ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
A development sprint introduced an account-lockout mechanism that should disable a user account after exactly five consecutive failed logon attempts and allow reactivation only through an administrator reset. Before handing the build to quality assurance, the team needs to confirm the mechanism behaves exactly as specified. Which category of security testing should be performed to provide this confirmation?
Functional security testing of the authentication and authorization logic
Nonfunctional stress testing to determine system behavior under sustained invalid login attacks
Performance benchmarking to measure login throughput during peak usage
Usability testing to evaluate how users perceive the lockout notification
Verifying whether a specific security control (the lockout logic) enforces its intended rules is functional security testing, because the test exercises the control's business logic to see if it operates according to requirements. Stress, performance, and usability tests assess nonfunctional attributes such as capacity, speed, or user experience; they do not directly confirm whether the lockout rule itself is enforced correctly.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is functional security testing?
Open an interactive chat with Bash
How does functional security testing differ from nonfunctional testing?
Open an interactive chat with Bash
Why is functional security testing important in the software development lifecycle?
Open an interactive chat with Bash
What is functional security testing?
Open an interactive chat with Bash
How is functional security testing different from nonfunctional testing?
Open an interactive chat with Bash
Why would usability testing not confirm security control enforcement?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Testing
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .