Search Header Logo

CASP+: Chapter 5(2of3)

Authored by Khairul Imtiyaz

Computers

University

Used 1+ times

CASP+: Chapter 5(2of3)
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

28 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

An organization is implementing middleware software to facilitate communication between its applications. They prioritize security considerations to ensure secure communication and flexibility in deploying changes. Considering the provided information, which middleware software utilizes logical addresses for communication and enhances flexibility in deploying changes between applications?

A) Directory Services

B) Domain Name System (DNS)

C) Service-Oriented Architecture (SOA)

D) Enterprise Service Bus (ESB)

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Considering the provided information, which type of code review methodology is likely to be emphasized to achieve the goal of encouraging developers to focus on reviewing altered bits of code instead of entire code bases?

A) Comprehensive Code Review

B) Incremental Code Review

C) Dynamic application security testing (DAST)

D) Static application security testing (SAST)

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

A software development team is focused on ensuring that code changes do not break previously working features and that security issues like input validation are adequately addressed. They are implementing a testing approach that specifically checks for these scenarios. Considering the provided information, which testing approach checks if code changes break previously working features, especially for security issues like input validation?

A) Regression Testing

B) Unit Testing

C) Integration Testing

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Considering the provided information, which of the following objectives BEST represents the focus of SecDevOps when applied to IT infrastructure management?

A) Ensuring rapid deployment of new features

B) Reducing operational overhead

C) Ensuring compliance with industry regulations

D) Improving collaboration between development and operations teams

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

A software development team is focused on establishing a robust software development lifecycle that integrates development and operations seamlessly. They aim to implement a structured process encompassing planning, coding, testing, releasing, deploying, operating, and monitoring. Considering the provided information, which of the following practices involves integrating development and operations through a structured process encompassing various stages of software development?

A) Validating Third-Party Libraries

B) Defined DevOps Pipeline

C) Code Signing

D) Threat Modeling

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Considering the provided information, what are the two code review methodologies primarily employed by the SecDevOps team?

A) Dynamic application security testing (DAST) and Incremental Code Review

B) Static application security testing (SAST) and Comprehensive Code Review

C) Incremental Code Review and Static application security testing (SAST)

D) Dynamic application security testing (DAST) and Static application security testing (SAST)

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Considering the provided information, which of the following practices focuses on ensuring the readiness of the infrastructure supporting the application for production deployment?

A) Continuous Integration (CI)

B) Continuous Delivery

C) Continuous Deployment

D) Continuous Monitoring

E) Continuous Validation

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?