ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

Your development group is replacing its ad-hoc email approach with an issue tracker dedicated to security defects. To align with formal bug-tracking best practices and support future audits, which tracker configuration is most critical for maintaining end-to-end accountability for every vulnerability from discovery through release?

  • Assign an immutable, unique defect identifier that must be referenced in all related commits, tests, and release documents.

  • Make the severity field optional so teams can decide when it is relevant to classify an issue.

  • Configure the system to automatically close any security issue that has no updates after 30 days.

  • Permit reporters to edit original descriptions so details stay current as understanding evolves.

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Testing
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot