DevOps Screening TestBy mfh.officials@gmail.com / January 9, 2025 Devops and Devsecops 1 / 20 Which tool can be used for dynamic application security testing (DAST)? Ansible ZAP (Zed Attack Proxy) Teeraform Prometheus 2 / 20 Which of the following tools is commonly used for Continuous Integration (CI)? Docker Terraform Jenkins Kubernetes 3 / 20 Which of the following is a key component of a secure CI/CD pipeline? Manual configuration management Automated vulnerability scanning Separate deployment environments Delayed integration testing 4 / 20 What is the purpose of Continuous Deployment (CD)? Writing code in an agile manner Manually releasing builds Testing code Automatically deploying code to production after testing 5 / 20 What is the shift-left principle in DevSecOps? Moving security checks to the earlier stages of development Prioritizing security testing at the end of the development cycle Deploying security patches post-deployment Focusing only on runtime security 6 / 20 What does Infrastructure as Code (IaC) enable in DevOps? Container orchestration Database optimization Manual server provisioning Automated infrastructure management using code 7 / 20 What does DevSecOps emphasize? Adding a separate team for security testing Integrating security into the DevOps process Separating security from the DevOps lifecycle Postponing security checks until production 8 / 20 What is the primary objective of vulnerability scanning? Identifying security weaknesses in systems or code Managing source code repositories Automating infrastructure setup Optimizing application performance 9 / 20 What is the role of monitoring in DevOps? Writing Infrastructure as Code Automating deployments Designing user interfaces Identifying and resolving issues in real-time 10 / 20 Which tool is used for container security? Nagios Aqua Security Jenkins Terraform 11 / 20 What is Blue-Green Deployment? A database optimization method A way to containerize applications A version control strategy A release management approach to reduce downtime 12 / 20 What is the primary goal of DevOps? Separate development and operations Focus solely on testing automation Achieve faster delivery of high-quality software Reduce collaboration between teams 13 / 20 Which tool is commonly used for static application security testing (SAST)? SonarQube Grafana Docker Ansible 14 / 20 What is the main goal of DevOps? Faster software development and delivery Cost reduction only Use of only open-source tools Isolated workflows 15 / 20 What is a common DevOps practice to ensure code quality? Isolation of development teams Automated testing Waterfall methodology Manual debugging 16 / 20 What is a "canary deployment"? Deploying to all users simultaneously Testing code in isolated environments Releasing software to a small subset of users before full rollout Using AI to automate deployments 17 / 20 Which tool is widely used for infrastructure automation in DevOps? jenkins Ansible Jira GitLab 18 / 20 In DevSecOps, what is a key metric for ensuring security compliance? Mean Time to Remediate (MTTR) vulnerabilities Application uptime Deployment frequency Number of commits per day 19 / 20 Which of the following best defines a "security as code" approach? Automating security configuration and policies through code Testing security only during the QA phase Deploying security tools without integration Manually auditing security vulnerabilities 20 / 20 What is OWASP? An infrastructure provisioning tool A DevOps monitoring tool A set of guidelines for web application security A version control system Your score isThe average score is 54% 0% Restart quiz