
EC-CouncilCertified DevSecOps Engineer
Domain 5Objective 1
Runtime Application Self-Protection (RASP) ECDE Practice Questions (Page 1)
Part of the Release and Deploy Stage domain, which makes up ~14% of our current practice bank.
51questions here
11free pages
9concepts
Questions 1–5
- 1
A security team is investigating a potential data breach. RASP logs show that a specific endpoint was targeted with a command injection payload, but the logs do not show whether the attack was blocked or if the command was executed. The application was running with RASP in monitoring mode at the time. What is the most important limitation of the RASP logs in this investigation?
Select an answer first - 2
A DevSecOps team is deploying a containerized Java microservice to a Kubernetes cluster. The security team wants runtime protection against SQL injection and deserialization attacks that bypass the existing network-layer WAF. The team needs visibility into attack attempts without requiring changes to the application code or container image. Which approach best meets these requirements?
Select an answer first - 3
A security analyst is evaluating RASP for a new application. The application handles sensitive data and is subject to strict compliance requirements. The analyst wants to know which types of attacks RASP can detect that a WAF cannot. Which attack type is best detected by RASP because it requires visibility into the application's internal logic?
Select an answer first - 4
A company has both a WAF and RASP deployed for their web application. A security analyst notices that the WAF is blocking a legitimate API request because it contains a pattern that resembles SQL injection. The analyst wants to understand the difference in how WAF and RASP would handle this request. Which statement is correct?
Select an answer first - 5
A software vendor sells a commercial Java application that customers deploy on their own infrastructure. The vendor wants to offer runtime security protection to customers without requiring them to modify the application or rebuild it. The vendor also wants to minimize the performance overhead on customer systems. Which RASP deployment approach is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.