Certified Associate in Software Testing (CAST) — Questions and Answers
Question 1: When preparing a test summary report for stakeholders, which element is MOST important to include?
- An assessment of product quality and release risk (Correct answer)
- A list of every test case executed with pass/fail status
- Detailed technical descriptions of all defects found
- The personal performance ratings of each tester
Correct answer: An assessment of product quality and release risk
Stakeholders need an assessment of product quality and release risk to make informed go/no-go decisions, not exhaustive technical details.
Question 2: Version control in test environment management helps by:
- Replacing the need for test documentation
- Increasing the number of test cases automatically
- Tracking changes to environment configurations, enabling rollback to known-good states (Correct answer)
- Assigning tasks to testers automatically
Correct answer: Tracking changes to environment configurations, enabling rollback to known-good states
Version control tracks environment configuration changes, making it possible to identify when changes broke something and restore previous states.
Question 3: In the context of risk management, what does 'risk transference' mean in software projects?
- Shifting the financial or operational consequence to a third party such as a vendor or insurer (Correct answer)
- Converting a product risk into a project risk
- Moving a risk to a later sprint for reassessment
- Assigning a risk to a different tester
Correct answer: Shifting the financial or operational consequence to a third party such as a vendor or insurer
Risk transference shifts the financial or operational burden of a risk to another party, such as through outsourcing or insurance.
Question 4: When a tester signs a test completion report, they are professionally affirming that:
- The software has no defects
- The software is ready for production release
- All identified defects have been resolved
- The testing activities described were conducted as stated and results are accurately represented (Correct answer)
Correct answer: The testing activities described were conducted as stated and results are accurately represented
Signing a test completion report is a professional attestation that the described testing activities were performed and that the reported results accurately reflect what was observed.
Question 5: What is the main difference between a test case and a test script?
- There is no difference between the two
- A test case is automated while a test script is manual
- A test script is written by developers; a test case is written by testers
- A test case defines what to test; a test script provides step-by-step instructions for execution (Correct answer)
Correct answer: A test case defines what to test; a test script provides step-by-step instructions for execution
Test cases define inputs and expected outputs, while test scripts provide detailed procedural steps for execution.
Question 6: An organization follows ISO 9001 for quality management. What is the MAIN benefit this certification provides to customers?
- Ensures software is compliant with government regulations
- Guarantees zero defects in software
- Provides a warranty for delivered products
- Confirms the organization has a documented quality management system (Correct answer)
Correct answer: Confirms the organization has a documented quality management system
ISO 9001 certification confirms that an organization maintains a documented QMS that meets international quality management standards.
Question 7: Which metric is most useful for tracking the progress of test execution?
- Total project budget spent
- Number of developers on the team
- Percentage of planned test cases executed (Correct answer)
- Number of lines of code written
Correct answer: Percentage of planned test cases executed
The percentage of planned test cases executed is a direct measure of test execution progress.
Question 8: Which document formally records the decisions made about risk responses and the person accountable for each risk?
- Risk register (Correct answer)
- Test plan
- Defect report
- Test summary report
Correct answer: Risk register
The risk register is the authoritative record of identified risks, their assessments, chosen responses, and assigned owners.
Question 9: What is the purpose of boundary value analysis (BVA) in testing?
- To test input boundaries for defects (Correct answer)
- To avoid executing test cases
- To test only positive scenarios
- To reduce code complexity
Correct answer: To test input boundaries for defects
Boundary value analysis tests the extreme edges of input values to identify defects that may occur at input limits.
Question 10: Which black-box test design technique creates test cases based on cause-effect relationships between inputs and outputs?
- Branch coverage
- Statement coverage
- Path testing
- Decision table testing (Correct answer)
Correct answer: Decision table testing
Decision table testing explicitly models cause-effect relationships by listing conditions (causes) and their corresponding actions (effects) in a tabular format.
Question 11: In risk-based testing, which factor determines the PRIORITY order in which risks should be tested first?
- The experience level of the tester assigned
- Alphabetical order of the risk name
- The number of test cases associated with the risk
- The combination of likelihood and impact (Correct answer)
Correct answer: The combination of likelihood and impact
Risk priority in risk-based testing is determined by multiplying (or combining) likelihood and impact to produce a risk level.
Question 12: What is the main objective of software testing?
- Ensure 100% defect-free software
- Eliminate the need for debugging
- Increase the complexity of the software
- Identify defects and verify requirements (Correct answer)
Correct answer: Identify defects and verify requirements
The primary goal of software testing is to identify defects and ensure that the software meets the specified requirements and performs as expected.
Question 13: Which defect status indicates that a defect has been fixed and is ready for retesting?
- Rejected
- Fixed (Correct answer)
- Deferred
- New
Correct answer: Fixed
The 'Fixed' status indicates that the defect has been addressed by developers and is ready to be verified through retesting.
Question 14: Which tool or methodology is most appropriate for analyzing fundamentals outcomes?
- Maintaining strict formality that inhibits collaboration
- Maintaining professional boundaries while building collaborative relationships (Correct answer)
- Adjusting boundaries based on individual situations without guidelines
- Prioritizing relationships over professional standards
Correct answer: Maintaining professional boundaries while building collaborative relationships
Maintaining professional boundaries while building collaborative relationships is the correct approach because effective fundamentals in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 15: Which defect severity level describes an issue that completely blocks system functionality?
- Low
- Cosmetic
- Critical (Correct answer)
- Medium
Correct answer: Critical
A critical defect causes complete system failure or prevents further testing, requiring immediate attention.
Question 16: What is the recommended frequency for reviewing and updating test planning and execution protocols?
- Monitoring outcomes through regular data collection and trend analysis (Correct answer)
- Relying on periodic external audits as the sole evaluation method
- Reviewing results only at year-end
- Tracking activity volume without measuring quality
Correct answer: Monitoring outcomes through regular data collection and trend analysis
Monitoring outcomes through regular data collection and trend analysis is the correct approach because effective test planning and execution in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 17: Exit criteria in a test plan define:
- The version control branching strategy
- The names of testers assigned to each module
- When testing is considered complete enough to proceed to the next phase (Correct answer)
- The hardware requirements for the test environment
Correct answer: When testing is considered complete enough to proceed to the next phase
Exit criteria specify the conditions that must be satisfied before a test phase can be concluded.
Question 18: In a regulated industry, a test plan is reviewed and approved by a quality board before testing begins. This practice BEST supports which QA principle?
- Agile retrospective improvement
- Formal review and approval governance (Correct answer)
- Exploratory testing freedom
- Shift-left testing
Correct answer: Formal review and approval governance
Formal review and approval governance ensures that test plans meet compliance requirements before testing commences.
Question 19: Which metric is commonly used to track the progress of test execution?
- Test case execution percentage (Correct answer)
- Bug severity
- Code coverage
- Deployment frequency
Correct answer: Test case execution percentage
Test case execution percentage measures the number of executed test cases compared to the total planned test cases.
Question 20: A tester needs to communicate a testing delay to a project manager. Which approach is BEST?
- Report the risk proactively as soon as it is identified, along with a mitigation plan (Correct answer)
- Wait until the delay is certain before communicating
- Send a brief message blaming the development team for the delay
- Avoid mentioning the delay and work overtime to recover
Correct answer: Report the risk proactively as soon as it is identified, along with a mitigation plan
Proactive risk communication with a mitigation plan gives the project manager time to respond and demonstrates professional accountability.
Question 21: What is the role of a test environment inventory?
- A log of tester working hours
- A record of all test cases executed
- A catalog of all test environments, their configurations, ownership, and status (Correct answer)
- A list of defects found in the environment
Correct answer: A catalog of all test environments, their configurations, ownership, and status
A test environment inventory documents all available environments, their configurations, and current status to support scheduling and conflict resolution.
Question 22: Which scenario would require a associate in software testing professional to escalate a defect management concern?
- Discouraging critical feedback to maintain team morale
- Collecting feedback only during formal review periods
- Creating feedback mechanisms that encourage continuous improvement (Correct answer)
- Using feedback solely for personnel evaluations
Correct answer: Creating feedback mechanisms that encourage continuous improvement
Creating feedback mechanisms that encourage continuous improvement is the correct approach because effective defect management in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 23: A risk is described as having a 30% probability of occurrence and an impact rating of 4 on a 5-point scale. What is its risk exposure value?
- 1.2 (Correct answer)
- 0.075
- 120
- 34
Correct answer: 1.2
Risk exposure = Probability Ă— Impact = 0.30 Ă— 4 = 1.2, expressing the expected weighted impact of the risk.
Question 24: Which term describes the degree to which a software product satisfies stated and implied needs when used under specified conditions?
- Usability
- Fitness for use (quality) (Correct answer)
- Reliability
- Compliance
Correct answer: Fitness for use (quality)
Fitness for use is the classic Juran definition of quality — satisfying stated and implied customer needs under specified conditions.
Question 25: Which document provides a detailed log of all test activities and results during a test execution cycle?
- Test Log (Correct answer)
- Test Case Specification
- Test Plan
- Test Summary Report
Correct answer: Test Log
A test log records chronological details of test execution activities and results.
Question 26: Which tool is commonly used for performance testing?
- JMeter (Correct answer)
- Postman
- Selenium
- JIRA
Correct answer: JMeter
JMeter is a popular tool for load and performance testing, helping to assess system behavior under different levels of stress.
Question 27: When documenting test results, testers should use:
- Precise, objective language with specific data (Correct answer)
- Technical jargon only developers can understand
- Marketing language to highlight positives
- Vague language to allow flexibility in interpretation
Correct answer: Precise, objective language with specific data
Test documentation must be precise and objective to ensure results are clear and actionable for all stakeholders.
Question 28: What information is typically NOT included in a defect report?
- Severity and priority
- Tester's salary information (Correct answer)
- Actual vs. expected results
- Steps to reproduce
Correct answer: Tester's salary information
Defect reports contain technical and process information about the defect, not personal HR data like salary.
Question 29: In equivalence partitioning, which statement about invalid partitions is CORRECT?
- Invalid partitions need not be tested if valid partitions pass
- Invalid partitions apply only to output values
- Invalid partitions should be tested with multiple values
- Only one test case from each invalid partition is needed (Correct answer)
Correct answer: Only one test case from each invalid partition is needed
Like valid partitions, one representative test case per invalid partition is sufficient because all values within that partition are expected to behave the same way.
Question 30: Which role is typically responsible for setting up and maintaining the test environment?
- Test Environment Manager or DevOps Engineer (Correct answer)
- Business Analyst
- Marketing Manager
- Legal Counsel
Correct answer: Test Environment Manager or DevOps Engineer
A Test Environment Manager or DevOps Engineer is responsible for provisioning, configuring, and maintaining test environments.
Question 31: During a quality assurance & compliance audit, which documentation is most critical to have readily available?
- Accepting recurring problems as unavoidable
- Blaming individual team members for process failures
- Conducting root cause analysis to identify underlying systemic issues (Correct answer)
- Addressing symptoms without investigating deeper causes
Correct answer: Conducting root cause analysis to identify underlying systemic issues
Conducting root cause analysis to identify underlying systemic issues is the correct approach because effective quality assurance & compliance in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 32: The principle of 'professional courage' in testing ethics refers to:
- The willingness to report unwelcome findings honestly despite organizational or social pressure (Correct answer)
- Challenging the technical architecture of the system under test
- Taking on testing assignments with very tight deadlines
- Running aggressive performance tests that might crash the system
Correct answer: The willingness to report unwelcome findings honestly despite organizational or social pressure
Professional courage means having the fortitude to honestly report defects, risks, and findings even when doing so is unwelcome or creates conflict with management or stakeholders.
Question 33: A stakeholder insists a known defect is 'not a real bug' and should be closed. What should the tester do?
- Provide objective evidence such as requirements and reproduction steps to support the defect (Correct answer)
- Mark it as deferred without discussion
- Escalate to senior management without talking to the stakeholder
- Close the defect immediately to maintain the relationship
Correct answer: Provide objective evidence such as requirements and reproduction steps to support the defect
Providing objective evidence like requirements documentation and reproduction steps maintains professionalism and grounds the discussion in facts.
Question 34: Which type of testing tool is used for functional testing?
- JIRA
- Wireshark
- Postman
- Selenium (Correct answer)
Correct answer: Selenium
Selenium is a widely used automation tool for functional testing, allowing testers to validate user interface behavior across different browsers.
Question 35: What is the most common mistake professionals make when implementing test planning and execution strategies?
- Transferring all risk to external partners through contracts
- Creating contingency plans for every possible scenario regardless of probability
- Responding to problems only after they occur
- Developing contingency plans for high-probability risk scenarios (Correct answer)
Correct answer: Developing contingency plans for high-probability risk scenarios
Developing contingency plans for high-probability risk scenarios is the correct approach because effective test planning and execution in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 36: What is the recommended frequency for reviewing and updating defect management protocols?
- Monitoring outcomes through regular data collection and trend analysis (Correct answer)
- Reviewing results only at year-end
- Relying on periodic external audits as the sole evaluation method
- Tracking activity volume without measuring quality
Correct answer: Monitoring outcomes through regular data collection and trend analysis
Monitoring outcomes through regular data collection and trend analysis is the correct approach because effective defect management in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 37: Which document is used to track and manage software defects?
- User Manual
- Test Plan
- Deployment Checklist
- Defect Report (Correct answer)
Correct answer: Defect Report
A defect report documents defect details, including severity, priority, steps to reproduce, and current status for effective tracking and resolution.
Question 38: What is the recommended frequency for reviewing and updating tools and techniques protocols?
- Relying on periodic external audits as the sole evaluation method
- Reviewing results only at year-end
- Monitoring outcomes through regular data collection and trend analysis (Correct answer)
- Tracking activity volume without measuring quality
Correct answer: Monitoring outcomes through regular data collection and trend analysis
Monitoring outcomes through regular data collection and trend analysis is the correct approach because effective tools and techniques in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 39: What does 'non-conformance' mean in a QA context?
- A failure to meet a specified requirement or standard (Correct answer)
- A feature added outside the sprint scope
- A defect found in production
- A test case that was not executed
Correct answer: A failure to meet a specified requirement or standard
Non-conformance is when a product, process, or service fails to meet a defined requirement, standard, or specification.
Question 40: A Test Incident Report is created when:
- A requirement is approved by the customer
- A test case is added to the test suite
- An unexpected event occurs during test execution that needs investigation (Correct answer)
- A test environment is set up successfully
Correct answer: An unexpected event occurs during test execution that needs investigation
Test Incident Reports capture unexpected occurrences during testing that require further investigation or resolution.
Question 41: What is the most common mistake professionals make when implementing defect management strategies?
- Creating contingency plans for every possible scenario regardless of probability
- Transferring all risk to external partners through contracts
- Developing contingency plans for high-probability risk scenarios (Correct answer)
- Responding to problems only after they occur
Correct answer: Developing contingency plans for high-probability risk scenarios
Developing contingency plans for high-probability risk scenarios is the correct approach because effective defect management in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 42: What is the purpose of a defect lifecycle in software testing?
- To eliminate the need for defect tracking
- To increase software complexity
- To prevent software releases
- To ensure defects are properly tracked and resolved (Correct answer)
Correct answer: To ensure defects are properly tracked and resolved
The defect lifecycle defines the stages a defect goes through from discovery to resolution, ensuring proper tracking and closure.
Question 43: A tester working on a healthcare application discovers that patient data is being stored insecurely. This was not part of their assigned test scope. What should they do?
- Complete only the assigned tests and mention the issue informally to a colleague
- Ignore it since it is outside their assigned scope
- Report the security issue to the appropriate team or management, even though it is outside their scope (Correct answer)
- Fix the security issue themselves before reporting it
Correct answer: Report the security issue to the appropriate team or management, even though it is outside their scope
Professional responsibility requires reporting potential risks to users or the public even when they fall outside the tester's explicitly assigned scope.
Question 44: What is the most common mistake professionals make when implementing fundamentals strategies?
- Developing contingency plans for high-probability risk scenarios (Correct answer)
- Transferring all risk to external partners through contracts
- Responding to problems only after they occur
- Creating contingency plans for every possible scenario regardless of probability
Correct answer: Developing contingency plans for high-probability risk scenarios
Developing contingency plans for high-probability risk scenarios is the correct approach because effective fundamentals in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 45: What distinguishes an advanced associate in software testing practitioner's approach to quality assurance & compliance from that of a novice?
- Assigning all responsibilities to a single department
- Establishing cross-functional teams with clearly defined roles (Correct answer)
- Rotating responsibilities randomly to promote flexibility
- Creating competition between teams to drive performance
Correct answer: Establishing cross-functional teams with clearly defined roles
Establishing cross-functional teams with clearly defined roles is the correct approach because effective quality assurance & compliance in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 46: Which coverage criterion requires that every valid and invalid transition in a state transition model be exercised at least once?
- Boundary coverage
- State coverage
- All-paths coverage
- Transition coverage (Correct answer)
Correct answer: Transition coverage
Transition coverage (also called 0-switch coverage) requires that every transition—both valid and invalid—in the state model be exercised at least once.
Question 47: Which test design technique divides input data into groups where all values in a group are expected to be processed the same way?
- State transition testing
- Decision table testing
- Equivalence partitioning (Correct answer)
- Boundary value analysis
Correct answer: Equivalence partitioning
Equivalence partitioning divides inputs into classes (partitions) where every value in a class is expected to behave identically, reducing the number of test cases needed.
Question 48: What distinguishes an advanced associate in software testing practitioner's approach to professional ethics & standards from that of a novice?
- Assigning all responsibilities to a single department
- Rotating responsibilities randomly to promote flexibility
- Creating competition between teams to drive performance
- Establishing cross-functional teams with clearly defined roles (Correct answer)
Correct answer: Establishing cross-functional teams with clearly defined roles
Establishing cross-functional teams with clearly defined roles is the correct approach because effective professional ethics & standards in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 49: Which black-box test design technique is BEST for testing a system that has a large number of input parameters with discrete values?
- Pairwise (combinatorial) testing (Correct answer)
- Control flow graph analysis
- Statement coverage
- Cyclomatic complexity-based testing
Correct answer: Pairwise (combinatorial) testing
Pairwise testing efficiently handles large numbers of discrete input parameters by ensuring every pair of parameter values is covered, without the explosion of full combinatorial testing.
Question 50: State transition testing is MOST appropriate when:
- The system behavior depends only on current inputs
- The number of inputs is small enough to test exhaustively
- The system reacts differently depending on its current state and input events (Correct answer)
- Code coverage metrics need to be maximized
Correct answer: The system reacts differently depending on its current state and input events
State transition testing is used when a system's response depends on both the current state and the triggering event, making it ideal for systems modeled as finite state machines.
Question 51: Which metric is MOST useful for communicating testing progress to stakeholders who want to understand release readiness?
- Total number of test cases written
- Number of hours the test team worked this week
- Number of test environments configured
- Percentage of test cases executed combined with open defect severity distribution (Correct answer)
Correct answer: Percentage of test cases executed combined with open defect severity distribution
Combining execution progress with open defect severity gives stakeholders a clear picture of both coverage and outstanding risk relevant to release readiness.
Question 52: During a sprint retrospective, the team notes that integration risks were consistently underestimated. Which improvement would MOST directly address this?
- Reduce the number of features per sprint
- Hire more testers for unit testing
- Include integration risk assessment as a formal step in sprint planning (Correct answer)
- Remove integration testing from the sprint
Correct answer: Include integration risk assessment as a formal step in sprint planning
Formalizing integration risk assessment during sprint planning ensures these risks are identified and mitigated before integration work begins.
Question 53: What should a tester do when actual test results differ from expected results?
- Mark the test as blocked
- Document the deviation and log a defect (Correct answer)
- Skip the test and continue
- Re-run the test until it passes
Correct answer: Document the deviation and log a defect
Discrepancies between actual and expected results must be documented and raised as defects per standard testing practice.
Question 54: Which testing technique is used to divide input data into groups to reduce test cases?
- State transition testing
- Equivalence partitioning (Correct answer)
- Boundary value analysis
- Exploratory testing
Correct answer: Equivalence partitioning
Equivalence partitioning groups input values into classes where one test case can represent multiple scenarios, reducing redundant testing.
Question 55: Why is data masking used in test environments?
- To protect sensitive production data by replacing it with realistic but fictitious values (Correct answer)
- To speed up test execution
- To make test data files smaller
- To increase test coverage
Correct answer: To protect sensitive production data by replacing it with realistic but fictitious values
Data masking replaces sensitive personal or business data with anonymized values to comply with privacy regulations while preserving data structure.
Question 56: When using boundary value analysis, the THREE-POINT approach tests:
- The minimum, midpoint, and maximum of each partition
- Only values inside the valid partition
- Only the first and last valid values
- The boundary value, one below it, and one above it (Correct answer)
Correct answer: The boundary value, one below it, and one above it
The three-point BVA approach tests the exact boundary value plus the values immediately below and above it, targeting off-by-one and boundary-condition defects.
Question 57: A QA team discovers that a critical defect escaped to production despite passing all test phases. What process should be initiated first?
- Fire the responsible tester
- Conduct a root cause analysis (RCA) (Correct answer)
- Immediately roll back the release
- Add more test cases to regression suite
Correct answer: Conduct a root cause analysis (RCA)
Root cause analysis identifies the underlying reason for the escape so corrective actions can prevent recurrence.
Question 58: When designing test cases using a decision table, a 'don't care' condition (marked as '-') means:
- The condition should be tested with boundary values only
- The condition must always be true for the rule to apply
- The condition is invalid and should be excluded
- The value of that condition does not affect the rule's outcome (Correct answer)
Correct answer: The value of that condition does not affect the rule's outcome
A 'don't care' entry means the condition value (true or false) has no impact on the action for that rule, allowing the table to be compressed and reducing the number of test cases.
Question 59: When performing a FMEA (Failure Mode and Effects Analysis), what does the Risk Priority Number (RPN) represent?
- Severity Ă— Occurrence Ă— Detectability (Correct answer)
- Impact Ă— Likelihood only
- The number of test cases required per failure mode
- The total cost of fixing all failures
Correct answer: Severity Ă— Occurrence Ă— Detectability
RPN = Severity Ă— Occurrence Ă— Detectability, providing a composite score to prioritize failure modes requiring corrective action.
Question 60: A tester is asked to focus testing efforts on components that have changed recently. This practice BEST exemplifies which risk mitigation approach?
- Risk transfer
- Risk acceptance
- Risk-based test prioritization (Correct answer)
- Risk avoidance
Correct answer: Risk-based test prioritization
Targeting recently changed components reduces the risk of regression defects escaping, which is a core risk-based test prioritization strategy.
Question 61: A business analyst and a developer have conflicting interpretations of a requirement. What role should the tester play?
- Avoid getting involved to prevent conflict
- Take the developer's side since they will implement the feature
- Take the business analyst's side since requirements come from the business
- Stay neutral and help facilitate resolution by referencing the original requirement and its intent (Correct answer)
Correct answer: Stay neutral and help facilitate resolution by referencing the original requirement and its intent
Testers serve as a bridge between business and technical stakeholders and can facilitate resolution by grounding the discussion in documented requirements and intent.
Question 62: Why is defect prioritization important in software testing?
- To avoid fixing minor defects
- To focus on fixing the most critical issues first (Correct answer)
- To reduce the number of test cases
- To delay software testing
Correct answer: To focus on fixing the most critical issues first
Defect prioritization ensures that high-impact issues are addressed first, improving software stability and user experience.
Question 63: What is the purpose of test execution in the software testing life cycle?
- Deploying the software to production
- Writing user manuals
- Running test cases and logging defects (Correct answer)
- Developing software code
Correct answer: Running test cases and logging defects
Test execution involves running test cases, logging defects, and verifying that the software meets requirements.
Question 64: A tester finds that a field accepts alphabetic characters when only numeric input should be allowed. Which black-box technique BEST helps design a test case to detect this flaw?
- Equivalence partitioning with an invalid partition for non-numeric input (Correct answer)
- Cyclomatic complexity analysis
- Statement coverage testing
- Decision table with only valid conditions
Correct answer: Equivalence partitioning with an invalid partition for non-numeric input
Equivalence partitioning identifies an invalid partition (non-numeric characters) and a single test case from that partition would reveal that the input validation is missing.
Question 65: A test basis refers to:
- The baseline performance benchmark
- The initial defect count before testing
- The documents and information used to derive test cases (Correct answer)
- The testing team's organizational hierarchy
Correct answer: The documents and information used to derive test cases
The test basis is the body of knowledge (requirements, specs, designs) from which test cases are derived.
Question 66: What is the primary objective of communication & stakeholder engagement within the CAST professional framework?
- Relying on informal observations and anecdotal reports
- Copying approaches used by competitors without adaptation
- Making assumptions based on previous experience alone
- Analyzing data systematically using validated assessment tools (Correct answer)
Correct answer: Analyzing data systematically using validated assessment tools
Analyzing data systematically using validated assessment tools is the correct approach because effective communication & stakeholder engagement in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 67: Which of the following is the MAIN difference between a contingency plan and a mitigation plan?
- A contingency plan is only used for project risks, not product risks
- A mitigation plan is used after the risk occurs; a contingency plan prevents it
- They are interchangeable terms in risk management
- A mitigation plan reduces likelihood or impact before the risk occurs; a contingency plan defines how to respond if it does occur (Correct answer)
Correct answer: A mitigation plan reduces likelihood or impact before the risk occurs; a contingency plan defines how to respond if it does occur
Mitigation is proactive (before the risk event), while a contingency plan is reactive (what to do if the risk materializes).
Question 68: Which test documentation artifact maps software requirements to their verification methods?
- Test Execution Schedule
- Incident Report
- Requirements Traceability Matrix (Correct answer)
- Test Log
Correct answer: Requirements Traceability Matrix
The Requirements Traceability Matrix (RTM) links each requirement to its corresponding test cases and verification methods.
Question 69: In the context of associate in software testing, which principle most directly governs defect management practices?
- Applying evidence-based methodologies with peer-reviewed support (Correct answer)
- Relying exclusively on vendor-provided solutions
- Following popular trends without evaluating their applicability
- Using trial-and-error without systematic documentation
Correct answer: Applying evidence-based methodologies with peer-reviewed support
Applying evidence-based methodologies with peer-reviewed support is the correct approach because effective defect management in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 70: In the context of associate in software testing, which principle most directly governs fundamentals practices?
- Relying exclusively on vendor-provided solutions
- Applying evidence-based methodologies with peer-reviewed support (Correct answer)
- Using trial-and-error without systematic documentation
- Following popular trends without evaluating their applicability
Correct answer: Applying evidence-based methodologies with peer-reviewed support
Applying evidence-based methodologies with peer-reviewed support is the correct approach because effective fundamentals in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 71: Which section of a test plan typically defines what will NOT be tested?
- Scope and Exclusions (Correct answer)
- Test Deliverables
- Entry Criteria
- Test Objectives
Correct answer: Scope and Exclusions
The Scope and Exclusions section explicitly states features or areas outside the testing effort.
Question 72: Which tool or methodology is most appropriate for analyzing defect management outcomes?
- Maintaining strict formality that inhibits collaboration
- Prioritizing relationships over professional standards
- Maintaining professional boundaries while building collaborative relationships (Correct answer)
- Adjusting boundaries based on individual situations without guidelines
Correct answer: Maintaining professional boundaries while building collaborative relationships
Maintaining professional boundaries while building collaborative relationships is the correct approach because effective defect management in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 73: Which of the following BEST describes the difference between Quality Assurance (QA) and Quality Control (QC)?
- QA is process-focused; QC is product-focused (Correct answer)
- QA finds defects; QC prevents them
- QA tests code; QC tests requirements
- QA is done after release; QC before release
Correct answer: QA is process-focused; QC is product-focused
QA focuses on improving and auditing processes to prevent defects, while QC focuses on inspecting the product to find defects.
Question 74: What is the primary objective of defect management in software testing?
- To delay software releases
- To eliminate all software defects completely
- To identify, track, and resolve defects efficiently (Correct answer)
- To remove all test cases after execution
Correct answer: To identify, track, and resolve defects efficiently
Defect management ensures defects are identified, tracked, and resolved efficiently to improve software quality and reliability.
Question 75: Which type of risk specifically arises from NOT performing sufficient testing on a software component?
- Residual risk
- Quality risk (Correct answer)
- Product risk
- Project risk
Correct answer: Quality risk
Quality risk refers to the potential that a product does not meet its quality requirements due to insufficient testing or defect escape.
Question 76: In test reporting, what does 'test coverage' measure?
- The speed at which tests are executed
- The total number of defects found
- The proportion of the test basis exercised by test cases (Correct answer)
- The number of testers assigned to a project
Correct answer: The proportion of the test basis exercised by test cases
Test coverage measures how much of the test basis (requirements, code, etc.) has been exercised by the test suite.
Question 77: A traceability matrix in testing is used to:
- Track defect resolution timelines
- Map test cases to requirements to ensure full coverage (Correct answer)
- List all software modules under test
- Record tester login and logout times
Correct answer: Map test cases to requirements to ensure full coverage
A Requirements Traceability Matrix (RTM) links requirements to test cases to verify that all requirements are tested.
Question 78: A stakeholder questions the value of risk management & mitigation initiatives. Which response best demonstrates ROI?
