Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

D487 SECURE SOFTWARE DESIGN SCRIPT 2026 SOLVED QUESTIONS WITH FULL REVIEW

Rating
-
Sold
-
Pages
23
Grade
A+
Uploaded on
18-03-2026
Written in
2025/2026

D487 SECURE SOFTWARE DESIGN SCRIPT 2026 SOLVED QUESTIONS WITH FULL REVIEW

Institution
D487 SECURE SOFTWARE DESIGN
Course
D487 SECURE SOFTWARE DESIGN

Content preview

D487 SECURE SOFTWARE DESIGN SCRIPT
2026 SOLVED QUESTIONS WITH FULL REVIEW

◉ What are three parts of the STRIDE methodology? Answer:
Spoofing, Elevation, Tampering


◉ What is the reason software security teams host discovery
meetings with stakeholders early in the development life cycle?
Answer: To ensure that security is built into the product from the
start


◉ Why should a security team provide documented certification
requirements during the software assessment phase? Answer:
Depending on the environment in which the product resides,
certifications may be required by corporate or government entities
before the software can be released to customers.


◉ What are two items that should be included in the privacy impact
assessment plan regardless of which methodology is used? Answer:
Required process steps & Technologies and techniques


◉ What are the goals of each SDL deliverable? - Product Risk Profile
Answer: Estimate the actual cost of the product

,◉ What are the goals of each SDL deliverable? -SDL project outline
Answer: Map security activities to the development schedule


◉ What are the goals of each SDL deliverable? - Threat profile
Answer: Guide security activities to protect the product from
vulnerabilities


◉ What are the goals of each SDL deliverable? -List of third-party
software Answer: Identify the dependence on unmanaged software


◉ What is a threat action that is designed to illegally access and use
another person's credentials? Answer: Spoofing


◉ What are two steps of the threat modeling process? Answer:
Survey The application & Decompose the application


◉ What do the "A" and the first "D" in the DREAD acronym
represent? Answer: Damage & Affected Users


◉ Which shape indicates each type of flow diagram element? -
External elements Answer: Rectangle


◉ Which shape indicates each type of flow diagram element? - Data
Store Answer: Two Parallel horizontal lines

, ◉ Which shape indicates each type of flow diagram element? - Data
Flow Answer: Solid Line with an arrow


◉ Which shape indicates each type of flow diagram element? - Trust
Boundry Answer: Dashed Line


◉ What are the two deliverables of the Architecture phase of the
SDL? Answer: Threat Modeling artifacts & Policy compliance
analysis


◉ What SDL security assessment deliverable is used as an input to
an SDL architecture process? Answer: Threat profile


◉ Which software security testing technique tests the software from
an external perspective? Answer: Black box


◉ Which security design principle states that an entity should be
given the minimum privileges and resources for a minimum period
of time for a task? Answer: Least privilege


◉ After the developer is done coding a functionality, when should
code review be completed? Answer: Within hours or the same day

Written for

Institution
D487 SECURE SOFTWARE DESIGN
Course
D487 SECURE SOFTWARE DESIGN

Document information

Uploaded on
March 18, 2026
Number of pages
23
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$12.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TopGradeInsider Harvard University
View profile
Follow You need to be logged in order to follow users or courses
Sold
38
Member since
1 year
Number of followers
0
Documents
20015
Last sold
4 days ago
TopGradeInsider

Welcome to TopGradeInsider, your ultimate partner in navigating academic life. We know the pressure you’re under, which is why we’ve curated a massive library of high-quality resources designed to make your life easier. Access reliable test banks, solution manuals, and study guides that clarify complex topics and save you valuable time. Don’t let stress get in the way of your degree let TopGradeInsider give you the support you need to finish strong.

Read more Read less
4.5

2 reviews

5
1
4
1
3
0
2
0
1
0

Trending documents

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions