100% found this document useful (1 vote)
6K views

SAST Checkmarx

Checkmarx is a software composition analysis tool that supports static application security testing, open source analysis, and interactive application security testing. It can analyze code uploaded in ZIP format and supports standards like OWASP, FISMA, and HIPPA. Project comparison and graphical reports in PDF and Excel formats are available.

Uploaded by

Solution Guru
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
100% found this document useful (1 vote)
6K views

SAST Checkmarx

Checkmarx is a software composition analysis tool that supports static application security testing, open source analysis, and interactive application security testing. It can analyze code uploaded in ZIP format and supports standards like OWASP, FISMA, and HIPPA. Project comparison and graphical reports in PDF and Excel formats are available.

Uploaded by

Solution Guru
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 6

Data Analysis supports pivot formate to generate the

report.
False

True

SAST is the standard support for Checkmarx .


False

True

You can upload any formats other than ZIP.


False

True

Checkmarx standards include ____________.


Metasploit

None of the options

Burp

OWASP - Correct

You can test DAST Testing using Checkmarx.


True

False - Correct

Checkmarx supports only SAST.

This study source was downloaded by 100000842093668 from CourseHero.com on 09-26-2022 01:52:42 GMT -05:00

https://www.coursehero.com/file/76673211/SAST-Checkmarxrtf/
True

False - Correct

Checkmarx supports the compare feature.


True - Correct

False

Checkmarx supports Eclipse IDE.


False

True - Correct

The Graphical Reports can be download in _________


formats.
HTML

PDF

Both PDF and Excel - Correct

All the options

Excel

Code compare can be done via _______.


Dashboard - Incorrect

Project - Correct

Failed Project - Incorrect

This study source was downloaded by 100000842093668 from CourseHero.com on 09-26-2022 01:52:42 GMT -05:00

https://www.coursehero.com/file/76673211/SAST-Checkmarxrtf/
Data Analysis - Incorrect

Graphical Reports can be created with the help of


___________.
All of the options - Incorrect

Data Analysis - Correct

Dashboard - Incorrect

None of the options

The flow of issues can be viewed in Open Viewer.


False

True - correct

Checkmarx supports SANS 25.


True - Correct

False

———————————————
The failed scan shows the reason for the failure.

True - Correct
False

Checkmarx helps to perform the auto fix for


issues.
False - Correct

True

Checkmarx supports DevSecOps.

This study source was downloaded by 100000842093668 from CourseHero.com on 09-26-2022 01:52:42 GMT -05:00

https://www.coursehero.com/file/76673211/SAST-Checkmarxrtf/
False

True - correct

Checkmarx performs fix in SDLC.


True - Correct

False

Checkmarx supports _____________.


All the options - Correct

Static Application Security Testing

Open Source Analysis

Interactive Application Security Testing

None of the options

Checkmarx supports mailing for pre/post scan activities.


False

True - Correct

The queued scan can be changed as the


priority.
True - Correct

False

Which testing method does Checkmarx support?


All of the options

DAST

This study source was downloaded by 100000842093668 from CourseHero.com on 09-26-2022 01:52:42 GMT -05:00

https://www.coursehero.com/file/76673211/SAST-Checkmarxrtf/
None of the options

SAST - Correct

BSIMM is one of the standard support for Checkmarx.


False

True - Correct

Does Checkmarx help to push the source code in the


following options?
CLI

Web Portal

None of the options

All of the options - Correct

Jenkins

LOC represents ______________.


None of the options

Lines of code - Correct

Issue counts

Risk level of the code

All of the options

Locker action helps to ____________.


Delete the code - Incorrect

This study source was downloaded by 100000842093668 from CourseHero.com on 09-26-2022 01:52:42 GMT -05:00

https://www.coursehero.com/file/76673211/SAST-Checkmarxrtf/
View the Code - Incorrect

None of the options - Correct

Analyze the code - Incorrect

Checkmarx supports HIPPA standards.


False

True - Correct

Open Viewer helps to show ____________.


All of the options - correct

Priority of the issue

Best fix location

Source code

None of the options

Checkmarx supports _________ standards.


OWASP

FISMA

Both FISMA and OWASP

MISRA

All of the options - Correct

This study source was downloaded by 100000842093668 from CourseHero.com on 09-26-2022 01:52:42 GMT -05:00

https://www.coursehero.com/file/76673211/SAST-Checkmarxrtf/
Powered by TCPDF (www.tcpdf.org)

You might also like