Question 11

The scrum team decided that before any change can be merged and tested, it must be looked at by the learns lead developer, who will ensure accepted coding patterns are being followed and that the code meets the team's quality standards.
Which category of secure software best practices is the team performing?
  • Question 12

    Which secure coding best practice says to assume all incoming data should be considered untrusted and should be validated to ensure the system only accepts valid data?
  • Question 13

    Senior IT staff has determined that a new product will be hosted in the cloud and will support web and mobile users. Developers will need to deliver secure REST services. Android and IOS mobile apps. and a web application. Developers are currently determining how to deliver each part of the overall product.
    Which phase of the software development lifecycle (SDLC) is being described?
  • Question 14

    Which privacy impact statement requirement type defines how personal information will be protected when authorized or independent external entities are involved?
  • Question 15

    Which type of security analysis is limited by the fact that a significant time investment of a highly skilled team member is required?