
Certified Tester Security Test Engineer
Domain 2Objective 6
Encryption CT-STE Practice Questions (Page 5)
Part of the Security Test Techniques domain, which makes up ~15% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~5–8 in this domain), expect 1–1 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)
33questions here
7free pages
10concepts
Questions 21–25
- 21
What is the primary factor that determines the strength of an encryption algorithm against brute-force attacks?
Select an answer first - 22
A security tester is reviewing a system that uses digital signatures to ensure the integrity of software updates. The tester discovers that the system uses the same RSA key pair for both signing and encryption. What is the most significant risk?
Select an answer first - 23
What is the purpose of key revocation in key management?
Select an answer first - 24
A security tester is testing a web server's TLS configuration. The tester wants to verify that the server is not vulnerable to the Heartbleed bug. What is the most effective way to test for this?
Select an answer first - 25
During a security review, a tester finds that a password is stored as a fixed-length string that cannot be reversed to obtain the original password. Which cryptographic concept is being used?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.