NEWEST CERTIFIED SECURE
SOFTWARE LIFECYCLE
PROFESSIONAL (CSSLP) EXAM |
Q&A WITH RATIONALES
1. What is the primary purpose of the Certified
Secure Software Lifecycle Professional
(CSSLP) certification?
A) To validate entry-level software development
skills
B) To validate expertise in incorporating
security practices into each phase of the
Software Development Lifecycle (SDLC)
C) To certify expertise in network routing and
switching
D) To validate basic cybersecurity awareness
Correct answer: B
Rationale: The CSSLP validates that software
professionals have the expertise to incorporate
security practices – authentication,
authorization and auditing – into each phase of
,the Software Development Lifecycle (SDLC),
from software design and implementation to
testing and deployment .
2. Which organization administers the CSSLP
certification?
A) CompTIA
B) ISACA
C) (ISC)²
D) GIAC
Correct answer: C
Rationale: The (ISC)² administers the CSSLP
certification to ensure software professionals
have the required knowledge and skills to
implement secure software development and
help mitigate cyber threats .
3. How long is the CSSLP exam and how many
questions does it contain?
A) 2 hours, 75 questions
B) 3 hours, 125 questions
, C) 4 hours, 200 questions
D) 6 hours, 250 questions
Correct answer: B
Rationale: The CSSLP exam is three hours long
and consists of 125 multiple-choice items .
4. What is the passing score for the CSSLP
exam?
A) 650 out of 1000 points
B) 700 out of 1000 points
C) 750 out of 1000 points
D) 800 out of 1000 points
Correct answer: B
Rationale: The passing grade for the CSSLP
exam is 700 out of 1000 points . (ISC)² uses an
IRT Rasch model with a logit cut score of 0.843
to set the cut score and equate all forms .
5. What is the format of the CSSLP exam?
A) Performance-based and drag-and-drop
SOFTWARE LIFECYCLE
PROFESSIONAL (CSSLP) EXAM |
Q&A WITH RATIONALES
1. What is the primary purpose of the Certified
Secure Software Lifecycle Professional
(CSSLP) certification?
A) To validate entry-level software development
skills
B) To validate expertise in incorporating
security practices into each phase of the
Software Development Lifecycle (SDLC)
C) To certify expertise in network routing and
switching
D) To validate basic cybersecurity awareness
Correct answer: B
Rationale: The CSSLP validates that software
professionals have the expertise to incorporate
security practices – authentication,
authorization and auditing – into each phase of
,the Software Development Lifecycle (SDLC),
from software design and implementation to
testing and deployment .
2. Which organization administers the CSSLP
certification?
A) CompTIA
B) ISACA
C) (ISC)²
D) GIAC
Correct answer: C
Rationale: The (ISC)² administers the CSSLP
certification to ensure software professionals
have the required knowledge and skills to
implement secure software development and
help mitigate cyber threats .
3. How long is the CSSLP exam and how many
questions does it contain?
A) 2 hours, 75 questions
B) 3 hours, 125 questions
, C) 4 hours, 200 questions
D) 6 hours, 250 questions
Correct answer: B
Rationale: The CSSLP exam is three hours long
and consists of 125 multiple-choice items .
4. What is the passing score for the CSSLP
exam?
A) 650 out of 1000 points
B) 700 out of 1000 points
C) 750 out of 1000 points
D) 800 out of 1000 points
Correct answer: B
Rationale: The passing grade for the CSSLP
exam is 700 out of 1000 points . (ISC)² uses an
IRT Rasch model with a logit cut score of 0.843
to set the cut score and equate all forms .
5. What is the format of the CSSLP exam?
A) Performance-based and drag-and-drop