
EC-CouncilDevSecOps Essentials
Domain 3Objective 6
Continuous Monitoring Tools DSE Practice Questions (Page 6)
Part of the DevSecOps Toolchain domain, which makes up ~19% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 2–3 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
6concepts
Questions 26–30
- 26
A platform team wants to monitor a legacy application that only exposes metrics via a custom text file on the host. They need to scrape these metrics into Prometheus. Which component should they use?
Select an answer first - 27
What is the main purpose of log aggregation in a DevSecOps environment?
Select an answer first - 28
A team uses Grafana with Prometheus and Loki. They want to create a single dashboard that shows both metrics and logs for a specific service, with the ability to jump from a metric anomaly to the corresponding logs. Which approach is most effective?
Select an answer first - 29
A team wants to detect a potential brute-force attack on their web application. They have centralized logs in a SIEM. Which alerting configuration would best detect this attack pattern?
Select an answer first - 30
An organization must retain security logs for at least one year to meet compliance requirements. They currently store logs in a SIEM that only retains data for 30 days. What should they do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DSE” is a trademark of its owner, used for identification only.