100% tevredenheidsgarantie Direct beschikbaar na je betaling Lees online óf als PDF Geen vaste maandelijkse kosten 4,6 TrustPilot
logo-home
Tentamen (uitwerkingen)

D487 Secure SW Design Questions and Correct Answers/ Latest Update / Already Graded

Beoordeling
-
Verkocht
1
Pagina's
20
Cijfer
A+
Geüpload op
23-04-2025
Geschreven in
2024/2025

D487 Secure SW Design Questions and Correct Answers/ Latest Update / Already Graded D487 Secure SW Design Questions and Correct Answers/ Latest Update / Already Graded D487 Secure SW Design Questions and Correct Answers/ Latest Update / Already Graded

Meer zien Lees minder
Instelling
D487
Vak
D487










Oeps! We kunnen je document nu niet laden. Probeer het nog eens of neem contact op met support.

Geschreven voor

Instelling
D487
Vak
D487

Documentinformatie

Geüpload op
23 april 2025
Aantal pagina's
20
Geschreven in
2024/2025
Type
Tentamen (uitwerkingen)
Bevat
Vragen en antwoorden

Onderwerpen

Voorbeeld van de inhoud

1 | Page
D487 Secure SW Design Questions and Correct
Answers/ Latest Update / Already Graded
Which practice in the Ship (A5) phase of the security development cycle verifies
whether the product meets security mandates?

Ans: A5 policy compliance analysis


Which post-release support activity defines the process to communicate, identify,
and alleviate security threats?

Ans: PRSA1: External vulnerability disclosure response


What are two core practice areas of the OWASP Security Assurance Maturity
Model (OpenSAMM)?

Ans: Governance, Construction


Which practice in the Ship (A5) phase of the security development cycle uses tools
to identify weaknesses in the product?

Ans: Vulnerability scan


Which post-release support activity should be completed when companies are
joining together?

Ans: Security architectural reviews


Which of the Ship (A5) deliverables of the security development cycle are
performed during the A5 policy compliance analysis?

Ans: Analyze activities and standards


Which of the Ship (A5) deliverables of the security development cycle are
performed during the code-assisted penetration testing?

, 2 | Page
Ans: white-box security test


Which of the Ship (A5) deliverables of the security development cycle are
performed during the open-source licensing review?

Ans: license compliance


Which of the Ship (A5) deliverables of the security development cycle are
performed during the final security review?

Ans: Release and ship


How can you establish your own SDL to build security into a process appropriate
for your organization's needs based on agile?

Ans: iterative development


How can you establish your own SDL to build security into a process appropriate
for your organization's needs based on devops?

Ans: continuous integration and continuous deployments


How can you establish your own SDL to build security into a process appropriate
for your organization's needs based on cloud?

Ans: API invocation processes


How can you establish your own SDL to build security into a process appropriate
for your organization's needs based on digital enterprise?

Ans: enables and improves business activities


Which phase of penetration testing allows for remediation to be performed?

Ans: Deploy

, 3 | Page
Which key deliverable occurs during post-release support?

Ans: third-party reviews


Which business function of OpenSAMM is associated with governance?

Ans: Policy and compliance


Which business function of OpenSAMM is associated with construction?

Ans: Threat assessment


Which business function of OpenSAMM is associated with verification?

Ans: Code review


Which business function of OpenSAMM is associated with deployment?

Ans: Vulnerability management


What is the product risk profile?

Ans: A security assessment deliverable that estimates the actual cost of the
product.


A software security team member has been tasked with creating a deliverable that
provides details on where and to what degree sensitive customer information is
collected, stored, or created within a new product offering. What does the team
member need to deliver in order to meet the objective?

Ans: Privacy impact assessment


What is the first phase in the security development life cycle?

Ans: A1 Security Assessment
€12,62
Krijg toegang tot het volledige document:

100% tevredenheidsgarantie
Direct beschikbaar na je betaling
Lees online óf als PDF
Geen vaste maandelijkse kosten


Ook beschikbaar in voordeelbundel

Maak kennis met de verkoper

Seller avatar
De reputatie van een verkoper is gebaseerd op het aantal documenten dat iemand tegen betaling verkocht heeft en de beoordelingen die voor die items ontvangen zijn. Er zijn drie niveau’s te onderscheiden: brons, zilver en goud. Hoe beter de reputatie, hoe meer de kwaliteit van zijn of haar werk te vertrouwen is.
Expert1 Chamberlian School of Nursing
Volgen Je moet ingelogd zijn om studenten of vakken te kunnen volgen
Verkocht
41
Lid sinds
11 maanden
Aantal volgers
1
Documenten
7286
Laatst verkocht
5 dagen geleden
Expert1

Welcome to Expert1 – Your Trusted Study Partner! Struggling to prepare for exams or ace your coursework? At Expert1, I provide top-tier, exam-ready study materials designed to help you succeed with confidence. All notes are created with clarity, precision, and a deep understanding of the curriculum to ensure you save time and score high. What You’ll Find Here: High-quality summaries and exam packs Past paper solutions with detailed explanations Notes aligned with your syllabus (A-levels, university, etc.) Resources from top-performing students Trusted by hundreds of students to boost their grades!

Lees meer Lees minder
4,3

6 beoordelingen

5
5
4
0
3
0
2
0
1
1

Recent door jou bekeken

Waarom studenten kiezen voor Stuvia

Gemaakt door medestudenten, geverifieerd door reviews

Kwaliteit die je kunt vertrouwen: geschreven door studenten die slaagden en beoordeeld door anderen die dit document gebruikten.

Niet tevreden? Kies een ander document

Geen zorgen! Je kunt voor hetzelfde geld direct een ander document kiezen dat beter past bij wat je zoekt.

Betaal zoals je wilt, start meteen met leren

Geen abonnement, geen verplichtingen. Betaal zoals je gewend bent via iDeal of creditcard en download je PDF-document meteen.

Student with book image

“Gekocht, gedownload en geslaagd. Zo makkelijk kan het dus zijn.”

Alisha Student

Veelgestelde vragen