ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
During a security review of a payment gateway server, you are asked to add a runtime safeguard that will immediately detect and alert operations if any executable or configuration file in the application directory is modified without authorization. Which control should you implement?
Configure a process watchdog to restart the service if it becomes unresponsive
Deploy file integrity monitoring that compares cryptographic hashes of critical files to a trusted baseline
Rebuild the application with stack-canary and data-execution-prevention compiler flags
Enable continuous anti-malware scanning of running processes
File integrity monitoring (FIM) creates cryptographic baselines of approved executables and configuration files, then continuously compares the live files to those baselines. Any unexpected change triggers an alert, allowing rapid investigation. A watchdog only detects hangs or crashes, not file tampering. Anti-malware focuses on identifying malicious code, not every unauthorized change to trusted files. Compiler hardening flags improve resilience at build time but provide no run-time monitoring capability.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is File Integrity Monitoring (FIM)?
Open an interactive chat with Bash
How does cryptographic hashing support FIM?
Open an interactive chat with Bash
Why are compiler hardening flags like stack canaries not sufficient for runtime monitoring?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Implementation
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .