ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
A company using Agile methods sees recurring vulnerabilities because geographically dispersed Scrum teams lack day-to-day security focus. Leadership wants a lightweight, scalable way to place security knowledge directly inside each team so that secure coding becomes part of daily work and stand-ups. Which measure best achieves this objective?
Launch a security champions program that designates trained developers inside each Scrum team to mentor peers and advocate secure practices.
Depend on the security team to run penetration tests only before major releases and report findings to developers.
Require every developer to complete a single annual online security awareness training module.
Hold quarterly centralized secure coding workshops delivered by external consultants for all development staff.
Creating a security champions program assigns one or more motivated team members within every Scrum team to receive deeper security training, act as a local point of contact, and reinforce secure coding practices during planning, development, and reviews. This embeds security knowledge into routine activities and cultivates a sustained security-first mindset across the organization. The other options are helpful but do not provide the continuous, embedded influence needed: an annual web course is infrequent and easily forgotten; occasional external workshops lack ongoing presence; relying on final penetration tests addresses issues late in the lifecycle rather than fostering a proactive culture.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a Security Champions Program?
Open an interactive chat with Bash
How does a Security Champions Program differ from annual training modules?
Open an interactive chat with Bash
Why is embedding security in Agile Scrum teams important?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Lifecycle Management
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .