CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 57: CAS-004: CompTIA Advanced Security Practitioner (CASP+) CAS-004

A security engineer was auditing an organization's current software development practice and discovered that multiple open-source libraries were Integrated into the organization's software. The organization currently performs SAST and DAST on the software it develops. Which of the following should the organization inc…

Nội dung câu hỏi

A security engineer was auditing an organization's current software development practice and discovered that multiple open-source libraries were Integrated into the organization's software. The organization currently performs SAST and DAST on the software it develops. Which of the following should the organization incorporate into the SDLC to ensure the security of the open-source libraries?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Perform additional SAST/DAST on the open-source libraries.
  2. B. Implement the SDLC security guidelines.
  3. C. Track the library versions and monitor the CVE website for related vulnerabilities. — đáp án hiện tại
  4. D. Perform unit testing of the open-source libraries.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề