Questions

  1. Which of the following are secrets that we don't want to be included in the source code?
    1. API keys
    2. Passwords
    3. Encryption key
    4. All of the above
  1. What can't an API gateway do?
    1. Access the control list
    2. Rate limiting
    3. Antivirus
    4. API key authentication
  2. Which one of the following is related to the security of the session management?
    1. Insufficient session ID length
    2. Cross-Site Request Forgery (CSRF)
    3. Session fixation
    4. All of the above
  3. True or False: For the data validation, does the canonicalization and normalization occur after validation?
  4. What is data anonymization used for?
    1. It's to perform the data masking of sensitive information
    2. It's for data governance
    3. Web privacy assessment
    4. Cookie Consent
  5. What can the AboutCode, FOSSology, ...

Get Hands-On Security in DevOps now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.