The correct answer is to detect and block attacks in real-time during application execution. RASP is a security technology that integrates with an application to monitor its behavior and the context of that behavior. When it detects attacks or abnormal behavior, it can take protective actions, such as terminating a user session, alerting administrators, or blocking specific transactions, all at runtime.
Scanning source code for vulnerabilities during development is the purpose of Static Application Security Testing (SAST) tools, not RASP.
Facilitating secure communication between application components would typically be handled by encryption, API gateways, or service meshes rather than RASP technology.
Ensuring compliance with security policies during deployment would be handled by security policy enforcement tools, compliance verification tools, or secure deployment pipelines rather than RASP, which operates during runtime after deployment.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What types of attacks can RASP detect during application execution?
Open an interactive chat with Bash
How does RASP integrate with an application?
Open an interactive chat with Bash
What is the difference between RASP and traditional application security measures?
Open an interactive chat with Bash
ISC2 CISSP
Software Development Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access