
GitLabCertified Security Associate
Domain 5Objective 1
Manage Vulnerabilities Across the DevSecOps Lifecycle GITLAB-CERTIFIED-SECURITY-SPECIALIST Practice Questions (Page 1)
Part of the Vulnerability Management domain, which makes up ~16% of our current practice bank.
24questions here
5free pages
6concepts
Questions 1–5
- 1
A GitLab project includes a Dockerfile that builds a container image. Which GitLab security scanning tool is specifically designed to identify vulnerabilities in the container image's base operating system and installed packages?
Select an answer first - 2
A vulnerability has been assigned to a developer for remediation. The developer has updated the library to a patched version. What is the next step in the remediation workflow?
Select an answer first - 3
Which GitLab feature provides a visual summary of vulnerabilities across a project, including counts by severity, and is useful for communicating risk to stakeholders?
Select an answer first - 4
A critical vulnerability is found in a production application. The fix requires a library upgrade that may cause a breaking change. The security team wants to remediate quickly, but the development team is concerned about stability. What is the best approach?
Select an answer first - 5
A security analyst is triaging a list of vulnerabilities. Which factor is most directly used to prioritize a vulnerability based on the potential damage if it were exploited?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “GITLAB-CERTIFIED-SECURITY-SPECIALIST” is a trademark of its owner, used for identification only.