Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Secure Software Lifecycle Professional

Domain 7Objective 4

Store and Manage Security Data CSSLP Practice Questions (Page 5)

Part of the Secure Software Deployment, Operations, Maintenance domain, which accounts for 11% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~8–13 in this domain), expect 1–1 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)

26questions here
6free pages
4concepts
11%of the exam

Questions 21–25

  1. 21expert · medium

    A large organization has multiple development teams that need to access secrets in a central vault. The security team wants to ensure that each team can only access the secrets they need, and that all access is logged. What is the best way to configure the vault?

    Select an answer first
  2. 22expert · medium

    A company uses a hardware security module (HSM) to store cryptographic keys. They need to allow multiple applications to use the keys without exposing the keys themselves. They also need to ensure that key usage is audited. What should they implement?

    Select an answer first
  3. 23foundation · easy

    What is a key benefit of using a dedicated secrets management vault over storing secrets in configuration files?

    Select an answer first
  4. 24foundation · easy

    Which principle is central to secrets management when granting access to a vault?

    Select an answer first
  5. 25foundation · easy

    Which of the following is a primary characteristic of a credential type commonly used for non-interactive service-to-service authentication?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.