
Certified Secure Software Lifecycle Professional
Domain 2Objective 2
Identify and Adopt Security Standards (e.g., Implementing Security Frameworks, Promoting Security Awareness) CSSLP Practice Questions (Page 1)
Part of the Secure Software Lifecycle Management domain, which accounts for 11% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~8–13 in this domain), expect 1–1 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
5concepts
11%of the exam
Questions 1–5
- 1
A company is choosing a security framework for its software development. They have a mature security team and want to measure their security practices against industry best practices. Which framework is most appropriate?
Select an answer first - 2
A company that processes credit card payments wants to adopt a security standard that specifically addresses payment card data protection. Which standard should they implement?
Select an answer first - 3
A security team is designing a security awareness program for a global company with employees in different time zones and cultures. They have limited budget. Which approach is most effective?
Select an answer first - 4
Which organization publishes the 'Top 10' list of the most critical web application security risks, commonly used as a baseline for secure coding practices?
Select an answer first - 5
Which of the following is a widely recognized international standard that specifies requirements for establishing, implementing, maintaining, and continually improving an information security management system (ISMS)?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.