ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
During vendor due diligence for incorporating open-source libraries, you must reference an internationally recognized standard that defines requirements for an open-source license compliance program within the software supply chain. Which ISO/IEC standard should you cite?
ISO/IEC 5230, also known as the OpenChain Specification, is the only ISO/IEC standard that sets out the processes an organization should follow to establish and maintain an open-source license compliance program. ISO/IEC 27034 focuses on secure application development practices, ISO/IEC 12207 covers general software life-cycle processes, and ISO/IEC 27036-4 addresses broader ICT supply-chain security, none of which prescribe detailed OSS license compliance measures. Therefore, referring to ISO/IEC 5230 is the correct choice when assessing open-source license compliance within the software supply chain.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is ISO/IEC 5230 OpenChain Specification?
Open an interactive chat with Bash
Why is open-source license compliance important in the software supply chain?
Open an interactive chat with Bash
How does ISO/IEC 5230 compare to other ISO/IEC standards in software security?
Open an interactive chat with Bash
What is ISO/IEC 5230 and why is it important?
Open an interactive chat with Bash
How is ISO/IEC 5230 different from ISO/IEC 27034?
Open an interactive chat with Bash
Why are ISO/IEC 12207 and ISO/IEC 27036-4 not suitable for open-source license compliance?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Supply Chain
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .