Domain 5: Compliance, Audit & Support
GitHub Administration · 60 questions
- What information does the GitHub Enterprise audit log capture?
- What is Dependabot, and what three features does it provide in GitHub?
- How long does GitHub Enterprise Cloud retain audit log data by default?
- What is GitHub Advanced Security (GHAS), and which features does it include?
- What is GitHub's 'push protection' feature in secret scanning?
- Which GitHub feature provides a software bill of materials (SBOM) for repository dependencies?
- What is the GitHub Advisory Database?
- What does the GitHub Enterprise backup utility (github/backup-utils) back up?
- What is the purpose of GitHub Enterprise's 'dormant user' feature?
- What GitHub feature allows you to stream audit log events to external systems in real time?
- What is the GitHub Enterprise Server site admin panel, and who has access to it?
- What does GitHub's 'dependency review' feature provide in pull requests?
- What is the GitHub Enterprise license model, and what happens when the user count exceeds the licensed seat count?
- What information is included in a GitHub Security Advisory?
- How does GitHub's compliance with SOC 2 Type II benefit enterprise customers?
- What is the GitHub Enterprise 'consumption' model for GitHub Actions minutes?
- What does the GitHub Enterprise 'legal hold' capability allow administrators to do?
- What GitHub feature enables administrators to view aggregate statistics on how GitHub Enterprise is being used across the organization?
- What is a GitHub Enterprise 'server statistics' feature when GitHub Connect is enabled?
- How should GitHub Enterprise administrators handle a security incident where a user's account may be compromised?
- What is the GitHub Enterprise 'organization insights' feature?
- What is the GitHub Enterprise 'Security Overview' and what does it aggregate?
- What does the GitHub Enterprise audit log 'hashedtoken' field indicate?
- What is GitHub's 'secret scanning alert' lifecycle and what statuses can an alert have?
- What is the GitHub Enterprise 'enterprise-level repository policy' and what can it control?
- What GitHub feature provides a searchable, filterable view of all Dependabot alerts across an enterprise?
- What is a GitHub 'repository security advisory' and what does it publish?
- What is the GitHub Enterprise 'Managed Accounts and Directory Sync' approach for SAML enterprises that don't use EMU?
- What does 'ghe-license' command do in GitHub Enterprise Server?
- What is GitHub's 'Artifact attestation' feature for GitHub Actions?
- What is the 'GHES admin stats' API endpoint and what data does it provide?
- What does 'audit log streaming' to an external SIEM provide that standard audit log export does not?
- What is the GitHub 'advisory database' and how does it contribute to Dependabot alerts?
- What is a GitHub Enterprise 'support bundle' and when is it collected?
- What is the GitHub 'Dependency Graph' feature and what is its relationship to Dependabot?
- What GitHub compliance feature allows generating a Software Bill of Materials (SBOM)?
- What is the purpose of GitHub's 'code scanning default setup' feature?
- What is GitHub Enterprise's 'dormant user' feature and how does it relate to licensing?
- What is the GitHub Enterprise 'verified domain' feature for organizations?
- What does GitHub Enterprise's 'token lifetime' policy for fine-grained PATs control?
- What is a primary benefit of configuring audit log streaming to an external destination?
- Which two practices help GitHub Enterprise support tickets get appropriate handling? (Choose two)
- Why might an enterprise automation use GitHub usage metrics APIs or usage reports programmatically?
- When GitHub Support requests a GHES support bundle, what should administrators understand about it?
- How does one-time audit log export differ from continuous audit log streaming?
- What do GitHub Advanced Security license usage views help administrators manage?
- What operational question does the enterprise Security Overview primarily help answer?
- Which two GitHub artifacts commonly support external compliance audits? (Choose two)
- What should administrators evaluate when adopting GitHub Enterprise Cloud features related to data residency?
- During an incident where a GitHub App's private key or high-privilege credentials may be leaked, what should administrators do first?
- How can Dependabot auto-triage rules help security teams manage high volumes of dependency alerts across an enterprise?
- When should an organization prefer code scanning advanced setup over default setup for GitHub Advanced Security?
- What operational value do secret scanning validity checks provide when GitHub partners confirm whether a detected credential is still active?
- Why would an enterprise use the GitHub audit log GraphQL API in addition to the web UI export when building a compliance evidence pipeline?
- Which two GitHub Enterprise capabilities most directly help an organization produce ongoing compliance evidence for access and configuration changes? (Choose two.)
- An operations team opens a GitHub Support case for a GitHub Enterprise Server outage with intermittent 500 errors after a configuration change. When is generating a support bundle most appropriate?
- How should enterprise administrators use a legal hold when litigation or investigation requires preserving a user's GitHub-related content?
- What should administrators verify when configuring enterprise audit log streaming to an external destination such as Azure Blob, S3, or a SIEM-compatible endpoint?
- A finance stakeholder needs monthly invoice access and spending visibility for GitHub Enterprise Cloud without the ability to change enterprise security policies. Which assignment best matches least privilege?
- How does the enterprise Security Overview support compliance and risk reporting for GitHub Advanced Security programs?