ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

During a technical review at the end of the coding phase, a security engineer checks each software module against the documented interface definitions, data‐handling rules, and approved secure-coding guidelines to confirm that the implementation satisfies all specified design and security requirements before integration testing begins. Which secure-software activity is the engineer performing?

  • Threat modeling to identify new attack vectors in the architecture

  • Security validation to demonstrate the system meets end-user needs

  • Penetration testing of the integrated application in its target environment

  • Security verification of the implementation against design and coding specifications

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Lifecycle Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot