During the management cycle, which activity MUST be integrated with other activities because it is a continuous activity?
After establishing the team for conducting security baseline, the first step should be to:
If there is a 50% probability of a risk occurring and the impact of the occurrence is $40,000 lost of revenue, then what is the expected value of the risk?
The primary responsibility of a quality program, from a consumer's standpoint, is that the product should be:
When dealing with a complaint, to get on the same physical wavelength with a client you should:
The following types of controls, which are designed to alert individuals to a process problem such as control totals assuring data transmissions are complete, are called:
Your IT director has asked you to write a policy on security for the organization. What type of control is that security policy?
Defect data has been collected for two software projects. When analyzed quantitatively, one project seems to be under statistical control with all defect rates within the calculated control limits, while the other project shows several data points outside the calculated control limits. Explain how each team should approach improving their processes given this data analysis.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Which of the following management philosophies would be associated with a quality management philosophy as opposed to the traditional management philosophy?
Many managers use a metrics dashboard to present measurement data to the user of that data. Another name for a dashboard is:
Which of the following Quality Management principle(s) are incorporated into the ISO 9001 standard?
If your customer complains that you made an error, you need to do the following:
Quality factors, or quality attributes, are attributes of a software system that primarily describe the structural nature of the software. Four of these quality attributes are reliability, maintainability, reusability, and efficiency. Define each of these four attributes. Then, rank the four attributes in importance for a web based e-commerce application and explain why you chose these rankings.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Before defining a new process, the scope of the process should be identified. Element(s) for process scope is(are):
If your IT organization adopted function points as the means to measure program size, this would enable you to estimate programming staff because you would know a program of 200 function points is twice as large as a program of 100 function points. This type of data is called:
Which of the following is the correct definition of the quality attribute reliability?
Which ISO model covers the software life cycle from concept through retirement?
Out of the three critical aspects of Toyota's JIT concept, which one is the most important?
Processes add value to both management and the workers. Give three reasons why processes are needed from a management perspective, and three reasons why processes are needed from a worker's perspective.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Constructive criticism should incorporate all of the following tactics, EXCEPT:
Measurement has a high cost; too much investment is required and the return is too low.
Determining that the COTS software selected is compatible with the acquiring organization's computer environment addresses:
This approach sends the message that quality management is something for the employees, but not necessarily for management.
Branch testing technique is included in which of the following test data categories?
The core activity of Process Definition is not only defining the process but also:
Which of the following processes is / are within the Defect Management level for maturing the Quality Control Processes?
Critical success factors for purchased software should be defined from the perspective of :
Explain how a Force Field Analysis is performed and used.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The Quality Management Infrastructure is made up of three levels: the Quality Council, Management Committees, and Teams/Work Groups. Describe who typically makes up each of these three levels in the QM Infrastructure (e.g., top executives) and describe the purpose of each level.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Auditors state that without strong environmental controls, the controls over processing business transactions probably will not be effective. Define the term “environmental controls”, give three examples of environmental controls, and then explain why weak environmental controls may cause the control over processing business transactions to be ineffective.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
One of the objectives of Quality Assurance is to reduce the variability in process execution. There are two causes of variation in a process, common cause and special cause. First, define those two terms, special cause and common cause of process variation, and second, for a software acceptance test process, give examples of two common causes of variation and two special causes of variation that might occur in a software acceptance testing project.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
COTS software is normally developed prior to an organization selecting that software for its use.
There are many benefits associated with maturing work processes. As work processes mature, which of the following would be expected to decrease:
Which of the following is not a major component for quality management for the workgroup?
Which of the following quality control processes is used by an organization at a high quality control maturity level?
Outsourced software can be developed by an organization within the country of use or developed in another country. Which of the following is a difference associated with software developed by an organization in another country?
What is the primary responsibility of an internal auditor in maintaining the security system?
It is generally recognized that software testing should begin at which software development phase?
Which of the following Dynamic Testing techniques produces the highest defect yield?
Quality Control practices should be performed during which of the following product phases?
If you use the PDCA cycle for managing processes, which activity is associated with the CHECK component?
How are the parameters of risk, probability, and impact determined?
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Explain the difference between verification and validation. List two verification techniques and two validation techniques.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The contributors to poor quality can be categorized as either lack of involvement by management or lack of knowledge about quality. Describe five specific areas where there can be lack of information or knowledge about quality.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Process ___________ allows priorities to be set for defining or improving processes.
A "master list" of processes that support an organization in accomplishing its goals is known as a:
A contract that will assure the contracting organization of effective ongoing operation maintenance of the contracted software should include which of the following contractual provisions?
Which of the following in the COSO enterprise risk management model is the component that requires "management to select an approach or set of actions to align assessed risks with the organization's risk appetite, in the context of the strategy and object
Continuing process improvement techniques should be applied to which of the following IT work processes?
What technique can be used to provide structure to the ideas from a brainstorming session?
In the context of the PDCA cycle, Work Processes represent the _____ component and the Check Processes represent the ___________component.
If you had seven programs and the size in 'function points' were 5, 10, 15, 20, 30, 40, and 90. What is the mean size of those seven programs in function points?
Briefly explain what is the difference between environmental controls and transaction processing controls.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Two terms that are associated with quality management are mission and vision. Describe these two terms. Then, as a means of differentiating the two, briefly describe a mission for the quality assurance function and a vision for the quality assurance function.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The first question of the six basic quality planning questions is, "Where are we?". Describe what should be addressed in:
1. Business or Activity Planning
2. Environment Planning
3. Capabilities and Opportunities Planning
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Describe the process for process management based on the PDCA cycle. List and explain the processes within each of the PDCA steps.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The stakeholders of security system should be trained on security data collection methods and:
Which of the following models uses this four part cyclE. (part one - plan and organize; part two - acquire and implement; part three - deliver and support; part four - monitor)?
You have performed an analysis of production level defects and concluded that many of these defects were introduced inadvertently when changes to other parts of the software were being made. What type of validation technique is used to identify defects caused by modifications to other parts of the code and when is this type of testing appropriate?
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Describe various ways of measuring a process, with examples.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The person who accepts personal responsibility for the success of quality management without being assigned the responsibility is called____________ .
Which of the following planning activities is associated with the quality planning question "where do we want to go"?
Software Certification | CSQA Questions Answers | CSQA Test Prep | CSQA Certified Software Quality Analyst Questions PDF | CSQA Online Exam | CSQA Practice Test | CSQA PDF | CSQA Test Questions | CSQA Study Material | CSQA Exam Preparation | CSQA Valid Dumps | CSQA Real Questions | Software Certification CSQA Exam Questions