IsacaIsaca
CISA · Question #518
CISA Question #518: Real Exam Question with Answer & Explanation
Sign in or unlock CISA to reveal the answer and full explanation for question #518. The question stem and answer options stay visible for context.
Submitted by satoshi_tk· Apr 18, 2026Information Systems Acquisition, Development, and Implementation
Question
An IS auditor is reviewing an organization's transition to DevSecOps. Which of the following is the BEST indication that security is integrated throughout the software development life cycle?
Options
- AThe frequency of security-related code releases to the production environment aligns with
- BAutomated security testing is incorporated into the continuous integration/continuous deployment
- CThe roles, responsibilities, and accountabilities for secure application development are
- DTools used for security testing and version control in the development process are highly
Unlock CISA to see the answer
You've previewed enough free CISA questions. Unlock CISA for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#DevSecOps#SDLC Security#Automated Security Testing#CI/CD