CISSP Domain 8

CISSP Domain 8

Professional Development

10 Qs

quiz-placeholder

Similar activities

11142020_A+_Lesson_7_Quiz

11142020_A+_Lesson_7_Quiz

Professional Development

9 Qs

Sec+ CH.2 Review Test

Sec+ CH.2 Review Test

Professional Development

15 Qs

8 - Mobile Testing pt. 1

8 - Mobile Testing pt. 1

Professional Development

10 Qs

Cloud Computing

Cloud Computing

University - Professional Development

10 Qs

CySA+ Tools

CySA+ Tools

Professional Development

12 Qs

G-AsiaPacific Cloud Knowledge Challenge: AWS Edition

G-AsiaPacific Cloud Knowledge Challenge: AWS Edition

Professional Development

15 Qs

Cloud Computing

Cloud Computing

KG - Professional Development

11 Qs

Google Cloud Digital Leader - Application

Google Cloud Digital Leader - Application

Professional Development

10 Qs

CISSP Domain 8

CISSP Domain 8

Assessment

Quiz

Computers

Professional Development

Hard

Created by

Miftah Rahman

Used 14+ times

FREE Resource

10 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

When in the Software Development Life Cycle (SDLC) MUST software security functional requirements be defined?

After the system preliminary design has been developed and the data security categorization has been performed

the vulnerability analysis has been performed and before the system detailed design begins

After the system preliminary design has been developed and before the data security categorization begins

After the business functional analysis and the data security categorization have been performed

2.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

Which of the following is the BEST method to prevent malware from being introduced into a production environment?

Purchase software from a limited list of retailers

Verify the hash key or certificate key of all updates

Do not permit programs, patches, or updates from the Internet

Test all new software in a segregated environment

3.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

The configuration management and control task of the certification and accreditation process is incorporated in which phase of the System Development Life

Cycle (SDLC)?

System acquisition and development

System operations and maintenance

System initiation

System implementation

4.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

What is the BEST approach to addressing security issues in legacy web applications?

Debug the security issues

Migrate to newer, supported applications where possible

Conduct a security assessment

Protect the legacy application with a web application firewall

5.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

Which of the following is a web application control that should be put into place to prevent exploitation of Operating System (OS) bugs?

Check arguments in function calls

Test for the security patch level of the environment

Include logging functions

Digitally sign each application module

6.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

An application developer is deciding on the amount of idle session time that the application allows before a timeout. The BEST reason for determining the session timeout requirement is

organization policy.

industry best practices.

industry laws and regulations.

management feedback.

7.

MULTIPLE CHOICE QUESTION

5 mins • 1 pt

Which of the following is an advantage of using a high-level programming language?

It decreases execution times for programs

It allows programmers to define syntax

It requires programmer-controlled storage management

It enforces coding standards

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?