Which of the following would be a logical starting point for an auditor who has been engaged to assess the security of an organization’s DevOps pipeline?

Which of the following would be a logical starting point for an auditor who has been engaged to assess the security of an organization’s DevOps pipeline?
A . Verify the inclusion of security gates in the pipeline.
B . Conduct an architectural assessment.
C . Review the CI/CD pipeline audit logs.
D . Verify separation of development and production pipelines.

Answer: C

Explanation:

Reference: https://cntemngwa.medium.com/how-to-assess-and-audit-devops-security-to-improve-business-value-10e81a2a6fd5

Latest CCAK Practice Questions with 76 Q&As

Updated Study Material | Instant Download | Detailed Answers and Explanations

Subscribe
Notify of
guest
0 Comments