exam questions

Exam 350-701 All Questions

View all questions & answers for the 350-701 exam

Exam 350-701 topic 1 question 163 discussion

Actual exam question from Cisco's 350-701
Question #: 163
Topic #: 1
[All 350-701 Questions]

What is an attribute of the DevSecOps process?

  • A. security scanning and theoretical vulnerabilities
  • B. development security
  • C. isolated security team
  • D. mandated security controls and check lists
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Premium_Pils
8 months, 2 weeks ago
Selected Answer: B
As sis_net_sec an others wrote, it should be B
upvoted 1 times
Premium_Pils
8 months, 2 weeks ago
https://blogs.cisco.com/developer/flavorsofdevops01 https://www.cisco.com/c/en/us/solutions/collateral/executive-perspectives/devsecops-addressing-security-challenges.html
upvoted 1 times
...
...
MPoels
1 year, 1 month ago
Selected Answer: D
Like statikd about the mentioned DevSecOps manifesto wrote: "Enabling businesses to address their most critical security requirements over a checklist or security mandates." Which is an attribute listed in the DevSecOps manifesto. Development security is overall what DevSecOps does, it's a given. https://blogs.cisco.com/security/devsecops-win-win-for-all see also: https://www.base4sec.com/research/en/DevSecOps-Checklist/ and https://www.devsecops.org/blog/tag/DevSecOps+Explained
upvoted 3 times
...
DWizard
1 year, 9 months ago
Selected Answer: B
I'd go for B, even though it's not written in correct English, it should be security development: https://www.cisco.com/c/dam/en_us/about/doing_business/trust-center/docs/devsecops-infographic.pdf "Using clearly defined guiding principles to drive security throughout the development process helps establish mutual trust among the Engineering, Operations and Security teams"
upvoted 1 times
...
sis_net_sec
2 years, 8 months ago
Selected Answer: B
DevSecOps (development, security, and operations) is a concept used in recent years to describe how to move security activities to the start of the development life cycle and have built-in security practices in the continuous integration/continuous deployment (CI/CD) pipeline. Thus minimizing vulnerabilities and bringing security closer to IT and business objectives. Three key things make a real DevSecOps environment: + Security testing is done by the development team. + Issues found during that testing is managed by the development team. + Fixing those issues stays within the development team. https://blogs.cisco.com/security/devsecops-win-win-for-all
upvoted 3 times
...
brownbear505
3 years, 2 months ago
Selected Answer: B
The drive toward shorter and more iterative development cycles, with a focus on delivering mission needs, is leading agencies to adopt DevSecOps (development, security, and operations) methodologies that enable development, security, and IT teams to work more closely and collaboratively. https://www.cisco.com/c/en/us/solutions/collateral/industries/government/cloud-ready-networks.html
upvoted 2 times
...
coentror
3 years, 4 months ago
It is B. D can never be because it goes againts the principles of Agile "mandate"
upvoted 2 times
...
hulisani
3 years, 5 months ago
based on this both B and D are correct answers What is an attribute of the DevSecOps? What is an attribute of the DevSecOps process? security scanning and theoretical vulnerabilities. development security. isolated security team. mandated security controls and check lists
upvoted 1 times
...
kapplejacks
3 years, 7 months ago
Just from a very basic angle, D is correct. "development security" is not proper grammar and broken English or something. Read the question then the answer, does it flow and sound like a Cisco answer? If i get this on the test and it really does say "development security" I am picking D. If it says "security development" I would pick B.
upvoted 1 times
...
itisfakemaillol
3 years, 10 months ago
B. development security
upvoted 2 times
...
dzef13
3 years, 10 months ago
B DevSecOps (development, security, and operations) is a concept used in recent years to describe how to move security activities to the start of the development life cycle and have built-in security practices in the continuous integration/continuous deployment (CI/CD) pipeline. Thus minimizing vulnerabilities and bringing security closer to IT and business objectives. Three key things make a real DevSecOps environment: + Security testing is done by the development team. + Issues found during that testing is managed by the development team. + Fixing those issues stays within the development team.
upvoted 2 times
...
wfexco
3 years, 11 months ago
It is a terrible question. I could see it being either B or D. I would go with D though. DevOps is a deliberate effort to align the application development team with the application operations team, while SecDevOps introduces additional processes within the framework, to mitigate the chances that the Continuous Integration and Continuous Deployment (CI/CD) operational tempo will compromise application security.
upvoted 1 times
...
trickbot
3 years, 11 months ago
If I get this question on the Exam, I will be answering B) Development Security. For reference, search "Cisco's DevSecOps Manifesto, where it explicitly states it's mission is to solve security problems with "Consumable Security Services over Mandated Security Controls" and "Collaboration to Securely enable Business, over Mandates" its a very Agile-ish manifesto. I found it here. https://blogs.cisco.com/security/devsecops-win-win-for-all
upvoted 3 times
statikd
3 years, 10 months ago
But this same blog states: "Enabling businesses to address their most critical security requirements over a checklist or security mandates." Which is an attribute listed in the DevSecOps manifesto. Development security is overall what DevSecOps does, it's a given. I think the answer is D
upvoted 8 times
jaciro11
3 years, 4 months ago
Man exactly that's the best answer they don´t ask about overall work of DevSecops. They ask about attribute.... Answer D
upvoted 10 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago