
GitLabCertified Security Associate
Domain 3Objective 1
Implement Container Scanning GITLAB-CERTIFIED-SECURITY-SPECIALIST Practice Questions (Page 5)
Part of the Container Scanning domain, which makes up ~14% of our current practice bank.
27questions here
6free pages
7concepts
Questions 21–25
- 21
A team wants to enforce a security gate so that merge requests are blocked when container scanning finds a high-severity vulnerability. They have enabled container scanning and it runs on merge requests. What additional configuration is required?
Select an answer first - 22
A container scan report shows a vulnerability with a severity of 'Medium' in a package that is only used during the build stage, not in the final image. What is the best action?
Select an answer first - 23
A team wants container scanning to run only on merge requests targeting the `main` branch, and they want to fail the merge request if any critical vulnerability is found. They have already enabled container scanning. What is the most efficient way to configure this?
Select an answer first - 24
Which action can a user take directly from a vulnerability finding in GitLab to track remediation work?
Select an answer first - 25
A team has container scanning enabled and it runs on merge requests. They want to block merge requests when a critical vulnerability is found, but they also want to allow the security team to override the block for a specific merge request. What is the best way to achieve this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “GITLAB-CERTIFIED-SECURITY-SPECIALIST” is a trademark of its owner, used for identification only.