IBM C2150-810 試験概要:
| 認定ベンダー: | IBM |
| 試験名: | IBM Security AppScan Source Edition Implementation |
| 試験番号: | C2150-810 |
| 関連資格: | IBM Certified Deployment Professional – 関連する IBM デプロイメント試験 |
| 試験形式: | 選択式問題 (MCQ) |
| 出題数: | 50 |
| 対応言語: | 英語 |
| サンプル問題: | IBM C2150-810 サンプル問題 |
| 受験方法: | 認定テストセンターまたはオンライン監視プロクタリング(対応している場合は IBM VUE/Prometric)経由で実施 |
| 前提条件: | アプリケーションセキュリティテストおよび静的分析ツールに関する一般的な知識があることが推奨されます |
IBM C2150-810 試験シラバストピック:
| セクション | 目標 |
|---|---|
| トピック 1: 構成とスキャンのセットアップ | - プロジェクトとスキャンの構成 - ルールとトレースの構成 |
| トピック 2: トラブルシューティングと結果の解釈 | - 検出事項の特定と解釈 - 誤検出とフィルターの処理 |
| トピック 3: AppScan Source Edition の機能の理解 | - レポートおよび分析コンポーネント - 静的ソースコード分析とセキュリティテスト |
IBM Security AppScan Source Edition Implementation 認定 C2150-810 試験問題:
1. Which features are provided by the AppScan Source for Analysis?
A) It is used to run scans, triage findings and generate filters and reports.
B) It is used by security teams to run scans and build integration.
C) It is used for report generation and unattended scans.
D) It is used to run scans and upload them to QRadar.
2. You are reviewing an on-line shopping application and find a lost sink method called generateltemNotFoundMessage() provided by a third-party shopping framework. This method returns a search string that was passed in. prepended with an "item not found" message in English, French or Spanish (depending on user's selection).
Which type of custom rule do you need to create for this method?
A) Sink
B) Source
C) Not Susceptible to Taint
D) Tainted Callback
E) Taint Propagator
3. Which two methods can be used to resolve Unresolved Include Expressions?
A) Adding additional directories that contain PHP include files to the include path
B) Adding additional search and replace rules
C) Adding additional PHP Document Roots to the project
D) Adding additional source files in the project properties menu
E) Adding additional Scan Rules
4. Which feature is available in the AppScan Source IDE Plugin?
A) View Trace Information for a given finding
B) Create Custom Rules
C) Generate PDF reports
D) Create scan configurations
5. What is the function of the Correlated Security Issues report in AppScan Enterprise?
A) It displays the correlated issues between static analysis and dynamic analysis.
B) It is used by a security expert to investigate complex findings.
C) It tracks progress of an application during a specified period of time.
D) It displays the correlated issues between glass box analysis and dynamic analysis.
質問と回答:
| 質問 # 1 正解: A | 質問 # 2 正解: B | 質問 # 3 正解: A、C | 質問 # 4 正解: B | 質問 # 5 正解: A |














1110 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
