
EC-CouncilCertified DevSecOps Engineer
Domain 1Objective 5
DevSecOps Pipeline, Strategy, and Tools ECDE Practice Questions (Page 1)
Part of the DevOps and DevSecOps Foundations domain, which makes up ~22% of our current practice bank.
40questions here
8free pages
7concepts
Questions 1–5
- 1
Which metric is most useful for measuring the effectiveness of a DevSecOps pipeline?
Select an answer first - 2
A development team is integrating SAST into their CI/CD pipeline. The SAST tool is producing a high number of false positives, which is causing developers to ignore the results. What is the most effective way to address this issue?
Select an answer first - 3
A DevSecOps team wants to monitor the security posture of their pipeline. They have set up a dashboard showing the number of vulnerabilities found per build. Which additional metric would best help them identify whether the pipeline is improving security over time?
Select an answer first - 4
What is the primary goal of integrating dependency scanning into a CI/CD pipeline?
Select an answer first - 5
A DevSecOps team wants to measure the effectiveness of their pipeline's security gates. They currently track the number of vulnerabilities found in production. They also want to know whether the gates are catching issues before deployment. Which combination of metrics would provide the most useful insight?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.