ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
During requirements definition for a customer-facing API, you are asked to record a non-functional, operational security requirement that supports monitoring and incident response. Which requirement best satisfies this need?
The API must resume normal service within two hours after a regional datacenter outage.
The API must stream all authentication and authorization events to the corporate SIEM within 60 seconds of occurrence.
The API must reject any request that is not protected with TLS 1.3 encryption.
The API must disable a user account after five consecutive failed login attempts.
Streaming authentication and authorization events to a centralized SIEM is a non-functional security requirement concerned with how the system operates in its environment. It supports continuous monitoring and enables the incident-response team to detect and react to attacks. Requiring TLS 1.3 is a non-functional security requirement, not specifically operational. Locking an account after failed logins is a functional control that changes system behavior for the user. Meeting a two-hour recovery target addresses continuity rather than day-to-day operational monitoring.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a SIEM, and why is it important in monitoring and incident response?
Open an interactive chat with Bash
What constitutes a non-functional security requirement versus a functional one?
Open an interactive chat with Bash
Why is TLS 1.3 encryption not the best answer in this scenario?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Requirements
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .