100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

D487 Questions and Correct Answers/ Latest Update / Already Graded

Rating
-
Sold
-
Pages
21
Grade
A+
Uploaded on
23-04-2025
Written in
2024/2025

What is the study of real-world software security initiatives organized so companies can measure their initiatives and understand how to evolve them over time? -Building Security in Maturity Model (BSIMM) -Security features and design -OWASP Software Assurance Maturity Model (SAMM) -ISO 27001 Ans: -Building Security in Maturity Model (BSIMM) What is the analysis of computer software that is performed without executing programs? -static analysis -fuzzing -dynamic analysis -owasp zap Ans: -static analysis what iso standard is the benchmark for information security today? -iso 27001 -iso 7799 -iso 27034 -iso 8601 Ans: -iso 27001 2 | Page what is the analysis of computer software that is performed by executing programs on a real or virtual processor in real time? -dynamic analysis -static analysis -fuzzing -security testing Ans: -dynamic analysis which person is responsible for designing, planning, and implementing secure coding practices and security testing methodologies? -software security architect -product security developer -software security champion -software tester Ans: -software security architect what is a list of information security vulnerabilities that aims to provide names for publicly known problems? -common computer vulnerabilities and exposures (CVE) - SANS institute top cyber security risks -bugtraq - Carnegie melon computer emergency readiness team (CERT) Ans: -common computer vulnerabilities and exposures (CVE) which secure coding best practice uses well-tested, publicly available algorithms to hide product data from unauthor

Show more Read less
Institution
D487
Course
D487










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
D487
Course
D487

Document information

Uploaded on
April 23, 2025
Number of pages
21
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

1 | Page
D487 Questions and Correct Answers/ Latest
Update / Already Graded
What is the study of real-world software security initiatives organized so
companies can measure their initiatives and understand how to evolve them over
time?

-Building Security in Maturity Model (BSIMM)

-Security features and design

-OWASP Software Assurance Maturity Model (SAMM)

-ISO 27001

Ans: -Building Security in Maturity Model (BSIMM)


What is the analysis of computer software that is performed without executing
programs?

-static analysis

-fuzzing

-dynamic analysis

-owasp zap

Ans: -static analysis


what iso standard is the benchmark for information security today?

-iso 27001

-iso 7799

-iso 27034

-iso 8601

Ans: -iso 27001

, 2 | Page
what is the analysis of computer software that is performed by executing programs
on a real or virtual processor in real time?

-dynamic analysis

-static analysis

-fuzzing

-security testing

Ans: -dynamic analysis


which person is responsible for designing, planning, and implementing secure coding
practices and security testing methodologies?

-software security architect

-product security developer

-software security champion

-software tester

Ans: -software security architect


what is a list of information security vulnerabilities that aims to provide names for
publicly known problems?

-common computer vulnerabilities and exposures (CVE)

- SANS institute top cyber security risks

-bugtraq

- Carnegie melon computer emergency readiness team (CERT)

Ans: -common computer vulnerabilities and exposures (CVE)


which secure coding best practice uses well-tested, publicly available algorithms to
hide product data from unauthorized access?

, 3 | Page
-access control

-authentication and password management

-cryptographic practices

-data protection

Ans: -cryptographic practices


which secure coding best practice ensures servers, frameworks, and system
components are all running the latest approved versions?

-file management

-input validation

-database security

-system configuration

Ans: -system configuration


Which secure coding best practice says to use parameterized queries, encrypted
connection strings stored in separate configuration files, and strong passwords or
multi-factor authentication?

-access control

-database security

-file management

-session management

Ans: -database security


which secure coding best practice says that all information passed to other systems
should be encrypted?

-output encoding

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Expert1 Chamberlian School of Nursing
View profile
Follow You need to be logged in order to follow users or courses
Sold
41
Member since
11 months
Number of followers
1
Documents
7286
Last sold
5 days ago
Expert1

Welcome to Expert1 – Your Trusted Study Partner! Struggling to prepare for exams or ace your coursework? At Expert1, I provide top-tier, exam-ready study materials designed to help you succeed with confidence. All notes are created with clarity, precision, and a deep understanding of the curriculum to ensure you save time and score high. What You’ll Find Here: High-quality summaries and exam packs Past paper solutions with detailed explanations Notes aligned with your syllabus (A-levels, university, etc.) Resources from top-performing students Trusted by hundreds of students to boost their grades!

Read more Read less
4.3

6 reviews

5
5
4
0
3
0
2
0
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions