
EC-CouncilCertified DevSecOps Engineer
Domain 4Objective 2
Building a CI/CD Pipeline ECDE Practice Questions (Page 5)
Part of the Test Stage: DAST and CI/CD Security domain, which makes up ~9% of our current practice bank.
50questions here
10free pages
8concepts
Questions 21–25
- 21
A company's CI/CD pipeline uses a shared build server. The security team is concerned about the risk of a compromised build server affecting the deployed applications. They want to mitigate this risk. Which measure should they implement?
Select an answer first - 22
What is the key difference between continuous delivery and continuous deployment?
Select an answer first - 23
Which of the following is a key benefit of implementing a CI/CD pipeline?
Select an answer first - 24
A development team wants to automate the release process so that every commit that passes all tests and security scans is automatically deployed to production without human intervention. Which deployment strategy should they implement?
Select an answer first - 25
A team has integrated DAST into their CI/CD pipeline. The DAST scan runs after deployment to staging and produces a report. The team wants to track the trend of vulnerabilities over time and be alerted if the number of critical vulnerabilities increases. What should be implemented?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.