Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 Exam CSSLP Topic 2 Question 71 Discussion

Actual exam question for ISC2's CSSLP exam
Question #: 71
Topic #: 2
[All CSSLP Questions]

What are the various activities performed in the planning phase of the Software Assurance Acquisition process? Each correct answer represents a complete solution. Choose all that apply.

Show Suggested Answer Hide Answer
Suggested Answer: D

Graybox testing is a combination of whitebox testing and blackbox testing. In graybox testing, the test engineer is equipped with the

knowledge of system and designs test cases or test data based on system knowledge. The security tester typically performs graybox testing

to find vulnerabilities in software and network system.

Answer C is incorrect. Whitebox testing is a testing technique in which an organization provides full knowledge about the infrastructure

to the testing team. The information, provided by the organization, often includes network diagrams, source codes, and IP addressing

information of the infrastructure to be tested.

Answer A is incorrect. Integration testing is a logical extension of unit testing. It is performed to identify the problems that occur when

two or more units are combined into a component. During integration testing, a developer combines two units that have already been tested

into a component, and tests the interface between the two units. Although integration testing can be performed in various ways, the

following three approaches are generally used:

The top-down approach

The bottom-up approach

The umbrella approach

Answer B is incorrect. Regression testing can be performed any time when a program needs to be modified either to add a feature or

to fix an error. It is a process of repeating Unit testing and Integration testing whenever existing tests need to be performed again along with

the new tests. Regression testing is performed to ensure that no existing errors reappear, and no new errors are introduced.


Contribute your Thoughts:

Nan
6 days ago
Okay, let's see here. Developing software requirements, check. Implementing change control, got it. Evaluation criteria and plan, absolutely. And don't forget the acquisition strategy. Nailed it!
upvoted 0 times
...
Julene
10 days ago
I believe implementing change control procedures is also important in the planning phase to ensure smooth execution of the software acquisition process.
upvoted 0 times
...
Serita
13 days ago
I agree with Verda. Developing software requirements, evaluation criteria, and acquisition strategy are crucial in the planning phase.
upvoted 0 times
...
Erick
15 days ago
Ah, the planning phase! That's where the real magic happens. Let's see, we've got software requirements, change control, evaluation criteria, and acquisition strategy. Sounds like a party waiting to happen!
upvoted 0 times
...
Verda
17 days ago
I think A, C, and D are performed in the planning phase.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77