Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Application Security Engineer (Java)

Domain 2Objective 2

Secure Application Design and Architecture CASEJAVA Practice Questions (Page 8)

Part of the Security Requirements and Secure Design domain, which makes up ~19% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 3–5 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)

52questions here
11free pages
10concepts

Questions 36–40

  1. 36foundation · easy

    During a security design review, which of the following is a key activity?

    Select an answer first
  2. 37application · medium

    A Java application is being designed with a global error handler that returns error messages to users. The security team wants to prevent information leakage while still supporting auditability. Which design is most appropriate?

    Select an answer first
  3. 38application · medium

    A Java application's error handling currently returns detailed stack traces to users. The security review recommends a change. Which approach best balances usability and security?

    Select an answer first
  4. 39foundation · easy

    What is a best practice for logging security-relevant events?

    Select an answer first
  5. 40foundation · easy

    Which data protection mechanism is used to protect sensitive data at rest in a database?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CASEJAVA” is a trademark of its owner, used for identification only.