
Certified Tester Security Tester
Domain 4Objective 3
Component and Integration Testing CT-SEC Practice Questions (Page 1)
Part of the Security Testing Throughout the Software Lifecycle domain, which makes up ~8% of our current practice bank. ISTQB does not publish an official question count, but from its 120-minute exam (~50–80 total, ~4–6 in this domain), expect 1–2 from this objective — we provide 15 practice questions to prepare you well beyond it. (estimate)
15questions here
3free pages
5concepts
Questions 1–5
- 1
A development team is using test-driven development (TDD) to build a new encryption component. Which security testing activity should be integrated into the TDD process?
Select an answer first - 2
Which of the following is a key focus for security test design at the component integration level?
Select an answer first - 3
Which of the following is a key aspect of security test design at the component level?
Select an answer first - 4
After running component-level security tests on a file upload module, the test results show that the module accepts files with double extensions (e.g., 'malware.php.jpg'). The module is supposed to reject such files. What should the tester do next?
Select an answer first - 5
What does the analysis of component-level security test results help to assess?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-SEC” is a trademark of its owner, used for identification only.