CISSP Practice Question (Domain 8: Software Development Security - AI Exam Guidance)
Developers at your company use an LLM-powered coding assistant that auto-generates functions pulled into production via CI/CD. A recent audit reveals several generated functions contain hardcoded credentials and insecure deserialization patterns. What should the security manager prioritize FIRST?
A. Ban the AI coding assistant until the vendor eliminates hallucinated vulnerabilities
B. Require developers to manually review all AI-generated code before committing
C. Integrate automated AI security testing into the CI/CD pipeline to catch flaws pre-production D. Report the insecure patterns to the LLM vendor for model fine-tuning
Come back for the answer tomorrow, or study more now!
0
11 comments
Vincent Primiani
7
CISSP Practice Question (Domain 8: Software Development Security - AI Exam Guidance)
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by