
GitLabCertified Security Associate
Domain 2Objective 3
Remediate Detected Findings GITLAB-CERTIFIED-SECURITY-SPECIALIST Practice Questions (Page 4)
Part of the Secret and Dependency Scanning domain, which makes up ~21% of our current practice bank.
27questions here
6free pages
7concepts
Questions 16–20
- 16
In GitLab, which of the following best describes the typical remediation workflow for a dependency scanning finding?
Select an answer first - 17
A developer wants to see the status of all vulnerabilities in a single project, including which are resolved and which are still open. Where should they look?
Select an answer first - 18
A secret detection scan finds a valid Slack API token in a commit from three weeks ago. The token has been rotated since then, and the file has been removed from the current branch. What is the most appropriate remediation action?
Select an answer first - 19
A developer discovers a valid AWS access key committed to a public repository. What is the FIRST remediation action they should take?
Select an answer first - 20
When a vulnerable dependency has no patched version available, what is an appropriate remediation action?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “GITLAB-CERTIFIED-SECURITY-SPECIALIST” is a trademark of its owner, used for identification only.