Appendix A Answers to Practice Questions

Chapter 1—Secure Software Concepts Questions

  1. The primary reason for incorporating security into the software development life cycle is to protect

    A. The unauthorized disclosure of information

    B. The corporate brand and reputation

    C. Against hackers who intend to misuse the software

    D. The developers from releasing software with security defects

    Answer is B

    Rationale/Answer Explanation:

    When security is incorporated into the software development life cycle, confidentiality, integrity, and availability can be assured and external hacker and insider threat attempts thwarted. Developers will generate more hack-resilient software with fewer vulnerabilities, but protection of the organization’s reputation and ...

Get Official (ISC)2 Guide to the CSSLP now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.