
Certified Secure Software Lifecycle Professional
Domain 1Objective 2
Understand Security Design Principles CSSLP Practice Questions (Page 1)
Part of the Secure Software Concepts domain, which accounts for 12% of the CSSLP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~8–14 in this domain), expect 4–7 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
10concepts
12%of the exam
Questions 1–5
- 1
Which security concept involves reusing existing, well-tested components to avoid introducing new vulnerabilities?
Select an answer first - 2
Which security strategy uses multiple layers of controls so that if one control fails, another is still in place?
Select an answer first - 3
Which aspect of defense in depth involves using different types of controls rather than more of the same?
Select an answer first - 4
Which resiliency mechanism automatically switches operations to a redundant system when the primary system fails?
Select an answer first - 5
A small business wants to reduce the number of passwords employees must remember. They are considering implementing a single sign-on (SSO) solution that integrates with their existing identity provider. The security team is concerned about the impact on user experience and support costs. Which principle does SSO primarily support, and what is a key security consideration?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CSSLP” is a trademark of its owner, used for identification only.