
Certified Information Systems Security Professional
Domain 8Objective 1
8.1 - Understand and Integrate Security in the Software Development Life Cycle (SDLC) CISSP Practice Questions (Page 4)
Part of the Software Development Security domain, which accounts for 10% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~7–12 in this domain), expect 1–2 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
5concepts
10%of the exam
Questions 16–20
- 16
How does an Integrated Product Team (IPT) facilitate the incorporation of security throughout the SDLC?
Select an answer first - 17
Which development approach integrates security practices directly into the DevOps pipeline, automating security checks and fostering shared responsibility for security among development, operations, and security teams?
Select an answer first - 18
During the operation and maintenance phase, a security incident occurs. The incident response team has contained the threat and eradicated the cause. What is the NEXT step in the incident response process?
Select an answer first - 19
A company is adopting DevSecOps to accelerate software delivery. The security team wants to ensure that vulnerabilities are identified as early as possible without slowing down the pipeline. Which action BEST supports this goal?
Select an answer first - 20
A company is using the Scaled Agile Framework (SAFe) to coordinate multiple Agile teams. The security team wants to ensure that security is integrated across all teams. What is the BEST approach?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.