ECCouncil 312-97 - Certified DevSecOps Engineer (ECDE) Exam

Question #11 (Topic: Exam A)
Sandra Oliver joined SinClare Soft Pvt. Ltd. as a DevSecOps engineer in January of 2010. Her organization develops software and web applications related to the healthcare industry. Using IAST runtime security testing technology, she is detecting and diagnosing security issues in applications and APIs. The IAST solution used by Sandra encompasses a web scanner with an agent that works inside the server that hosts the application to provide additional analysis details such as the location of the vulnerability in the application code. Based on the given information, which of the following IAST solutions is Sandra using?
A. Active IAST B. Semi-active IAST C. Semi-passive IAST D. Passive IAST
Answer: A
Question #12 (Topic: Exam A)
Katie Holmes is working as a DevSecOps engineer at SeCSafe Anti-virus. The DevOps team of her organization has developed a distributed application with multiple microservices. Katie deployed all the microservices to the Kubernetes nodes successfully. The DevOps team approached Katie and informed her that the application is not working. Katie wants to check whether the Kubernetes cluster is working or not. Which of the following commands should Katie run step by step to verify that the Kubernetes is working?
A. kube-etcd version kube-etcd cluster-info B. kube version kube cluster-info C. kubectl version kubectl cluster-info D. kubernetes version kubernetes cluster-info
Answer: C
Question #13 (Topic: Exam A)
Brady Coleman is a senior DevSecOps engineer at CloudVac Security Private Ltd. He has created a new container named “eccbrad” from the centos:7 image using the command docker run -i -t --name geeklab centos:7 /bin/bash. Now, Brady wants to install the httpd package inside the eccbrad container. Which of the following commands should Brady use to install the httpd package inside the container?
A. yum install httpd B. sudo install-httpd C. sudo install httpd D. yum install-httpd
Answer: A
Question #14 (Topic: Exam A)
Peter Dinklage has been working as a senior DevSecOps engineer at SacramentSoft Solution Pvt. Ltd. He has deployed applications in docker containers. His team leader asked him to check the exposure of unnecessary ports. Which of the following commands should Peter use to check all the containers and the exposed ports?
A. docker ps --quiet | xargs docker inspect --format : Ports B. docker ps --quiet | xargs docker inspect --all --format ‘:Ports=’ C. docker ps --quiet | xargs docker inspect --all --format : Ports= D. docker ps --quiet | xargs docker inspect --format ‘: Ports=’
Answer: D
Question #15 (Topic: Exam A)
Thomas Gibson has been working as a DevSecOps engineer in an IT company that develops software products and web applications related to law enforcement. To automatically execute a scan against the web apps, he would like to integrate InsightAppSec plugin with Jenkins. Therefore, Thomas generated a new API Key in the Insight platform. Now, he wants to install the plugin manually. How can Thomas install the InsightAppSec plugin manually in Jenkins?
A. By creating a .hpi file and uploading to his Jenkins installation B. By creating a .conf file and uploading to his Jenkins installation C. By creating a .war file and uploading to his Jenkins installation D. By creating a .zip file and uploading to his Jenkins installation
Answer: A
Download Exam
Page: 3 / 20
Total 100 questions