
Certified Secure Software Lifecycle Professional
Domain 7Objective 13
Integrate Service Level Objectives and Service-Level Agreements (SLA) (e.g., Maintenance, Performance, Availability, Qualified Personnel) CSSLP Practice Questions (Page 2)
Part of the Secure Software Deployment, Operations, Maintenance domain, which accounts for 11% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~8–13 in this domain), expect 1–1 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
8concepts
11%of the exam
Questions 6–10
- 6
Which item is typically included in an SLA to define when planned maintenance can occur?
Select an answer first - 7
A managed security service provider (MSSP) has an SLA with a client that includes a 15-minute response time for security incidents and a monthly report on compliance. The MSSP wants to demonstrate compliance with the SLA. What should the MSSP implement to monitor and report on SLA compliance?
Select an answer first - 8
How does specifying patching activities in an SLA contribute to security?
Select an answer first - 9
A large enterprise has an SLA with a cloud provider that includes a monthly maintenance window of 4 hours. The enterprise's security team wants to apply critical security patches within 24 hours of release. The provider has refused to extend the maintenance window, citing the impact on availability. What is the best approach to meet both the patching requirement and the availability target?
Select an answer first - 10
Why is it important for an SLA to specify a maintenance window for applying security patches?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.