仕事や学業と両立しながらGitHub Advanced Security GHASの合格を目指す方にとって、限られた時間をどう使うかが最大の課題です。CertJukenのGitHub-Advanced-Security練習問題は77問の厳選された内容で、短い準備期間でも出題範囲を効率よくカバーできます。
GitHub GitHub-Advanced-Security 試験概要:
| 認定ベンダー: | GitHub |
|---|---|
| 試験名: | GitHub Advanced Security 認定 |
| 試験番号: | GHAS |
| 対応言語: | 英語, ポルトガル語, 韓国語, 日本語, スペイン語 |
| 関連資格: | GitHub Administration 認定 GitHub Actions 認定 GitHub Foundations 認定 |
| 出題数: | 70 |
| 認定の有効期間: | 24 か月 |
| 試験時間: | 100 分 |
| 試験形式: | 複数選択, 単一選択 |
| 受験料: | $99 USD |
| サンプル問題: | ![]() |
| 受験方法: | オンライン監督試験または Pearson VUE 試験センター |
| 前提条件: | 正式な前提条件はありません。GitHub、DevOps ワークフロー、および GitHub のセキュリティ機能に関する経験があることが推奨されます。 |
| 公式シラバスのURL: | https://learn.github.com/certification/GHAS |
GitHub GitHub-Advanced-Security 試験シラバストピック:
| セクション | 比重 | 目標 |
|---|---|---|
| code scanning の設定と使用 | 30% | - code scanning ワークフローを管理する
|
| GHAS のセキュリティ機能と機能性を説明する | 15% | - GHAS と、そのセキュリティエコシステムにおける役割を理解する
|
| secret scanning の設定と使用 | 20% | - シークレット保護を管理する
|
| GHAS の管理とレポート作成 | 15% | - 大規模環境で GHAS を管理する
|
| Dependabot の設定と使用 | 20% | - 依存関係のセキュリティを管理する
|
GitHub Advanced Security GHASに関するよくある質問
GitHub-Advanced-Securityは、GitHubが実施する「GitHub Certification」を取得するための認定試験です。認定レベルは中級で、実務に即した知識とスキルが問われます。GitHub Foundations 認定、GitHub Actions 認定、GitHub Administration 認定などの関連認定へのステップとしても位置づけられており、キャリアアップを目指す方に広く選ばれています。CertJukenの練習問題を活用すれば、試験の全体像を把握しながら計画的に対策を進められます。
GitHub-Advanced-Security試験の問題数は70、制限時間は100 分です。1問あたりに使える時間を意識すると、序盤で時間を使いすぎないペース配分が重要になります。見直しの時間を確保するためにも、CertJukenの模擬試験で時間を計りながら解く練習を重ね、本番と同じ時間感覚を身につけておくと安心です。
はい。CertJukenではGitHub-Advanced-Security練習問題の無料サンプル(PDFデモ)を用意しており、内容や使い勝手を確かめてから購入を判断できます。購入後は365日間の無料更新が付き、更新期間の終了後は50%割引で継続更新を利用できます。
CertJukenでは「返金保証」を用意しています。購入後60日以内にGitHub-Advanced-Security試験を受験して不合格だった場合、受験票の写しと公式のスコアレポート(Score Report)のPDFを試験後2日以内に提出すれば、7日以内に全額返金の手続きが完了します。なお、受験者名と購入時の支払者名が一致している必要があり、購入から3日以内の受験や、実際に受験しなかった場合は対象外です。返金の代わりに、同等の試験対策教材2つを無料で受け取り、購入済み製品の更新サービスを継続する選択も可能です。商品は購入後すぐにダウンロードでき、メールでも1分以内にお届けします。2時間経っても届かない場合はカスタマーサポートまでご連絡ください。インストールできるパソコンの台数に制限はありません。
GitHub-Advanced-Security試験の出題範囲は5の分野に分かれています。主な分野はsecret scanning の設定と使用(20%)、Dependabot の設定と使用(20%)、GHAS の管理とレポート作成(15%)です。各分野の詳細な出題項目は、このページ上部の出題範囲一覧で確認できます。
GitHub Advanced Security GHAS 認定 GitHub-Advanced-Security 試験問題:
問題 #1
What are Dependabot security updates?
A. Automated pull requests to update the manifest to the latest version of the dependency
B. Automated pull requests that keep your dependencies updated, even when they don't have any vulnerabilities
C. Automated pull requests that help you update dependencies that have known vulnerabilities
D. Compatibility scores to let you know whether updating a dependency could cause breaking changes to your project
問題 #2
How many alerts are created when two instances of the same secret value are in the same repository?
A. 2
B. 4
C. 3
D. 1
問題 #3
After investigating a code scanning alert related to injection, you determine that the input is properly sanitized using custom logic. What should be your next step?
A. Open an issue in the CodeQL repository.
B. Draft a pull request to update the open-source query.
C. Ignore the alert.
D. Dismiss the alert with the reason "false positive."
問題 #4
Secret scanning will scan:
A. External services.
B. A continuous integration system.
C. Any Git repository.
D. The GitHub repository.
問題 #5
Which security feature shows a vulnerable dependency in a pull request?
A. Dependency graph
B. Dependency review
C. The repository's Security tab
D. Dependabot alert
解説:
| 問題 #1 正解: C | 問題 #2 正解: D | 問題 #3 正解: D | 問題 #4 正解: D | 問題 #5 正解: B |




Matsushita
河西**
Kurita
佐伯**
