
EC-CouncilDevSecOps Essentials
Domain 4Objective 2
Key Elements of the DevSecOps Pipeline DSE Practice Questions (Page 2)
Part of the DevSecOps Pipelines and CI/CD Security domain, which makes up ~18% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–3 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
8concepts
Questions 6–10
- 6
What is the main purpose of a feedback loop in a DevSecOps pipeline?
Select an answer first - 7
A company has a CI/CD pipeline that deploys a web application. The security team wants to implement continuous monitoring and logging, but they are concerned about the performance impact on the application. They also want to ensure that security events are correlated across the pipeline and the application. Which approach best addresses these concerns?
Select an answer first - 8
A company has a CI/CD pipeline that includes SAST and dependency scanning. The security team wants to ensure that developers fix security findings quickly, but they are concerned that too many false positives will cause developers to ignore the results. Which approach best addresses this concern?
Select an answer first - 9
A company is building a Java application and uses Maven to manage dependencies. They want to ensure that the build artifacts are secure and that dependencies are not tampered with. Which measure should they implement in the pipeline?
Select an answer first - 10
How does continuous monitoring contribute to security in a DevSecOps pipeline?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DSE” is a trademark of its owner, used for identification only.