
Certified Tester Security Tester
Domain 1Objective 8
People, Process and Technology CT-SEC Practice Questions (Page 3)
Part of the The Basis of Security Testing domain, which makes up ~19% of our current practice bank. ISTQB does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 1–2 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
4concepts
Questions 11–15
- 11
A company's security team is about to conduct a vulnerability scan of its internal network. The team has a limited maintenance window and needs to ensure that the scan does not disrupt business operations. Which process step should be prioritized to meet this requirement?
Select an answer first - 12
A security tester is documenting the results of a vulnerability scan. The tester has identified several vulnerabilities with different severity levels. Which process step is most important to ensure that the most critical vulnerabilities are addressed first?
Select an answer first - 13
A security testing team is facing a high turnover rate. Experienced testers are leaving, and new hires are not yet productive. The team lead wants to maintain the quality of security testing while the team is in transition. Which approach best addresses the situation?
Select an answer first - 14
Which type of tool is specifically designed to automate the process of sending malformed or unexpected input to an application to discover vulnerabilities?
Select an answer first - 15
What is the primary purpose of a web application security scanner?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-SEC” is a trademark of its owner, used for identification only.