
Certified Tester Security Tester
Domain 8Objective 4
Evaluating a Tool Vendor's Capabilities CT-SEC Practice Questions (Page 2)
Part of the Security Testing Tools domain, which makes up ~10% of our current practice bank. ISTQB does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 1–2 from this objective — we provide 32 practice questions to prepare you well beyond it. (estimate)
32questions here
7free pages
10concepts
Questions 6–10
- 6
When evaluating a security testing tool's integration capabilities, what is the primary concern?
Select an answer first - 7
A security team is selecting a new penetration testing tool. Vendor A has a strong reputation and a large customer base, but its product roadmap has not been updated in two years. Vendor B is smaller but has released regular updates and has a clear roadmap for the next year. The team plans to use the tool for at least five years. Which vendor should the team select?
Select an answer first - 8
Which of the following is a common licensing model for security testing tools?
Select an answer first - 9
When comparing cost and licensing models of different security testing tool vendors, what should be considered to determine total cost of ownership?
Select an answer first - 10
A company is considering a new vulnerability scanner. The vendor claims the scanner can detect a specific type of vulnerability in their custom web application. The security team wants to validate this claim before purchasing. What is the most effective way to validate the claim?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-SEC” is a trademark of its owner, used for identification only.