- Centralizing accountability with a single individual
- Avoiding accountability discussions to prevent conflict
- Distributing accountability so widely that no one is responsible
- Building a culture of accountability with transparent reporting (Correct answer)
Correct answer: Building a culture of accountability with transparent reporting
Building a culture of accountability with transparent reporting is the correct approach because effective risk management & mitigation in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 79: Which tool or methodology is most appropriate for analyzing test planning and execution outcomes?
- Maintaining strict formality that inhibits collaboration
- Adjusting boundaries based on individual situations without guidelines
- Prioritizing relationships over professional standards
- Maintaining professional boundaries while building collaborative relationships (Correct answer)
Correct answer: Maintaining professional boundaries while building collaborative relationships
Maintaining professional boundaries while building collaborative relationships is the correct approach because effective test planning and execution in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 80: Which metric is MOST useful for measuring the effectiveness of a QA process in preventing defects?
- Number of test cases executed
- Defect removal efficiency (DRE) (Correct answer)
- Test execution cycle time
- Lines of code written per sprint
Correct answer: Defect removal efficiency (DRE)
Defect Removal Efficiency measures the percentage of defects found and removed before release, directly reflecting QA process effectiveness.
Question 81: A new regulation impacts defect management procedures. What should a CAST professional do first?
- Delegating compliance oversight to administrative staff
- Interpreting regulations loosely to allow maximum flexibility
- Complying only with regulations that have enforcement mechanisms
- Ensuring compliance with current regulatory requirements and standards (Correct answer)
Correct answer: Ensuring compliance with current regulatory requirements and standards
Ensuring compliance with current regulatory requirements and standards is the correct approach because effective defect management in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 82: A tester is asked to present test results to a mixed audience of executives and developers. What is the BEST presentation strategy?
- Layer the presentation: high-level summary for executives followed by technical detail for developers (Correct answer)
- Focus only on technical details since developers will ask the most questions
- Use one technical format and trust all attendees to interpret it
- Focus only on the executives since they hold decision-making authority
Correct answer: Layer the presentation: high-level summary for executives followed by technical detail for developers
Layering the presentation ensures both audience groups receive the information they need without alienating either.
Question 83: What is the recommended frequency for reviewing and updating fundamentals protocols?
- Monitoring outcomes through regular data collection and trend analysis (Correct answer)
- Relying on periodic external audits as the sole evaluation method
- Tracking activity volume without measuring quality
- Reviewing results only at year-end
Correct answer: Monitoring outcomes through regular data collection and trend analysis
Monitoring outcomes through regular data collection and trend analysis is the correct approach because effective fundamentals in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 84: What is cyclomatic complexity used to measure in white-box testing?
- The number of valid transitions in a state machine
- The minimum number of independent paths through the code (Correct answer)
- The number of equivalence partitions in the input domain
- The total number of statements executed during testing
Correct answer: The minimum number of independent paths through the code
Cyclomatic complexity quantifies the number of linearly independent paths through a program's control flow graph, which determines the minimum number of test cases needed for full path coverage.
Question 85: A stakeholder questions the value of communication & stakeholder engagement initiatives. Which response best demonstrates ROI?
- Distributing accountability so widely that no one is responsible
- Avoiding accountability discussions to prevent conflict
- Centralizing accountability with a single individual
- Building a culture of accountability with transparent reporting (Correct answer)
Correct answer: Building a culture of accountability with transparent reporting
Building a culture of accountability with transparent reporting is the correct approach because effective communication & stakeholder engagement in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 86: An organization wants to ensure its software development lifecycle complies with ASPICE (Automotive SPICE). Which ASPICE process area is directly relevant to system testing?
- MAN.3 – Project Management
- SUP.1 – Quality Assurance
- SWE.1 – Software Requirements Analysis
- SYS.4 – System Integration Testing (Correct answer)
Correct answer: SYS.4 – System Integration Testing
ASPICE SYS.4 covers System Integration Testing, directly applicable to verifying integrated system components meet requirements.
Question 87: What distinguishes an advanced associate in software testing practitioner's approach to communication & stakeholder engagement from that of a novice?
- Assigning all responsibilities to a single department
- Establishing cross-functional teams with clearly defined roles (Correct answer)
- Rotating responsibilities randomly to promote flexibility
- Creating competition between teams to drive performance
Correct answer: Establishing cross-functional teams with clearly defined roles
Establishing cross-functional teams with clearly defined roles is the correct approach because effective communication & stakeholder engagement in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 88: What is environment 'smoke testing' in the context of test environment readiness?
- A security test for network vulnerabilities
- A quick check to verify the test environment is operational before full test execution (Correct answer)
- Testing that the smoke alarms in the data center function
- A type of performance test using heavy load
Correct answer: A quick check to verify the test environment is operational before full test execution
Environment smoke testing verifies that the test environment is properly set up and ready before committing to a full test run.
Question 89: Which document describes the conditions that must be met before testing can begin?
- Entry Criteria Document (Correct answer)
- Test Incident Report
- Test Execution Schedule
- Exit Criteria Document
Correct answer: Entry Criteria Document
Entry criteria define the prerequisites that must be satisfied before a test phase can start.
