Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISTQB logo

Certified Tester Security Test Engineer

Domain 8Objective 1

Security Test Reporting CT-STE Practice Questions (Page 5)

Part of the Reporting Test Results domain, which makes up ~8% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)

25questions here
5free pages
5concepts

Questions 21–25

  1. 21foundation · easy

    Which of the following is a standard component of a security test report?

    Select an answer first
  2. 22application · medium

    A security test report includes a finding of a medium-risk misconfiguration in a firewall rule. The client asks for actionable remediation guidance. What should the report include?

    Select an answer first
  3. 23expert · hard

    A security testing team is preparing a quarterly report for management. The report includes metrics on vulnerabilities found and remediated. Management wants to see the trend over the last four quarters. Which presentation would be most effective?

    Select an answer first
  4. 24application · medium

    A security test report is being prepared for a client. The client expects a standard structure. Which section should be included to provide context about the scope and limitations of the testing?

    Select an answer first
  5. 25application · medium

    A security testing team wants to demonstrate improvement in vulnerability management over time to senior management. Which metric would be most meaningful for this purpose?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CT-STE

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.