
EC-CouncilCertified DevSecOps Engineer
Domain 1Objective 3
Integrating Security into DevOps and the Shift-Left Approach ECDE Practice Questions (Page 8)
Part of the DevOps and DevSecOps Foundations domain, which makes up ~22% of our current practice bank.
56questions here
12free pages
8concepts
Questions 36–40
- 36
In a CI/CD pipeline, when is dynamic application security testing (DAST) typically performed?
Select an answer first - 37
A company is adopting DevSecOps and has assigned all security responsibilities to a central security team. Developers are told to continue focusing only on features, and the security team will review code after each sprint. Which change is most important to successfully embed security into the DevOps lifecycle?
Select an answer first - 38
How does security as code enable repeatable security controls in CI/CD pipelines?
Select an answer first - 39
How do feedback loops from continuous security monitoring contribute to DevSecOps?
Select an answer first - 40
Which automated security testing tool is designed to identify vulnerabilities by analyzing source code without executing the application?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.