Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified DevSecOps Engineer

Domain 5Objective 1

Runtime Application Self-Protection (RASP) ECDE Practice Questions (Page 6)

Part of the Release and Deploy Stage domain, which makes up ~14% of our current practice bank.

51questions here
11free pages
9concepts

Questions 26–30

  1. 26application · medium

    A development team is deploying a new web application and wants to use RASP to protect against common attacks. The team is particularly concerned about SQL injection and cross-site scripting (XSS). The team wants to ensure RASP is configured to detect these attacks. What should the team do?

    Select an answer first
  2. 27application · medium

    A DevSecOps team wants to use RASP logs to improve their security posture. They want to identify which attack vectors are most commonly attempted against their application. Which approach best uses RASP monitoring capabilities?

    Select an answer first
  3. 28application · medium

    A security architect is explaining to a developer why RASP is being added to a new microservice. The developer asks: 'We already have a WAF in front of the API. Why do we need RASP?' Which response best explains the difference?

    Select an answer first
  4. 29foundation · easy

    How can RASP be integrated into a CI/CD pipeline to provide continuous security?

    Select an answer first
  5. 30foundation · easy

    Which action is appropriate when tuning RASP to reduce false positives?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.