
EC-CouncilCertified DevSecOps Engineer
Domain 2Objective 3
Scanning Code Repositories ECDE Practice Questions (Page 3)
Part of the Plan Stage: Threat Modeling and Pre-Commit Security domain, which makes up ~19% of our current practice bank.
37questions here
8free pages
9concepts
Questions 11–15
- 11
Which of the following is a common way to integrate a SAST tool into a repository workflow?
Select an answer first - 12
When prioritizing scan findings, which factor is most important to consider?
Select an answer first - 13
Which of the following is an example of a scanning governance policy?
Select an answer first - 14
Which of the following is a common finding that container image scanning can detect?
Select an answer first - 15
What is the primary purpose of scanning code repositories in a DevSecOps pipeline?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.