
Certified Tester Security Test Engineer
Domain 2Objective 6
Encryption CT-STE Practice Questions (Page 1)
Part of the Security Test Techniques domain, which makes up ~15% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~5–8 in this domain), expect 1–1 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)
33questions here
7free pages
10concepts
Questions 1–5
- 1
Which statement best describes a key characteristic of symmetric encryption?
Select an answer first - 2
A security tester is reviewing a system that uses Blowfish for encrypting sensitive data. The tester is concerned about the algorithm's strength. What is the most appropriate recommendation?
Select an answer first - 3
A security tester needs to protect sensitive data so that it cannot be read by unauthorized parties. Which term best describes the process of transforming plaintext into ciphertext using a key?
Select an answer first - 4
Which of the following is a common encryption vulnerability related to improper padding?
Select an answer first - 5
A security tester is assessing a mobile application that communicates with a backend server. The tester finds that the application uses TLS, but it does not validate the server's certificate properly. What is the most likely impact of this vulnerability?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.