nerdexam
CompTIA

CAS-005 · Question #486

A security architect must implement security controls in a software development life cycle for an internally developed application. The architect must identify the components that were used to…

The correct answer is D. SBoM. A Software Bill of Materials (SBoM) provides a detailed inventory of all components, libraries, and dependencies used in an application. This allows the security architect to track and manage risks associated with the software supply chain throughout the development life cycle.

Submitted by saadiq_pk· Mar 6, 2026Security Engineering

Question

A security architect must implement security controls in a software development life cycle for an internally developed application. The architect must identify the components that were used to create the application. Which of the following should the security architect use to meet this requirement?

Options

  • AA/B test
  • BSAST
  • CIAST
  • DSBoM

How the community answered

(33 responses)
  • A
    3% (1)
  • C
    3% (1)
  • D
    94% (31)

Explanation

A Software Bill of Materials (SBoM) provides a detailed inventory of all components, libraries, and dependencies used in an application. This allows the security architect to track and manage risks associated with the software supply chain throughout the development life cycle.

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice