
Certified Tester Security Test Engineer
Domain 1Objective 1
Assets and Their Corresponding Protection Level CT-STE Practice Questions (Page 4)
Part of the Security Paradigms domain, which makes up ~12% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~4–6 in this domain), expect 1–1 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)
25questions here
5free pages
5concepts
Questions 16–20
- 16
A company is valuing two assets: a customer relationship management (CRM) database and a proprietary algorithm. The CRM database is critical for daily sales operations, while the algorithm is a potential future revenue source but not yet monetized. Which valuation approach is most appropriate?
Select an answer first - 17
A company has classified its internal communications as 'medium protection' and its public API documentation as 'low protection'. Which control mapping is most appropriate?
Select an answer first - 18
A security tester is identifying assets for a new project. Which of the following are correctly categorized as assets? (Select all that apply.)
Select an answer first - 19
A security tester is identifying assets for a new cloud-based application. Which item is correctly categorized as a data asset?
Select an answer first - 20
A security team must protect a research database (high value, low exposure) and a customer support portal (medium value, high exposure). The budget is sufficient for only one major security initiative. Which initiative should be prioritized?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.