
Certified Tester Security Test Engineer
Domain 2Objective 3
Addressing Security Risks in Test Design CT-STE Practice Questions (Page 3)
Part of the Security Test Techniques domain, which makes up ~15% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~5–8 in this domain), expect 1–1 from this objective — we provide 34 practice questions to prepare you well beyond it. (estimate)
34questions here
7free pages
10concepts
Questions 11–15
- 11
Which of the following is an example of a security test coverage criterion?
Select an answer first - 12
What is the purpose of defining security test coverage criteria?
Select an answer first - 13
A security test engineer is creating test data for a login form that is vulnerable to brute force attacks. The threat model indicates that the application has an account lockout policy after five failed attempts. The engineer wants to test the effectiveness of this policy. Which test data set is most appropriate?
Select an answer first - 14
How should security considerations be integrated into test design documents?
Select an answer first - 15
A security test engineer is managing a large test suite for a financial application. The risk analysis identified several high-risk areas, and the engineer has created test cases for each. However, during a review, it is discovered that some test cases are not linked to any risk. What should the engineer do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.