ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question

Your organization is integrating its customer identity platform with an external cloud-based analytics service. Management wants a formal document that spells out each party's responsibilities for data protection, incident reporting time frames, encryption standards, and audit rights throughout the life of the connection. From a secure systems-of-systems integration perspective, which artifact most directly addresses these requirements?

  • Set up a source-code escrow agreement with the analytics service provider.

  • Publish an interface control document describing API endpoints and message schemas.

  • Establish a bilateral trust contract that enumerates security obligations for both systems.

  • Create an internal runbook for incident response and routine maintenance tasks.

ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Implementation
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot