Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Secure Software Lifecycle Professional

Domain 5Objective 3

Implement Security Controls (e.g., Watchdogs, File Integrity Monitoring, Anti-Malware) CSSLP Practice Questions (Page 4)

Part of the Secure Software Implementation domain, which accounts for 14% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 2–3 from this objective — we provide 20 practice questions to prepare you well beyond it. (estimate)

20questions here
4free pages
4concepts
14%of the exam

Questions 16–20

  1. 16application · medium

    A software development team is building a new application that will be deployed to a Windows environment. The team is concerned about the risk of malware being introduced through a compromised development tool. The team wants to implement a control that can detect and remove malware from the development environment. What should the team implement?

    Select an answer first
  2. 17application · medium

    A medical device manufacturer is developing an insulin pump that runs a real-time control loop. The pump's firmware occasionally enters a state where the main control thread stops responding but the processor continues executing lower-priority tasks. The team needs a mechanism to detect this condition and automatically reset the device to a safe state. What should the development team implement?

    Select an answer first
  3. 18foundation · easy

    In a software implementation, which action would a watchdog timer typically perform after it expires?

    Select an answer first
  4. 19foundation · easy

    How does a file integrity monitoring (FIM) tool detect unauthorized changes to critical files?

    Select an answer first
  5. 20application · medium

    A software company is developing a mobile banking application. The development team uses a shared build server that is also used by other teams. The security team is concerned that malicious code could be introduced into the build process through a compromised tool or dependency. The team wants to implement a control that can detect and block malicious code during the build process. What should the team implement?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CSSLP

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.