
EC-CouncilCertified DevSecOps Engineer
Domain 5Objective 1
Runtime Application Self-Protection (RASP) ECDE Practice Questions (Page 2)
Part of the Release and Deploy Stage domain, which makes up ~14% of our current practice bank.
51questions here
11free pages
9concepts
Questions 6–10
- 6
During a security incident, RASP blocks a request that is later determined to be a false positive. The blocked request was from a legitimate user performing a valid action. What should the team do to prevent this from happening again?
Select an answer first - 7
After deploying RASP in monitoring mode, a team notices that the number of blocked events is very low, but the logs show many 'suspicious' events that were not blocked. The security team wants to reduce false negatives without causing application downtime. What should the team do first?
Select an answer first - 8
A company has deployed RASP to a production application and is experiencing a 20% increase in CPU usage. The team has identified that the RASP agent is performing deep inspection on all requests, including static resources like images and CSS files. The team wants to reduce CPU overhead without reducing protection for dynamic requests. What is the most effective approach?
Select an answer first - 9
Which of the following is a runtime attack that RASP is specifically designed to detect?
Select an answer first - 10
A team is deploying a legacy .NET Framework application on Windows servers. The application cannot be recompiled, and the team wants to add RASP protection without changing the application code. Which RASP deployment mode is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.