Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISTQB logo

Certified Tester Security Test Engineer

Domain 7Objective 2

Input for an Information Security Management System (ISMS) CT-STE Practice Questions (Page 7)

Part of the Security Testing as Part of an Information Security Management System domain, which makes up ~8% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)

33questions here
7free pages
8concepts

Questions 31–33

  1. 31application · medium

    A security test identifies a vulnerability in a legacy system that cannot be patched immediately. The risk owner must decide how to treat this risk. Which input from the security test is most critical for this decision?

    Select an answer first
  2. 32foundation · easy

    Why is it important to communicate security testing results to relevant stakeholders?

    Select an answer first
  3. 33expert · hard

    A security test simulates a data breach and successfully exfiltrates data from a test environment. The test team discovers that the data loss prevention (DLP) system did not alert. The organization has a legal obligation to report data breaches within 72 hours. What is the most appropriate immediate action?

    Select an answer first
Finished these 3 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CT-STE

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.