Question 90: What does 'conflict of interest' mean in the context of software testing ethics?
- A situation where a tester's personal interests could improperly influence their professional judgment (Correct answer)
- A dispute between the testing team and development team
- A disagreement between testers about how to write test cases
- A conflict between the test plan and the requirements document
Correct answer: A situation where a tester's personal interests could improperly influence their professional judgment
A conflict of interest arises when a tester's personal interests or relationships could improperly influence their professional testing judgments or decisions.
Question 91: What does a test progress report typically communicate to project management?
- The architectural design of the software
- Current testing status, risks, and any deviations from the test plan (Correct answer)
- A list of approved requirements
- The source code review findings
Correct answer: Current testing status, risks, and any deviations from the test plan
Test progress reports keep management informed of testing status, blockers, and any plan deviations.
Question 92: When a test process is assessed using TMMi (Test Maturity Model integration), which level indicates that testing is defined and documented as a standard process?
- Level 1 – Initial
- Level 2 – Managed
- Level 3 – Defined (Correct answer)
- Level 4 – Measured
Correct answer: Level 3 – Defined
TMMi Level 3 (Defined) means the test process is documented, standardized, and integrated across the organization.
Question 93: Which IEEE standard is most commonly referenced for test documentation in software testing?
- IEEE 754
- IEEE 1003
- IEEE 829 (Correct answer)
- IEEE 802
Correct answer: IEEE 829
IEEE 829 defines the standard format for software test documentation including test plans and reports.
Question 94: When a tester must communicate negative test results—such as a high defect rate—what tone is MOST appropriate?
- Objective and factual, framing findings as risk information to support decision-making (Correct answer)
- Minimizing, to avoid discouraging the development team
- Alarming, to create urgency and motivate the team
- Apologetic, to take responsibility for the quality issues
Correct answer: Objective and factual, framing findings as risk information to support decision-making
An objective, factual tone positions test results as actionable quality information rather than a judgment, which is more effective for decision-making.
Question 95: Use case testing derives test cases from:
- Statistical analysis of past defect data
- Interactions between actors and the system that deliver value (Correct answer)
- The boundary conditions of numeric input fields
- The internal code structure of the application
Correct answer: Interactions between actors and the system that deliver value
Use case testing creates test cases from use cases that describe how actors (users or systems) interact with the system to achieve a goal, ensuring end-to-end scenarios are validated.
Question 96: Which of the following is a key output of the test closure phase?
- Test Plan
- Test Summary Report (Correct answer)
- Test Case Specification
- Requirements Document
Correct answer: Test Summary Report
The Test Summary Report is the primary deliverable produced at the end of the test closure phase.
Question 97: What does 'test data management' involve?
- Managing the project schedule for test activities
- Writing test automation scripts
- Reviewing requirements for completeness
- Creating, maintaining, and controlling data used in test execution (Correct answer)
Correct answer: Creating, maintaining, and controlling data used in test execution
Test data management covers the creation, storage, masking, and governance of data used across test environments.
Question 98: What is the primary purpose of a Test Summary Report in software testing?
- To outline the defect tracking process
- To list all test cases to be executed
- To define the test environment configuration
- To summarize testing activities, results, and findings for stakeholders (Correct answer)
Correct answer: To summarize testing activities, results, and findings for stakeholders
A Test Summary Report communicates the overall testing outcome, coverage, and quality status to stakeholders.
Question 99: A associate in software testing professional discovers a discrepancy during communication & stakeholder engagement review. What is the most appropriate immediate action?
- Working independently to avoid conflicting opinions
- Limiting communication to written reports only
- Accepting all stakeholder requests without prioritization
- Engaging stakeholders collaboratively to align goals and expectations (Correct answer)
Correct answer: Engaging stakeholders collaboratively to align goals and expectations
Engaging stakeholders collaboratively to align goals and expectations is the correct approach because effective communication & stakeholder engagement in the associate in software testing field requires adherence to professional standards, evidence-based practices, and systematic methodology. This approach ensures consistent, high-quality outcomes while maintaining professional accountability.
Question 100: Which of the following BEST describes active listening during a requirements review meeting?
- Paraphrasing what stakeholders say and asking clarifying questions (Correct answer)
- Nodding to show agreement with all stakeholder statements
- Taking verbatim notes without asking any questions
- Waiting politely for your turn to speak without processing input
Correct answer: Paraphrasing what stakeholders say and asking clarifying questions
Active listening involves paraphrasing and asking clarifying questions to confirm understanding and uncover ambiguities.
Certified Associate in Software Testing (CAST)
The CAST certification validates foundation-level knowledge of software testing principles and practices, covering the Software Testing Body of Knowledge (STBOK) including test design, management, defect tracking, and quality assurance.
Exam Rules
- You can skip questions and return to them later
- Flag questions for review before submitting
- No feedback shown until you submit the entire exam
- Unanswered questions count as wrong — answer everything
- 10 pretest questions are mixed in and don't affect your score
- Timer auto-submits when time runs out
- Your progress is auto-saved every 30 seconds