QuestionQ22

Security Engineering

As part of a software development life cycle security audit, a product manager must demonstrate and supply evidence of a complete representation of the code and modules used in the production-deployed application before the build. Which option best provides the required evidence?

Explanation

Software composition analysis inventories the components and dependencies used to build an application and can generate a source-level software bill of materials before a build occurs. This provides evidence of the code modules and third-party components included in the production application.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!