Independence Day Deal! Unlock 25% OFF Today – Limited-Time Offer - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft Exam SC-100 Topic 4 Question 49 Discussion

Actual exam question for Microsoft's SC-100 exam
Question #: 49
Topic #: 4
[All SC-100 Questions]

You are creating an application lifecycle management process based on the Microsoft Security Development Lifecycle (SDL).

You need to recommend a security standard for onboarding applications to Azure. The standard will include recommendations for application design, development, and deployment

What should you include during the application design phase?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Sage
1 months ago
Threat modeling? More like 'threat modeling, my friend!' *laughs and high-fives the room*
upvoted 0 times
Gerry
18 days ago
C) threat modeling by using the Microsoft Threat Modeling Tool
upvoted 0 times
...
Dorthy
20 days ago
B) dynamic application security testing (DAST) by using Veracode
upvoted 0 times
...
Ahmed
23 days ago
A) static application security testing (SAST) by using SonarQube
upvoted 0 times
...
...
Johnna
2 months ago
Hold up, software decomposition in Visual Studio Enterprise? That's more for architecture, not security. Threat modeling is the way to go here, my dudes.
upvoted 0 times
Loren
14 days ago
C) threat modeling by using the Microsoft Threat Modeling Tool
upvoted 0 times
...
German
17 days ago
B) dynamic application security testing (DAST) by using Veracode
upvoted 0 times
...
Queenie
24 days ago
A) static application security testing (SAST) by using SonarQube
upvoted 0 times
...
...
Aretha
2 months ago
SonarQube for SAST? Nah, that's for the coding phase. Threat modeling is where it's at for the design phase. *winks*
upvoted 0 times
Altha
11 days ago
C) threat modeling by using the Microsoft Threat Modeling Tool
upvoted 0 times
...
German
24 days ago
SonarQube is great for code analysis, but threat modeling is crucial for designing secure applications.
upvoted 0 times
...
Nelida
28 days ago
C) threat modeling by using the Microsoft Threat Modeling Tool
upvoted 0 times
...
Edna
1 months ago
A) static application security testing (SAST) by using SonarQube
upvoted 0 times
...
...
Detra
2 months ago
I agree, threat modeling is crucial for secure application design. It's a comprehensive way to assess potential threats and mitigate them proactively.
upvoted 0 times
...
Rory
2 months ago
I think software decomposition with Microsoft Visual Studio Enterprise should also be included for a comprehensive security standard.
upvoted 0 times
...
Flo
3 months ago
Threat modeling using the Microsoft Threat Modeling Tool seems like the right choice here. It helps identify potential security vulnerabilities early in the design phase.
upvoted 0 times
Desiree
26 days ago
User 4: I think threat modeling is more comprehensive in identifying security risks.
upvoted 0 times
...
Felice
1 months ago
User 3: What about static application security testing (SAST) by using SonarQube?
upvoted 0 times
...
Leonora
1 months ago
User 2: I agree, it helps identify potential security vulnerabilities early on.
upvoted 0 times
...
Herschel
2 months ago
User 1: I think we should include threat modeling using the Microsoft Threat Modeling Tool during the application design phase.
upvoted 0 times
...
...
Erick
3 months ago
I agree with Samira, threat modeling with the Microsoft Threat Modeling Tool is crucial for security.
upvoted 0 times
...
Samira
3 months ago
I think we should include threat modeling during the application design phase.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77