
Certified Secure Software Lifecycle Professional
Domain 3Objective 7
Develop Security Requirement Traceability Matrix CSSLP Practice Questions (Page 2)
Part of the Secure Software Requirements domain, which accounts for 13% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 32 practice questions to prepare you well beyond it. (estimate)
32questions here
7free pages
9concepts
13%of the exam
Questions 6–10
- 6
A security tester is verifying that a security requirement is correctly implemented. The tester starts from the test case and traces back to the requirement it verifies. What type of traceability is the tester performing?
Select an answer first - 7
Which set of artifacts is typically linked in a security requirement traceability matrix?
Select an answer first - 8
What is a benefit of automating traceability matrix maintenance?
Select an answer first - 9
Which of the following is a sign of a coverage gap in the traceability matrix?
Select an answer first - 10
What is the primary purpose of a security requirement traceability matrix (RTM) in the software development lifecycle?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.