Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified DevSecOps Engineer

Domain 1Objective 3

Integrating Security into DevOps and the Shift-Left Approach ECDE Practice Questions (Page 5)

Part of the DevOps and DevSecOps Foundations domain, which makes up ~22% of our current practice bank.

56questions here
12free pages
8concepts

Questions 21–25

  1. 21foundation · easy

    What does the concept of 'security as code' primarily involve?

    Select an answer first
  2. 22application · medium

    A development team is new to shift-left security and is overwhelmed by the number of vulnerabilities reported by SAST. Many findings are false positives, and developers have started ignoring the scan results. What is the best first step to improve the situation?

    Select an answer first
  3. 23expert · hard

    An organization is transitioning to DevSecOps. The development team is measured on feature delivery speed, while the security team is measured on the number of vulnerabilities found. This has created conflicting incentives and tension. Which change best aligns the teams toward shared security goals?

    Select an answer first
  4. 24expert · hard

    A startup is building a new product and wants to adopt shift-left security from the start. They have a small team and limited budget. They need to choose which security tools to integrate into their CI pipeline. Which approach provides the best security value for their constraints?

    Select an answer first
  5. 25foundation · easy

    Which collaboration practice helps break down silos between development, operations, and security teams?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.