Question 11

Which secure coding best practice says to ensure that buffers are allocated correctly and at the right size, that input strings are truncated to a reasonable length, and that resources, connections, objects, and file handles are destroyed once the application no longer needs them?
  • Question 12

    What is one of the tour core values of the agile manifesto?
  • Question 13

    Features have been developed and fully tested, the production environment has been created, and leadership has approved the release of the new product. Technicians have scheduled a time and date to make the product available to customers.
    Which phase of the software development lifecycle (SDLC) is being described?
  • Question 14

    What is a countermeasure to the web application security frame (ASF) data validation/parameter validation threat category?
  • Question 15

    The product security incident response team (PSIRT) has decided to make a formal public disclosure, including base and temporal common vulnerability scoring system (CVSS) scores and a common vulnerabilities and exposures (CVE) ID report, of an externally discovered vulnerability.
    What is the most likely reason for making a public disclosure?