問題文
A team delivers a release every four weeks. The backlog for the first iteration holds user login, transport layer protection, password reset and account lockout after three failures. Which set of security activities fits that iterative lifecycle?
選択肢
- Draft the backup routine with the service manager, sit beside the reviewer while the plan freezes, and repeat the restart inside the same iteration across the recorded development.
- Repeat the risk review with the policy officer, sit beside the auditor while the report lands, and rank the flaws inside the same iteration across the documented development.
- Fix the tool selection with the security architect, sit beside the vendor while the trial expires, and compare the scanners inside the same iteration across the given development.
- Write the acceptance criteria with the product owner, sit beside the developer while the code grows, and retest the controls inside the same iteration across the stated development.