
GitLabCertified Security Associate
Domain 2Objective 1
Configure Secret Detection GITLAB-CERTIFIED-SECURITY-SPECIALIST Practice Questions (Page 2)
Part of the Secret and Dependency Scanning domain, which makes up ~21% of our current practice bank.
24questions here
5free pages
6concepts
Questions 6–10
- 6
A team wants to run secret detection with a custom ruleset that adds a new rule for a proprietary token format. They also want to keep the predefined rules. What should they do?
Select an answer first - 7
A developer sees a secret detection finding in a merge request widget. The finding shows a token that looks like a real API key, but the developer knows it is a placeholder used in documentation. What is the most appropriate action?
Select an answer first - 8
How do predefined secret detection rules identify secrets?
Select an answer first - 9
What can be done to manage the severity of a secret detection finding?
Select an answer first - 10
A security analyst wants to increase the severity of a predefined secret detection rule for AWS access keys from 'Critical' to 'Blocker' so that merge requests are blocked when such a key is found. What should they do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “GITLAB-CERTIFIED-SECURITY-SPECIALIST” is a trademark of its owner, used for identification only.