ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

During sprint planning for a two-week Agile iteration, the Scrum team wants to ensure that security objectives are treated on par with functional features. Which approach most effectively weaves security work into the standard sprint workflow?

  • Insert a security hardening sprint after every release to remediate all identified vulnerabilities at once.

  • Perform an organization-wide penetration test at the end of the project and log findings as defects.

  • Instruct developers to review secure coding guidelines during onboarding and rely on ad-hoc checks during coding.

  • Write dedicated security user stories with clear acceptance criteria and prioritize them in the product backlog alongside functional stories.

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Lifecycle Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot