Your DevSecOps team has developed a new API gateway module that enforces mutual TLS and stricter rate-limiting. The team wants to validate the control with real production traffic while ensuring that any unexpected failures affect the smallest possible user group and can be reversed immediately. Which release strategy BEST meets this security objective?
Keep the code in a dedicated branch until the next quarterly maintenance window, then deploy to all users at once.
Enable the module with a feature flag targeting an initial 5 % of users and expand coverage as monitoring remains healthy.
Perform a blue-green deployment and shift 100 % of traffic to the new environment once synthetic tests pass.
Wrap the module in a circuit breaker that shuts down the entire gateway service if error thresholds are exceeded.
Releasing the module behind a feature flag and gradually increasing the percentage of users who receive it achieves controlled, real-world testing with minimal blast radius. Feature flags decouple deployment from release, support canary or percentage-based rollouts, and allow the team to disable the control instantly if metrics show regressions. Blue-green or scheduled batch deployments expose all users at once, and a circuit breaker only reacts after failure rather than enabling incremental exposure.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are feature toggles (feature flags) in software development?
Open an interactive chat with Bash
How do feature toggles reduce security risks during deployment?
Open an interactive chat with Bash
What is the difference between feature toggles and traditional deployment strategies?
Open an interactive chat with Bash
ISC2 CISSP
Software Development Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .