
GitLabCertified Fundamentals Associate
Domain 5Objective 1
Set up Basic Security Scanning GITLAB-CERTIFIED-GIT-ASSOCIATE Practice Questions (Page 1)
Part of the Security Scanning Basics domain, which makes up ~13% of our current practice bank.
27questions here
6free pages
5concepts
Questions 1–5
- 1
A security analyst has reviewed a SAST finding and determined it is a false positive. What is the correct action in GitLab to handle this finding?
Select an answer first - 2
A security team has verified a vulnerability and confirmed it is a real issue. They want to ensure it is not accidentally dismissed in the future. What action should they take?
Select an answer first - 3
How does a user typically add a security scanning job to their GitLab CI/CD pipeline?
Select an answer first - 4
A team is building a microservices application with multiple services. They want to scan each service for vulnerabilities but are concerned about the CI time and cost of running full scans on every service for every commit. What is the most efficient strategy?
Select an answer first - 5
A development team wants to add static application security testing (SAST) to their existing CI/CD pipeline without writing custom scanning logic. The project uses a standard .gitlab-ci.yml file. What is the most efficient way to enable SAST?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “GITLAB-CERTIFIED-GIT-ASSOCIATE” is a trademark of its owner, used for identification only.