212-82 · Question #153
TechTYendz. a leading tech company, is moving towards the final stages of developing a new cloud- based web application aimed at real-time data processing for financial transactions. Given the critica
Sign in or unlock 212-82 to reveal the answer and full explanation for question #153. The question stem and answer options stay visible for context.
Question
TechTYendz. a leading tech company, is moving towards the final stages of developing a new cloud- based web application aimed at real-time data processing for financial transactions. Given the criticality of data and the high user volume expected. TechTYendz's security team is keen on employing rigorous application security testing techniques. The team decides to carry out a series of tests using tools that can best mimic potential real-world attacks on the application. The team's main concern Is to detect vulnerabilities In the system, including those stemming from configuration errors, software bugs, and faulty APIs. The security experts have shortlisted four testing tools and techniques. Which of the following would be the MOST comprehensive method to ensure a thorough assessment of the application's security?
Options
- AEmploying dynamic application security testing (DAST) tools that analyze running applications in
- BUtilizing static application security testing (SAST) tools to scan the source code for vulnerabilities.
- CImplementing a tool that combines both SAST and DAST features for a more holistic security
- DConducting a manual penetration test focusing only on the user interface and transaction modules.
Unlock 212-82 to see the answer
You've previewed enough free 212-82 questions. Unlock 212-82 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.