
Certified Tester Acceptance Testing
Domain 4Objective 4
Objective: Security CT-ACT Practice Questions (Page 5)
Part of the Domain 4: Acceptance Testing for Non-Functional Requirements domain, which makes up ~28% of our current practice bank. ISTQB does not publish an official question count, but from its 60-minute exam (~25–40 total, ~7–11 in this domain), expect 2–3 from this objective — we provide 23 practice questions to prepare you well beyond it. (estimate)
23questions here
5free pages
5concepts
Questions 21–23
- 21
What is the primary purpose of executing security acceptance tests?
Select an answer first - 22
A financial services company is preparing for the release of a new trading platform. Security acceptance testing has revealed two issues: a medium-severity vulnerability that could allow a user to view another user's transaction history (requires a valid account and specific conditions), and a low-severity issue where session tokens are not invalidated after logout. The release deadline is in two days, and the team has time to fix only one issue. The product owner wants to release on time. What should the acceptance test team recommend?
Select an answer first - 23
What is the purpose of evaluating security test results?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CT-ACT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-ACT” is a trademark of its owner, used for identification only.