ISC Certified Information Systems Security Professional (CISSP) CISSP Question # 37 Topic 4 Discussion

ISC Certified Information Systems Security Professional (CISSP) CISSP Question # 37 Topic 4 Discussion

CISSP Exam Topic 4 Question 37 Discussion:
Question #: 37
Topic #: 4

What is one way to mitigate the risk of security flaws in custom software?


A.

Include security language in the Earned Value Management (EVM) contract


B.

Include security assurance clauses in the Service Level Agreement (SLA)


C.

Purchase only Commercial Off-The-Shelf (COTS) products


D.

Purchase only software with no open source Application Programming Interfaces (APIs)


Get Premium CISSP Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.