
EC-CouncilCertified DevSecOps Engineer
Domain 5Objective 1
Runtime Application Self-Protection (RASP) ECDE Practice Questions (Page 11)
Part of the Release and Deploy Stage domain, which makes up ~14% of our current practice bank.
51questions here
11free pages
9concepts
Questions 51–51
- 51
A company is adopting DevSecOps and wants to integrate RASP into their CI/CD pipeline. The pipeline currently builds a Docker image, runs unit tests, and deploys to a staging environment. The team wants to ensure that RASP is tested and validated before production deployment. They have two options: (1) run RASP as a step in the pipeline that fails the build on critical findings, or (2) deploy RASP to staging in monitor-only mode and review results before production. Which approach is more aligned with DevSecOps principles?
Select an answer first
Finished these 1 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to ECDE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.