3 Months Free Update
3 Months Free Update
3 Months Free Update
For contracted software, detailing the obligations of both contractual parties within the contract addresses:
Which of the following Dynamic Testing techniques produces the highest defect yield?
If you were to read in a publication that an IT organization could build software at a rate of 4 lines of code per programmer hour, but in your organization you can only write 2 lines of code per programmer hour, what conclusion could you draw?
The development of the approach for process deployment is much harder than the actual deployment of the process.
Your CIO was very upset when she heard that the latest release of program X had 20% more defects found in production than was expected. She has ask you to identify what you believe caused this higher than expected level of defects. List the items you would include on a cause-and-effect diagram to help visualize, clarify, link, identify and classify possible causes of the high defect rate. Then, explain how you would use the diagram to get at root causes. (NOTE: You do NOT need to draw the diagram.)
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Describe the process for process management based on the PDCA cycle. List and explain the processes within each of the PDCA steps.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Prior to TQM, the distinction between “little-Q” and “big-Q” was given by:
Auditors state that without strong environmental controls, the controls over processing business transactions probably will not be effective. Define the term “environmental controls”, give three examples of environmental controls, and then explain why weak environmental controls may cause the control over processing business transactions to be ineffective.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
If you were to download a software package, which had been developed and placed on the internet for general usage, the one thing you could not control is:
Which of the following planning activities is associated with the quality planning question "where do we want to go"?
How can quality be quantified? Provide an explanation and illustrate with an example.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Getting the right change installed at the right time is a responsibility of what type of software management?
Which of the following quality control activities is most effective in uncovering defects?
What type of testing evaluates the completeness of the documentation associated with a software application?
Special concerns during acceptance testing of software developed by a vendor are:
Continuing process improvement techniques should be applied to which of the following IT work processes?
Which of the following is the primary objective of a quality improvement program?
The primary responsibility of a quality program, from a consumer's standpoint, is that the product should be:
The first question of the six basic quality planning questions is, "Where are we?". Describe what should be addressed in:
1. Business or Activity Planning
2. Environment Planning
3. Capabilities and Opportunities Planning
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Which of the following tools category has a mathematical focus and is related to data collection or interpretation?
_________ includes periodically assessing project status, reassessing the documented risks, examining executed strategies that succeeded or failed, and considering new risks.
Explain why risk prioritization is important and give two methods used to prioritize risk.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Describe the phases of Quality Function Maturation and the typical time period for each phase.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
There are many benefits associated with maturing work processes. As work processes mature, which of the following would be expected to decrease:
Deming's quality principles include the elimination of fear. Explain three specific ways that the software quality assurance function might help to eliminate fear.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The objective of estimation sampling is to select a sample, which represents the universe as closely as possible and is a snapshot of the universe. Estimation will permit the Quality Assurance Analyst to inform management of the size or severity of a problem without examining the entire universe. The data gathered in the sample is extrapolated to the entire universe.
When should the Test Manager or Test Team Lead join the Software Project Team?
A measure can be reliable, but invalid. An unreliable measure cannot be valid.
The primary responsibility of a quality program, from a producer's standpoint, is that the product produced:
As the management philosophy matures from 'authoritarian' to 'empowered teams', the role of a QA Analyst moves from 'quality control' to that of:
Desires and intents concerning intended objectives or products, should be set by:
Severity levels for defects should be defined at the start of the project:
For maturing the management process at Level 3, which of the following should be in focus?
A process that is effected by an organization's board of directors, management, and other personnel, designed to provide reasonable assurance regarding the achievement of operations, reliability and financial reporting and compliance with applicable law and regulations is called:
Which of the following factors should NOT be considered when defining a Control Method?
A "leader" and a "manager" are two terms that basically mean the same thing.
When there is modification to the structure of a system, which testing type should be used?
Determining that the COTS software selected is compatible with the acquiring organization's computer environment addresses:
Your company has been considering sending some of its IT development offshore. Upper management has heard that as much as 50% of software developed by offshore organizations fails to meet the expectations of the contracting organization. Upper management has asked you to list several potential problems/issues associated with offshore development projects and to suggest a strategy to prevent or mitigate the problems.
Describe the potential problems/issues and your strategy to prevent or mitigate the problems.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Though priority assigned to a defect is usually subjective, but are dependent on user input(s) or factor(s) such as:
Before defining a new process, the scope of the process should be identified. Element(s) for process scope is(are):
Boundary analysis techniques are used to create test cases that divide equivalence partitioned groups.
Which of the following is NOT a component of a workbench? (A workbench is a graphic representation of a process.)
The objective for having a common body of knowledge for quality assurance is:
Within COTS software, attributes designed to "get you out of trouble" when you get into trouble is which aspect of a COTS software?
Process mapping identifies or maps relationships with all the below mentioned activities except?
The user of the software product is not the only customer of a software project. List three other customer categories or groups, and explain how their perspectives should be represented in the various phases of the project life cycle process.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
There are two definitions of quality. Define and describe those two definitions of quality. Then list four approaches that you believe, if implemented, would help reconcile those two definitions so that they, in fact, became the same definition of quality.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Listed below are the five levels of maturing quality control processes. Describe each level and give an example of a specific process that occurs at that level.
Level 1 - Validation
Level 2 - Verification
Level 3 - Defect Management
Level 4 - Statistical Process Control
Level 5 - Preventive Management
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Briefly describe the three categories of Quality Tools and give two examples of tools in each of these categories.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The objective of integrating business and quality planning in a single planning cycle is to ensure that:
Which level(s) of the organization should be involved in both establishing and using processes in their daily work?
The following types of controls, which are designed to alert individuals to a process problem such as control totals assuring data transmissions are complete, are called:
Which is the best positioning of a quality manager within the IT organization?
Which layer of management is the weakest link in a successful quality management program?
When building a quality environment, one of top management's major responsibilities must be:
Which of the following is / are level(s) for maturing the Deliverables Processes?
Process ___________ allows priorities to be set for defining or improving processes.
The theory of levels of maturity is that organizations can skip a level if business needs require them to be at a higher maturity level.
In which company was the concept known as "Just in Time" first implemented?
Which of the following is not a process within Level 4 for maturing Quality Assurance Processes?
A questionnaire has a question that rates "satisfaction" on a scale of 1 to 5 where 1 is poor satisfaction and 5 is high satisfaction. The data type for the variable "satisfaction" is:
Which party(s) is responsible to ensure protection of intellectual property rights included within a contract for software development?
The purpose of a security awareness program is to achieve all of the following objectives, EXCEPT:
It is very easy to distinguish between accidental loss and intentional loss, with respect to security activities.
In transaction processing, the accuracy and completeness of database storage, data security and privacy, error handling, backup, recovery, and retention is governed by:
Laws and regulations affecting the products produced and operated are generally addressed in which planning activity:
As the continuum of work processes move or evolve towards creative processes, the mix of written procedures and people skills change.
Which is generally considered the most important step in the process of contracting for software development?
__________ are used to determine whether the standards have been adhered to or not.
Quality Control practices should be performed during which of the following product phases?
Which of the following is one of the two major objectives for establishing a security baseline?
The level of quality can vary significantly from project to project. These levels of quality, which can be quantified and measured, are called:
A test case tested data values at 0, 9, 10, 11, 49, 50, 51, 100. Which black-box technique was most likely used to generate these data points.
Which of the following would be considered an important prerequisite to quality planning?
Which of the following is a level for maturing the Quality Assurance Processes?
Which of the following activities should occur before processes are defined to ensure that the most critical processes are defined first.
If a programmer follows a series of steps to write a computer program, the programmer is following:
When making a judgment while compliance monitoring, experience plays a larger role when:
While unit testing should be done, it is not necessary to spend the time and effort to develop and document the unit test plan and cases because it is conducted by the developers themselves.
Which category of control methods is the most acceptable to the individual?
Testing to determine whether current changes have adversely affected previous functionality is called:
Tracking the status of each requirement throughout the development and test phases is called:
Conducting software inspections would be considered which of the following cost-of-quality categories?
Which of the following statements completely interprets the 'Act' phase of PDCA cycle?
The core activity of Process Definition is not only defining the process but also:
When listening to a speaker, the speaker's verbal, vocal, and body channels always convey the same message.
The quality control function in an organization is responsible for identifying, documenting, and reporting defects to the appropriate individual/organization to act on those identified defects. To properly describe a defect you need to identify the attributes of the defect.
List below what you consider to be the five most important attributes/components of a defect, and explain why you believe that attribute/component is important.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
An inspection is a very detailed quality control practice that compares the work actually done against the specifications and standards. In performing an inspection, there are at least three different roles to be performed. List each of these roles below, and explain the purpose for each of the three roles you have identified.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
There are four main "testing stages" in a structured software development process. Name the four testing stages and describe what the primary purpose of that test stage is.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
A well-known benefit of process maturity is reduction in cycle time. Explain two ways by which cycle time reduces as process maturity increases.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Quality factors, or quality attributes, are attributes of a software system that primarily describe the structural nature of the software. Four of these quality attributes are reliability, maintainability, reusability, and efficiency. Define each of these four attributes. Then, rank the four attributes in importance for a web based e-commerce application and explain why you chose these rankings.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The “cost of quality” (COQ) is not the price of creating a quality product or service. It is the cost of NOT creating a quality product or service. Name and describe the three COQ categories. Provide one example of a cost associated with each COQ category.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The project team in the XYZ Company's IT Department has been provided with a system development methodology. The methodology details the standards and procedures that are to be followed in building an application system. A project team assigned to build an application system followed those procedures exactly and met the standards. However, when the project was completed it was late, over-budget, and the users of that application were dissatisfied.
Provide four reasons that could have caused this project to fail.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
What is difference between structural and functional testing? State two advantages of both.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The Quality Management Infrastructure is made up of three levels: the Quality Council, Management Committees, and Teams/Work Groups. Describe who typically makes up each of these three levels in the QM Infrastructure (e.g., top executives) and describe the purpose of each level.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Good quality management principles state that any organization committed to quality should define its vision, values, and goals. For each of these: a) define the term; b) list who establishes the item (use job title); and c) give a brief example of the item.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
CobiT enables an enterprise to implement effective governance over IT. Briefly describe the CobiT Model.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
As more of an organization’s business goes online the need for security increases. As a quality assurance manager, your IT Director knows that security is comprised of technical controls and management controls. The technical controls such as virus protecting software are very complex and its effectiveness would be difficult to evaluate by the average quality assurance professional. However, quality assurance professionals should be able to evaluate the management controls over security. To accomplish this, your IT Director has asked you to develop a ten question checklist that could be used to determine whether or not adequate management security controls exist over online software systems.
List below the ten questions you would put on that checklist.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
What is independent monitoring and who can perform it?
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
The IT staff must be aware, understand and embrace quality management principles and practices. List and explain four tactics (e.g., approaches / methods) you would use to communicate these concepts to your IT staff.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Preventive controls act as a guide to help things happen as they should. This type of control is most desirable because it stops problems from occurring. List three preventive controls and describe why those controls are important.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Describe the major components of acquisition life cycle for contracted software?
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Briefly explain the "Check" processes of process management. What are the challenges faced in identifying and implementing process controls?
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Two of the best accepted industry models are the SEI Capability Maturity Model Integration for Software and ISO 9000 standards. Describe the two models, and explain the differences between the two models.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
Explain what you think is the single most important goal of quality control in system development.
Type your answer in the box provided. Use options on the box toolbar to edit your response as needed before moving to the next question.
While contracting for outsourced software development, ___________ refers to the rights of the customer to run the application system in more than one location.
A common term that is used today for contracting for software development is "performance based contracting." Performance based contracting means:
Which one of the following is NOT a responsibility of management committees (or process management committees)?
Objective of assuring that the software / COTS can be integrated into the business system work flow is to ensure that:
QFD can be used to provide forward and backward traceability of value in the software development life cycle.
Which answer below is NOT one of the seven steps for implementing an IT quality function?
Which of the following is associated with "Big-Q" quality as proposed by Dr. Juran?
Checking if the web page on a internet banking site comes up within 2 seconds is an example of:
Processes containing only common causes of variation are considered stable.
The effort required for testing a program to insure it performs its intended function is called:
Using the PDCA Cycle concept, defining the mission of a Quality Assurance function would be considered which PDCA phase?
Which type of benchmark is used to set and validate objectives to measure performance?
A major corporation issued this statement: "We see ourselves now and in the future as a company with a strong customer franchise, known for reliability, trust and integrity in all relationships. Our business will be based on technologies that have evolved over a long history and which will give us unique advantages over our competition. These technologies will span our core businesses and will also go beyond boundaries we can see today." What type of statement is this?
Which of the following would be considered a standard unit of measurement?
In the context of process maturity, 'check process continuum' moves from:
Which type of monitoring focuses on the input or entrance criteria to a business process, for compliance to organizational policies?
Which of the following tool(s) can be applied to determine the change in process scope?
Within an ISO process assessment, a capability level is said to be established 'only' and 'only if' all the process attributes are 'fully achieved'.
Which of the following models uses this four part cyclE. (part one - plan and organize; part two - acquire and implement; part three - deliver and support; part four - monitor)?
The methods that an organization uses for hiring, training, supervising, and evaluating personnel are what types of controls:
__________ is a software metric, developed by Thomas J. McCabe, used to indicate the complexity of a program.
Many organizations use code inspections as a means for removing defects prior to commencing unit testing. When code inspections are performed, according to the generally accepted code inspection process, the code inspectors are:
What type of graphical chart of individual measured values is organized by frequency of occurrence (from high to low frequency)?
One of the first steps in establishing a security program is to develop a snapshot of the organization’s security program at a certain time. This snapshot is called:
Which of the following is the correct definition of the quality attribute reliability?
Evaluating and quantifying the risks, controls, and vulnerabilities is called _________ .
Statement Testing is included in which of the following test data categories?
Determining which risks are likely to affect the project and documenting the characteristics of each is called ________ .
Which of the following is / are used for determining the magnitude of the Risk?
Which of the following tools / techniques is a facilitated technique where all teammates participate by individually ranking ideas, issues, concerns, and solutions; then the group achieves a consensus by combining the individual rankings?
The system having adequate safeguards to protect the data against damage refers to which CSF?