Tag: security

Questions Related to security

What type of testing is done by ASAP team during the testing and rollout phase?

  1. Integration testing

  2. System testing

  3. Penetration testing

  4. Unit testing


Correct Option: C
  1. TCS Security API

  2. TCS Security Library

  3. TCS Application Security API

  4. TCS e-Security Library


Correct Option: A

As per the ASAP Process what all artifacts are provided to help aid in the analysis phase?

  1. Security URS

  2. Security URS and SRS

  3. Security Design Guidelines

  4. All of the above


Correct Option: B

Who does the review of the security elements of the updated project artifacts at the end of each phase of the application development life cycle?

  1. Application development team

  2. Project Manager

  3. ASAP Team

  4. Testing Team


Correct Option: C
  1. Its a TCS proprietary methodology

  2. Its a security framework

  3. Its about security testing

  4. Its a product from TCS


Correct Option: B
  1. Acquiring, Testing, Installing

  2. Testing, Remediation, Peer Review

  3. Determine needs, Acquire resources, Install the patch

  4. Both A & B


Correct Option: A
  1. Set autocomplete to “0”

  2. Set autocomplete to “Off”

  3. Set autocomplete to some other value

  4. Set autocomplete to “no-store”


Correct Option: B
  1. Critical transactions

  2. Account Lockout

  3. Page load times for all application pages

  4. Login/Logout events for users


Correct Option: C

Which of the following is appropriate for customer emails regarding a limited time promotional offer?

  1. Request that the user authenticate him/herself by replying to the email with their account credentials.

  2. Personalized greeting line

  3. Providing easy access to the customer's account via a “Click Here” style link

  4. Sending the email from a domain set up specifically for the special offer


Correct Option: B

AI Explanation

To answer this question, let's go through each option to understand why it is correct or incorrect:

Option A) Request that the user authenticate him/herself by replying to the email with their account credentials - This option is incorrect because it is not appropriate to ask customers to provide their account credentials via email. This can pose a security risk and potentially lead to unauthorized access to their account.

Option B) Personalized greeting line - This option is correct because including a personalized greeting line in the email shows a level of personalization and can help establish a positive connection with the customer. It can make the email feel more friendly and tailored to the individual.

Option C) Providing easy access to the customer's account via a "Click Here" style link - This option is incorrect because it does not specifically relate to the limited time promotional offer mentioned in the question. It is important to provide clear information about the offer and any necessary steps the customer needs to take to avail of the promotion.

Option D) Sending the email from a domain set up specifically for the special offer - This option is incorrect because it does not directly address the content or structure of the customer email. While using a specific domain for special offers might be a good practice for branding purposes, it does not necessarily make the email regarding the limited time promotional offer more appropriate.

The correct answer is B) Personalized greeting line. This option is correct because it helps establish a positive connection with the customer and adds a personal touch to the email.

  1. No. Because leads to insecure storage of private information of the customer

  2. Yes. Because it is a good logging practice to log all relevant information during an exception

  3. Yes. Because it will help in troubleshooting specific customer problems

  4. No. Because its an additional over head


Correct Option: A