
EC-CouncilCertified Application Security Engineer (.NET)
Domain 7Objective 3
Secure Auditing and Logging CASENET Practice Questions (Page 4)
Part of the Secure Coding: Error Handling and Logging domain, which makes up ~12% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~6–10 in this domain), expect 2–3 from this objective — we provide 53 practice questions to prepare you well beyond it. (estimate)
53questions here
11free pages
8concepts
Questions 16–20
- 16
Which log event would be most appropriate to trigger an alert for a potential security incident?
Select an answer first - 17
In .NET, which configuration aspect is important for securely configuring a logging framework?
Select an answer first - 18
Your organization's compliance team requires that application audit logs be tamper-evident and retained for at least one year. The application runs on Windows Servers in a private cloud. You need to design a logging solution that meets these requirements with minimal operational overhead. Which approach should you choose?
Select an answer first - 19
Your .NET application uses Serilog to write structured logs to a central Elasticsearch cluster. You need to detect a possible account takeover where an attacker uses a valid session token. Which log-based detection rule is most effective?
Select an answer first - 20
A .NET application is being audited for compliance. The auditor requires that logs include the outcome of each security-relevant action (success or failure). The current logging code only logs exceptions, not successful actions. What is the best way to meet this requirement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CASENET” is a trademark of its owner, used for identification only.