ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 168 - SY0-701 discussion

Report
Export

Which of the following practices would be best to prevent an insider from introducing malicious code into a company's development process?

A.
Code scanning for vulnerabilities
Answers
A.
Code scanning for vulnerabilities
B.
Open-source component usage
Answers
B.
Open-source component usage
C.
Quality assurance testing
Answers
C.
Quality assurance testing
D.
Peer review and approval
Answers
D.
Peer review and approval
Suggested answer: D

Explanation:

Peer review and approval is a practice that involves having other developers or experts review the code before it is deployed or released. Peer review and approval can help detect and prevent malicious code, errors, bugs, vulnerabilities, and poor quality in the development process. Peer review and approval can also enforce coding standards, best practices, and compliance requirements.Peer review and approval can be done manually or with the help of tools, such as code analysis, code review, and code signing.Reference: CompTIA Security+ Study Guide: Exam SY0-701, 9th Edition, Chapter 11: Secure Application Development, page 5432

asked 02/10/2024
Mark Anthony Acorda
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first