
Certified Secure Software Lifecycle Professional
Domain 4Objective 1
Define the Security Architecture CSSLP Practice Questions (Page 1)
Part of the Secure Software Architecture and Design domain, which accounts for 15% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–18 in this domain), expect 2–3 from this objective — we provide 117 practice questions to prepare you well beyond it. (estimate)
117questions here
24free pages
43concepts
15%of the exam
Questions 1–5
- 1
Which security control is the customer expected to implement when using an IaaS cloud service?
Select an answer first - 2
Why is firmware security considered a critical component of the overall security architecture of a device?
Select an answer first - 3
When designing an augmented reality application, which of the following is a primary reason to protect the camera feed and sensor data used for environment tracking?
Select an answer first - 4
A company's web application has a file upload feature that allows users to upload images. The application stores the files in a directory on the web server and serves them directly. An attacker discovers that they can upload a file with a .php extension, and the web server executes it as PHP code, leading to remote code execution (RCE). Which of the following is the most effective mitigation?
Select an answer first - 5
What is a common security pattern used in microservices architecture to manage external access?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.