
Certified Information Systems Security Professional
Domain 8Objective 1
8.1 - Understand and Integrate Security in the Software Development Life Cycle (SDLC) CISSP Practice Questions (Page 6)
Part of the Software Development Security domain, which accounts for 10% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~7–12 in this domain), expect 1–2 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
5concepts
10%of the exam
Questions 26–28
- 26
An application is in the operation and maintenance phase. The security team is planning to improve its incident response capabilities. Which of the following are effective activities? (Select all that apply.)
Select an answer first - 27
During the operation and maintenance phase, which activity is essential for detecting and responding to security incidents in a timely manner?
Select an answer first - 28
An application is in production and receives regular updates. The security team notices that some patches are not being applied consistently across all servers. What is the MOST effective way to ensure consistent patch management?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CISSP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.