ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

A company using Agile methods sees recurring vulnerabilities because geographically dispersed Scrum teams lack day-to-day security focus. Leadership wants a lightweight, scalable way to place security knowledge directly inside each team so that secure coding becomes part of daily work and stand-ups. Which measure best achieves this objective?

  • Launch a security champions program that designates trained developers inside each Scrum team to mentor peers and advocate secure practices.

  • Depend on the security team to run penetration tests only before major releases and report findings to developers.

  • Require every developer to complete a single annual online security awareness training module.

  • Hold quarterly centralized secure coding workshops delivered by external consultants for all development staff.

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Lifecycle Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot