Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Document preview thumbnail
Preview 1 out of 3 pages
Exam (elaborations)

Operating System Security Exam Questions and Correct Solutions Graded A+ (Already Passed)

Document preview thumbnail
Preview 1 out of 3 pages

Operating System Security Exam Questions and Correct Solutions Graded A+ (Already Passed) In agile software development, each sprint ends at a specific point in time and should have some deliverable. - Answers True Configuration control is a set of processes and approval stages required to change a configuration item's attributes and to re-baseline them. - Answers True The Software Security Framework (SSF) is a component of the Building Security in Maturity Model (BSIMM) that organizes the 109 BSIMM activities into a framework consisting of 12 practices in four domains. - Answers True The Security Development Lifecycle (SDL) is a security assurance process that is focused on software development. - Answers True A deliverable is a description of components stored in a database. - Answers False A Configuration Control Board (CCB) is a person or group of people responsible for making decisions about changes to the system definition during the course of the development life cycle. - Answers True Configuration identification is the ability to record and report on the configuration baselines associated with each configuration item at any moment in time. - Answers False A schema is any object created as a result of project activities. - Answers False Configuration auditing is the process of confirming that all system components that should be in a given baseline are present. - Answers True The System Process Framework (SPF) is a formal model for the process of creating and modifying software. - Answers False Decomposition refers to breaking down a software development project into distinct phases. - Answers True The development method an organization uses is more important than attention to security. - Answers False Software development is as much an art as it is a science. - Answers True The most important concept in the Software Development Life Cycle (SDLC) is decomposition, or breaking down a software development project into distinct phases. - Answers True Agile development is a method of developing software that is based on small project iterations, or sprints, instead of long project schedules. - Answers True One of the main reasons the Building Security in Maturity Model (BSIMM) model is so valuable is that it reports on what works in the area of secure application development. - Answers True Testing and evaluating application changes after implementation is unnecessary. - Answers False The Software Security Framework (SSF) is a collection of best practices for handling changes in software projects. - Answers False A deliverable is a small project iteration used in agile software development. - Answers False A Software Security Framework (SSF) is a newly published framework for software development that is the result of a study of large organizations that develop software with a specific focus on security. - Answers False Which of the following is NOT one of the most common application vulnerabilities? - Answers Agile development Which of the following refers to a newly published framework for software development that is the result of a study of large organizations that develop software with a specific focus on security? - Answers Building Security in Maturity Model (BSIMM) Which of the following is NOT one of the common needs for control throughout the development process, regardless of the specific software development method used? - Answers Unique process that cannot be repeated Which of the following is NOT one of the four domains of Software Security Framework (SSF)? - Answers Decomposition Which of the following refers to a security assurance process that is focused on software development? - Answers Security Development Lifecycle (SDL) Which of the following is a component of the Building Security in Maturity Model (BSIMM) that organizes the 109 BSIMM activities into a framework consisting of 12 practices in four domains? - Answers Software Security Framework (SSF) The System Development Life Cycle (SDLC) is a: - Answers formal model for the process of creating and modifying software. Which of the following is NOT part of software configuration management (SCM)? - Answers Life cycle management Which of the following is NOT one of the four software configuration management (SCM) activities? - Answers Configuration phase-in

Content preview

Operating System Security Exam Questions and Correct Solutions Graded A+ (Already Passed)

In agile software development, each sprint ends at a specific point in time and should have some
deliverable. - Answers True

Configuration control is a set of processes and approval stages required to change a configuration item's
attributes and to re-baseline them. - Answers True

The Software Security Framework (SSF) is a component of the Building Security in Maturity Model
(BSIMM) that organizes the 109 BSIMM activities into a framework consisting of 12 practices in four
domains. - Answers True

The Security Development Lifecycle (SDL) is a security assurance process that is focused on software
development. - Answers True

A deliverable is a description of components stored in a database. - Answers False

A Configuration Control Board (CCB) is a person or group of people responsible for making decisions
about changes to the system definition during the course of the development life cycle. - Answers True

Configuration identification is the ability to record and report on the configuration baselines associated
with each configuration item at any moment in time. - Answers False

A schema is any object created as a result of project activities. - Answers False

Configuration auditing is the process of confirming that all system components that should be in a given
baseline are present. - Answers True

The System Process Framework (SPF) is a formal model for the process of creating and modifying
software. - Answers False

Decomposition refers to breaking down a software development project into distinct phases. - Answers
True

The development method an organization uses is more important than attention to security. - Answers
False

Software development is as much an art as it is a science. - Answers True

The most important concept in the Software Development Life Cycle (SDLC) is decomposition, or
breaking down a software development project into distinct phases. - Answers True

Agile development is a method of developing software that is based on small project iterations, or
sprints, instead of long project schedules. - Answers True

One of the main reasons the Building Security in Maturity Model (BSIMM) model is so valuable is that it
reports on what works in the area of secure application development. - Answers True

Document information

Uploaded on
December 9, 2024
Number of pages
3
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$8.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TutorJosh
3.4
(74)
Sold
474
Followers
16
Items
32584
Last sold
1 day ago


Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions