
EC-CouncilDevSecOps Essentials
Domain 6Objective 4
Integrating Logging, Monitoring, and Alerting DSE Practice Questions (Page 9)
Part of the DevSecOps Monitoring and Feedback domain, which makes up ~15% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 2–2 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)
47questions here
10free pages
5concepts
Questions 41–45
- 41
A security team wants to detect a potential brute-force attack on their web application. They have access to application logs that record login attempts, including username, IP address, and timestamp. Which alerting strategy is most effective for this detection?
Select an answer first - 42
In a DevSecOps context, what is the primary purpose of logging?
Select an answer first - 43
A team is monitoring a web application. They have set up alerts for high CPU usage and high error rates. However, they are missing a slow degradation that occurs gradually over several days. What is the most likely reason, and what should they do?
Select an answer first - 44
A DevSecOps team is building a unified observability pipeline. They have multiple data sources: application logs, infrastructure metrics, and security events. They want to correlate these signals to detect a complex attack that involves multiple steps. What is the most effective approach?
Select an answer first - 45
In the context of monitoring strategies, what do metrics primarily provide?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DSE” is a trademark of its owner, used for identification only.