
GIAC Security Leadership
Domain 2Objective 4
Managing Application Security GSLC Practice Questions (Page 13)
Part of the Technical Security Management domain, which makes up ~27% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~19–32 in this domain), expect 4–6 from this objective — we provide 63 practice questions to prepare you well beyond it. (estimate)
63questions here
13free pages
15concepts
Questions 61–63
- 61
A security manager needs to report to executives on the effectiveness of the application security program. The executives want to understand whether the program is improving over time. Which set of metrics would provide the most balanced view?
Select an answer first - 62
In a Secure Software Development Lifecycle (SSDLC), which activity is typically performed during the requirements phase to integrate security?
Select an answer first - 63
When is Dynamic Application Security Testing (DAST) most appropriately applied?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GSLC
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSLC” is a trademark of its owner, used for identification only.