Which shape indicates the data storage in the flow diagram?
Give this one a try later!
two parallel horizontal lines
Five steps of threat modeling are:
,Give this one a try later!
identify security objectives, survey the application, decompose it, identify
threats, and identify vulnerabilities.
What tool is an AI powered management solution?
Give this one a try later!
Dynatrace
Which type of attack occurs when an attacker uses malicious code in the data sent in
a form?
Give this one a try later!
cross-site scripting
What term means requirements that describe any constraints or restrictions on a
design but do not impact the core purpose of the system
Give this one a try later!
non-functional requirements
Which phase of penetration testing allows for remediation to be performed?
,Give this one a try later!
deploy
What are scans that target security issues that are found outside the firewall?
Give this one a try later!
external scans
Which key deliverable occurs during post-release support?
Give this one a try later!
third-party reviews
Type of test done by the development tester to continually assess the quality of his or
her work...
Give this one a try later!
exploratory test
Which software security testing technique tests the software from an external
perspective?
, Give this one a try later!
black box
What does STRIDE stand for?
Give this one a try later!
spoofing, tampering, repudiation, information disclosure, denial of service,
and elevation of privilege
What does PASTA stand for?
Give this one a try later!
process of attack simulation and threat analysis
Which practice in the Ship (A5) phase of the security development cycle verifies
whether the product meets security mandates?
Give this one a try later!
A5 policy compliance analysis
What is phase four of the SDL?
Give this one a try later!
two parallel horizontal lines
Five steps of threat modeling are:
,Give this one a try later!
identify security objectives, survey the application, decompose it, identify
threats, and identify vulnerabilities.
What tool is an AI powered management solution?
Give this one a try later!
Dynatrace
Which type of attack occurs when an attacker uses malicious code in the data sent in
a form?
Give this one a try later!
cross-site scripting
What term means requirements that describe any constraints or restrictions on a
design but do not impact the core purpose of the system
Give this one a try later!
non-functional requirements
Which phase of penetration testing allows for remediation to be performed?
,Give this one a try later!
deploy
What are scans that target security issues that are found outside the firewall?
Give this one a try later!
external scans
Which key deliverable occurs during post-release support?
Give this one a try later!
third-party reviews
Type of test done by the development tester to continually assess the quality of his or
her work...
Give this one a try later!
exploratory test
Which software security testing technique tests the software from an external
perspective?
, Give this one a try later!
black box
What does STRIDE stand for?
Give this one a try later!
spoofing, tampering, repudiation, information disclosure, denial of service,
and elevation of privilege
What does PASTA stand for?
Give this one a try later!
process of attack simulation and threat analysis
Which practice in the Ship (A5) phase of the security development cycle verifies
whether the product meets security mandates?
Give this one a try later!
A5 policy compliance analysis
What is phase four of the SDL?