nerdexam
(ISC)2(ISC)2

CSSLP · Question #183

CSSLP Question #183: Real Exam Question with Answer & Explanation

The correct answer is A: Configuration status accounting. A sound Software Configuration Management (SCM) process involves identifying configurations, controlling changes, accounting for their status, and conducting audits to ensure software integrity and traceability.

Secure Software Deployment, Operations, Maintenance

Question

The Software Configuration Management (SCM) process defines the need to trace changes, and the ability to verify that the final delivered software has all of the planned enhancements that are supposed to be included in the release. What are the procedures that must be defined for each software project to ensure that a sound SCM process is implemented? Each correct answer represents a complete solution. Choose all that apply.

Options

  • AConfiguration status accounting
  • BConfiguration change control
  • CConfiguration identification
  • DConfiguration audits
  • EConfiguration implementation
  • FConfiguration deployment

Explanation

A sound Software Configuration Management (SCM) process involves identifying configurations, controlling changes, accounting for their status, and conducting audits to ensure software integrity and traceability.

Common mistakes.

  • E. Configuration implementation is a broader development phase, not a specific, core SCM procedure for defining the process itself.
  • F. Configuration deployment refers to the act of installing software, which is a step following SCM but not one of the core procedures that define the SCM process.

Concept tested. Software Configuration Management (SCM) procedures

Reference. https://www.nist.gov/privacy-framework/software-configuration-management-scm

Topics

#Software Configuration Management (SCM)#SCM processes#Change control#Configuration audits

Community Discussion

No community discussion yet for this question.

Full CSSLP PracticeBrowse All CSSLP Questions