exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 319 discussion

Actual exam question from CompTIA's SY0-601
Question #: 319
Topic #: 1
[All SY0-601 Questions]

Which of the following would be the BEST resource for a software developer who is looking to improve secure coding practices for web applications?

  • A. OWASP
  • B. Vulnerability scan results
  • C. NIST CSF
  • D. Third-party libraries
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
opesy
Highly Voted 2 years, 2 months ago
Selected Answer: A
Owasp should be correct
upvoted 8 times
...
ApplebeesWaiter1122
Highly Voted 1 year, 11 months ago
Selected Answer: A
OWASP is a widely recognized and respected organization that focuses on web application security. They provide a wealth of information, tools, and resources for developers to enhance the security of their web applications. NIST CSF stands for the National Institute of Standards and Technology (NIST) Cybersecurity Framework, which is a framework for managing and reducing cybersecurity risks. While it provides valuable guidelines for overall cybersecurity, it may not specifically address secure coding practices for web applications.
upvoted 7 times
...
spencer0328
Most Recent 10 months, 2 weeks ago
Why not B?
upvoted 1 times
...
andresalcedo
1 year, 9 months ago
Selected Answer: A
Web = Owasp
upvoted 2 times
...
LeonardSnart
1 year, 10 months ago
Selected Answer: A
Open Web Application Security Project Thankfully, application developers now have invaluable resources such as the Open Web Application Security Project (OWASP) to help them improve their application development techniques. OWASP describes itself as “a nonprofit foundation that works to improve the security of software. Through community-led open source software projects, hundreds of local chapters worldwide, tens of thousands of members, and leading educational and training conferences, the OWASP Foundation is the source for developers and technologists to secure the web.” One of the best resources that OWASP offers the new (and experienced) developer is the “Top 10 Web Application Security Risks” list, which not only lists the most common vulnerabilities but also provides detailed explanations of how they are exploited and how to prevent them through secure coding techniques." -Mike Meyers' Security+ Certification Passport SY0-601 by Dawn Dunkerley
upvoted 2 times
...
Yawannawanka
2 years ago
Selected Answer: A
The correct answer is A. OWASP. The Open Web Application Security Project (OWASP) is a community-driven organization that provides resources and guidance on web application security, including best practices for secure coding. OWASP offers a variety of resources for developers, including the OWASP Top Ten, a list of the most critical web application security risks, and the OWASP Secure Coding Practices - Quick Reference Guide. Option B, vulnerability scan results, can be a useful resource for identifying vulnerabilities in web applications, but it does not necessarily provide guidance on how to improve secure coding practices. Option C, NIST CSF, is a framework for improving cybersecurity risk management, but it is not specifically focused on secure coding practices for web applications. Option D, third-party libraries, are pre-existing code modules that can be integrated into a software application, but they do not necessarily provide guidance on secure coding practices.
upvoted 4 times
...
SophyQueenCR82
2 years, 1 month ago
A. OWASP (Open Web Application Security Project) is the BEST resource for a software developer who is looking to improve secure coding practices for web applications. OWASP is a non-profit organization that provides free and open resources for improving software security, including a comprehensive list of web application security risks, secure coding guidelines, and testing tools.
upvoted 2 times
...
Jibz18
2 years, 2 months ago
Selected Answer: A
Agree on A
upvoted 2 times
...
[Removed]
2 years, 2 months ago
Selected Answer: A
Owasp, easy ok
upvoted 4 times
...
[Removed]
2 years, 2 months ago
Easy, OWASP.
upvoted 3 times
...
sdc939
2 years, 2 months ago
OWASP I agree
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago