
Certified Secure Software Lifecycle Professional
Domain 3Objective 2
Identify Compliance Requirements CSSLP Practice Questions (Page 5)
Part of the Secure Software Requirements domain, which accounts for 13% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
4concepts
13%of the exam
Questions 21–24
- 21
A software product will collect and store personal data of users in California. Which legal requirement must the software comply with regarding user privacy?
Select an answer first - 22
A financial services company is developing a new trading platform that will handle customer investment accounts. Which compliance standard must the software requirements address?
Select an answer first - 23
A software firm is building a SaaS platform for a global customer base. The platform will collect personal data from users in multiple countries, including the EU, Brazil, and Japan. The security team is drafting the requirements for data protection. What is the most appropriate approach to ensure legal compliance?
Select an answer first - 24
A software company is developing a new application that will process personal data of EU citizens. The company's internal policy requires all data to be encrypted at rest. Which of the following is a legal requirement that must be considered in addition to the company policy?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CSSLP
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.