
EC-CouncilCertified DevSecOps Engineer
Domain 1Objective 5
DevSecOps Pipeline, Strategy, and Tools ECDE Practice Questions (Page 5)
Part of the DevOps and DevSecOps Foundations domain, which makes up ~22% of our current practice bank.
40questions here
8free pages
7concepts
Questions 21–25
- 21
Which practice is essential for securing the DevSecOps pipeline itself?
Select an answer first - 22
A DevSecOps team has a pipeline that runs SAST, DAST, and dependency scanning. The team notices that the pipeline often fails due to flaky DAST tests, causing delays. They want to maintain security coverage without blocking delivery on false positives. Which approach best addresses this?
Select an answer first - 23
A team is building a DevSecOps pipeline for a new application. They want to ensure that security is integrated into every stage. Which of the following is the best example of integrating security into the 'deploy' stage of the pipeline?
Select an answer first - 24
A team is designing a DevSecOps pipeline for a mobile application. They want to integrate security checks into the pipeline. Which of the following is the best example of a security check in the 'build' stage of the pipeline?
Select an answer first - 25
When formulating a DevSecOps pipeline strategy, what is the primary purpose of defining 'security gates'?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.