Skip to content

Describe the GHAS security features and functionality Questions

Practice questions for Describe the GHAS security features and functionality topic in GitHub Advanced Security. 31 questions covering this domain.

31 questions8 easy15 medium8 hard
Q1
medium

Who can view security data across all repositories in an organization from security overview?

Q2
hard

Security overview shows no alerts for a repository. What is still possible?

Q3
hard

A compliance team notices that security overview shows different values for the same historical period when checked a month later. Which source should...

Q4
medium

Security overview dashboards aggregate metrics for which branch data by default?

Q5
medium

A security lead wants to measure how widely security features are enabled across repositories in an organization. Which security overview view should ...

Q6
easy

An organization wants a consolidated, interactive view of security trends across repositories. Which GitHub feature should it use?

Q7
medium

A GitHub Team organization wants code scanning and dependency review on private repositories. Which add-on provides those private-repository features?

Q8
easy

Which GitHub feature available on all plans lets you explore the packages a repository depends on and the repositories or packages that depend on it?

Q9
medium

A program lead wants a security overview page focused specifically on code scanning activity in pull requests. Which view should they use?

Q10
easy

A platform team wants one GitHub product family that covers code scanning, CodeQL CLI, dependency review, Copilot Autofix, and security overview. Whic...

Q11
hard

Two people open organization security overview and see different repository totals. Which explanation best matches GitHub behavior?

Q12
easy

An organization wants push protection, secret scanning, custom patterns, delegated bypass, and Copilot secret scanning under one offering. Which produ...

Q13
medium

Which repository-wide permission do organization security managers receive across every repository in the organization?

Q14
medium

A security manager can reopen code scanning alerts in repositories where they do not have code write access. Which documented permission enables that?

Q15
hard

Which security campaign capability is officially supported for code scanning remediation?

Q16
medium

An organization owner wants someone to configure security feature settings across repositories without making them an owner. Which role should be assi...

Q17
medium

Which permission combination is documented for organization security managers?

Q18
easy

A repository owner without any GHAS add-on wants to inspect both the packages a repository depends on and the packages or repositories that depend on ...

Q19
medium

Two people open security overview for the same organization and see different repository counts and alert totals. What is the best explanation?

Q20
medium

An organization owner wants to delegate GHAS configuration and security alert management across repositories without granting full organization owners...

Sign in to see all 31 questions

Create a free account to browse all questions — completely free during our launch phase.