
Certified Secure Software Lifecycle Professional
Domain 2Objective 6
Decommission Applications CSSLP Practice Questions (Page 7)
Part of the Secure Software Lifecycle Management domain, which accounts for 11% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~8–13 in this domain), expect 1–1 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)
33questions here
7free pages
10concepts
11%of the exam
Questions 31–33
- 31
A defense contractor is decommissioning a secure messaging application that stored classified messages on a server with magnetic hard drives. The retention period has expired, and the drives must be disposed of. Which method is MOST appropriate for ensuring the data is irrecoverable?
Select an answer first - 32
A healthcare organization is retiring a legacy patient-portal application that still receives data feeds from the lab results system. The compliance team requires that the portal's data be preserved for 7 years, but the lab system must continue operating without disruption. What is the FIRST action the decommissioning team should take?
Select an answer first - 33
A hospital is decommissioning a patient-scheduling application. The application integrates with the billing system via an API, and the billing system stores patient financial data that must be retained for 7 years. The scheduling application's own data has no retention requirement. The team must archive the scheduling data for potential audits while ensuring the billing system is not disrupted. What is the BEST approach?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CSSLP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.