
Certified Secure Software Lifecycle Professional
Domain 2Objective 3
Outline Strategy and Roadmap CSSLP Practice Questions (Page 4)
Part of the Secure Software Lifecycle Management domain, which accounts for 11% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~8–13 in this domain), expect 1–1 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
9concepts
11%of the exam
Questions 16–20
- 16
After a failed control gate has been remediated, what should happen next?
Select an answer first - 17
A development team is about to start coding a new customer-facing web application. The security team wants to ensure that no code is written until the design has been reviewed and approved. Which control gate should be established at the end of the design phase to enforce this requirement?
Select an answer first - 18
What is the defining characteristic of a control gate in the SDLC?
Select an answer first - 19
A security architect is creating a security roadmap for a new software product. The roadmap must sequence security milestones and checkpoints across the project timeline. Which element is essential to include in the roadmap to ensure it is actionable?
Select an answer first - 20
During a control gate review, a project fails to meet the security criteria for the design phase because the threat model is incomplete. The project manager wants to proceed to development to avoid schedule delays. What is the most appropriate response to this gate failure?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.