
EC-CouncilAssociate C|CISO
Domain 3Objective 3
Integrating Security Requirements into Operational Processes ACCISO Practice Questions (Page 3)
Part of the Security Program Management and Operations domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–4 from this objective — we provide 62 practice questions to prepare you well beyond it. (estimate)
62questions here
13free pages
7concepts
Questions 11–15
- 11
Which stage of the operational process lifecycle is most appropriate for conducting a post-implementation review of security requirements?
Select an answer first - 12
A software company is adopting a DevOps model to accelerate feature delivery. The security team wants to embed security into the CI/CD pipeline. Which approach best reflects security-by-design principles?
Select an answer first - 13
A bank is mapping its wire transfer process. The process includes authentication, authorization, transaction execution, and confirmation. The security team has identified that the authorization step lacks segregation of duties. What control should be implemented at that step?
Select an answer first - 14
A technology company is adopting a microservices architecture for its application. The security team wants to apply security-by-design principles. The development team is concerned that adding security to each microservice will slow down development. What is the best way to balance security and development speed?
Select an answer first - 15
An e-commerce company has integrated security requirements into its order fulfillment process, including encryption of customer data and access controls for warehouse staff. How should the company verify that these security requirements are being met on an ongoing basis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.