
EC-CouncilDevSecOps Essentials
Domain 3Objective 3
Continuous Testing Tools DSE Practice Questions (Page 1)
Part of the DevSecOps Toolchain domain, which makes up ~19% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 2–3 from this objective — we provide 58 practice questions to prepare you well beyond it. (estimate)
58questions here
12free pages
10concepts
Questions 1–5
- 1
What is the benefit of integrating continuous testing tools with build and deployment systems?
Select an answer first - 2
A team wants to automatically block a build if any open-source dependency has a critical known vulnerability or a license that is incompatible with their commercial product. They use Maven for their Java project. What should they integrate into their CI pipeline?
Select an answer first - 3
A security team wants to test a web application for vulnerabilities that only appear when the application is running with real user interactions, such as broken access control and business logic flaws. They want the test to be automated and run against the staging environment. Which tool should they use?
Select an answer first - 4
How does a Static Application Security Testing (SAST) tool analyze code?
Select an answer first - 5
A company wants to implement continuous testing in their DevSecOps pipeline but is concerned about the impact on build time. They have a large codebase and running all tests on every commit would significantly slow down the pipeline. They want to balance thorough testing with fast feedback. Which approach is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DSE” is a trademark of its owner, used for identification only.