
GitLabCertified Security Associate
Domain 3Objective 2
Assess Container Image Vulnerabilities GITLAB-CERTIFIED-SECURITY-SPECIALIST Practice Questions (Page 1)
Part of the Container Scanning domain, which makes up ~14% of our current practice bank.
20questions here
4free pages
5concepts
Questions 1–5
- 1
A security analyst reviews the container scanning report for a production image. The report lists a vulnerability with severity 'Critical' in the `openssl` package, but the vulnerability is not present in the application's own code. The analyst needs to determine the appropriate remediation. Which action is most appropriate?
Select an answer first - 2
In a GitLab vulnerability report, what does the 'severity' field indicate?
Select an answer first - 3
In a GitLab CI/CD pipeline, when does container scanning typically occur?
Select an answer first - 4
Which of the following is a valid way to enable container scanning in a GitLab CI/CD pipeline?
Select an answer first - 5
When assessing the impact of a vulnerability found in a container image, which factor is most important to consider?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “GITLAB-CERTIFIED-SECURITY-SPECIALIST” is a trademark of its owner, used for identification only.