Flashcards
7 cards from real 70-413 Exam practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Professional Standards & Competencies flashcards as text
A 70-413 candidate is asked to design a patching strategy for 500 Windows servers. Which professional standard recommends testing patches in a non-production environment before production deployment?
Answer: Both NIST SP 800-40 and ITIL release management
Both NIST SP 800-40 and ITIL release management explicitly recommend staged testing in non-production environments before applying patches to production systems.
An infrastructure architect discovers a critical vulnerability in a production system after hours. The patch requires a reboot. What is the professional protocol?
Answer: Follow the emergency change management process, notify stakeholders, and apply the patch within the approved window
Even for critical vulnerabilities, professional practice requires following the emergency change process to ensure stakeholder awareness and controlled remediation.
When assessing whether a Windows Server design meets professional standards, which document provides the authoritative baseline for U.S. federal agency server security configurations?
Answer: DISA Security Technical Implementation Guides (STIGs)
DISA STIGs are the authoritative security configuration baselines mandated for U.S. federal government systems running Windows Server.
A server architect includes a Risk Register in the infrastructure design package. What professional purpose does this artifact serve?
Answer: It documents identified risks, their likelihood, impact, and planned mitigations for stakeholder review
A Risk Register is a professional project management artifact that tracks risks transparently, enabling informed stakeholder decision-making.
Which professional behavior distinguishes a senior infrastructure architect from a junior one when presenting a design that has known limitations?
Answer: Proactively disclosing limitations, their potential impact, and proposed mitigations
Professional transparency requires disclosing known design limitations along with their impact and mitigations, enabling stakeholders to make informed decisions.
An organization's Windows Server environment must comply with PCI DSS. Which competency does the architect demonstrate by segmenting the cardholder data environment (CDE) from the rest of the network?
Answer: Regulatory compliance through network segmentation
PCI DSS Requirement 1 mandates network segmentation to isolate the CDE, demonstrating compliance competency in infrastructure design.
What is the professional purpose of conducting a lessons-learned session following a major server migration project?
Answer: To capture what worked, what failed, and improvement actions that benefit future projects
Lessons-learned sessions are a professional knowledge management practice that systematically improves processes, team skills, and organizational maturity.