Complete Exam Review of All 60
Questions and Correct Answers/
D487 Secure Software Design Pre-
Assessment Exam Review 2026-
2027 (Brand New!)
D487 Secure software design pre-assessment
, Help Articles
PRE-ASSESSMENT: SECURE SOFTWARE DESIGN (KEO1) (PKEO)
Attempt #1
Status: Not Passed
1. What is a study of real-world software security initiatives organized so companies can measure their initiatives
and understand how to evolve them over time?
YOUR CORRECT
ANSWER ANSWER
Building Security In Maturity Model (BSIMM)
Security features and design
OWASP Software Assurance Maturity Model (SAMM)
ISO 27001
2. What is the analysis of computer software that is performed without executing programs?
YOUR CORRECT
ANSWER ANSWER
Static analysis
Fuzzing
Dynamic analysis
OWASP ZAP
3. Which International Organization for Standardization (ISO) standard is the benchmark for information security
today?
YOUR CORRECT
ANSWER ANSWER
ISO/IEC 27001
ISO/IEC 17799
ISO/IEC 27034
ISO 8601
4. What is the analysis of computer software that is performed by executing programs on a real or virtual
processor in real time?
Accessibility Settings
, YOUR CORRECT
ANSWER ANSWER
Dynamic analysis
Static analysis
Fuzzing
Security testing
5. Which person is responsible for designing, planning, and implementing secure coding practices and security
testing methodologies?
YOUR CORRECT
ANSWER ANSWER
Software security architect
Product security developer
Software security champion
Software tester
6. A company is preparing to add a new feature to its flagship software product. The new feature is similar to
features that have been added in previous years, and the requirements are well-documented. The project is
expected to last three to four months, at which time the new feature will be released to customers. Project
team members will focus solely on the new feature until the project ends.
Which software development methodology is being used?
YOUR CORRECT
ANSWER ANSWER
Waterfall
Agile
Scrum
Extreme programming
7. A new product will require an administration section for a small number of users. Normal users will be able to
view limited customer information and should not see admin functionality within the application.
Which concept is being used?
YOUR CORRECT
ANSWER ANSWER
Principle of least privilege