APICS CPIM-8.0 Exam - Topic 4 Question 25 Discussion
The development team wants new commercial software to integrate into the current system. What steps can the security office take to ensure the software has no vulnerabilities?
B) Request a copy of the most recent System and Organization Controls (SOC) report and/or most recent security audit reports and any vulnerability scans of the software code from the vendor.
A) Ask the development team to reevaluate the current program and have a toolset developed securely within the organization.
C) Purchase the software, deploy it in a test environment, and perform Dynamic Application Security Testing (DAST) on the software.
D) Request a software demo with permission to have a third-party penetration test completed on it.
Haley
Rochell
5 days agoKasandra
10 days agoValene
15 days ago