ASTQB Sample Questions & Answers
Test analysis and design, including black-box and white-box techniques, carries the biggest share, ahead of managing test activities and planning, why testing matters in the first place, where it fits across the development lifecycle, static testing, and test tools.
Launch the full ASTQB simulator →Showing 10 of 20 free samples.
- Question 1Intermediate
Chapter 5: Managing the Test Activities · Test Monitoring, Control and Completion
A project team is analyzing their test process to identify inefficiencies. The test manager presents the following diagram showing the average time spent in each stage. Based on the diagram, where is the most significant bottleneck in the process that the team should investigate first?
flowchart LR A[Test Planning: 2 days] --> B{Test Case Design: 5 days} B --> C[Test Environment Setup: 8 days] C --> D[Test Execution: 4 days] D --> E[Defect Triage: 1 day] E --> F[Test Reporting: 1 day]Show answer & explanation
Correct answer: C
According to the flowchart, Test Environment Setup takes 8 days, which is the longest duration of any stage in the process. This represents the most significant delay and is therefore the primary bottleneck that the team should focus on improving.
- Question 2Intermediate
Chapter 3: Static Testing · 3.2.3 Roles and responsibilities
During a formal review (inspection) of a requirements specification, the team is struggling to reach a consensus on the severity of several identified defects. The discussion becomes heated, and the author of the document becomes defensive. What is the primary responsibility of the moderator in this situation?
Show answer & explanation
Correct answer: B
This accurately describes the key responsibilities of a moderator. Their primary function is to lead the review, maintain focus, ensure the process is followed, and mediate any conflicts to help the team reach a consensus in a professional and constructive manner.
- Question 3Intermediate
Chapter 6: Test Tools · 6.1.2 Benefits and risks of test automation
A project heavily invested in a test automation framework for regression testing. However, they neglected manual exploratory testing. What is the MOST significant risk of this approach?
Show answer & explanation
Correct answer: D
This is the core risk. Automated tests are excellent at verifying known, expected behavior repeatedly. However, they can only check what they are programmed to check. Exploratory testing leverages human intelligence, curiosity, and domain knowledge to discover defects in unexpected scenarios that were not anticipated in the formal test scripts.
- Question 4Intermediate
Chapter 1: Fundamentals of Testing · Testing Principles
A development team released a new software module that passed 100% of its automated functional tests. However, customer feedback indicates the module is difficult to navigate and does not solve their business problem efficiently. This situation is a clear example of which testing principle?
Show answer & explanation
Correct answer: C
This principle directly addresses the scenario. It states that finding and fixing many defects does not guarantee success if the system built is unusable or does not fulfill the users' needs and expectations. The software may be functionally bug-free but still be the wrong product.
- Question 5Advanced
Chapter 5: Managing the Test Activities · 5.2.3 Risk-based testing
Case Study: HealthFirst Patient Portal
A healthcare provider, HealthFirst, is developing a new patient portal. The portal will allow patients to view their medical records, schedule appointments, and communicate securely with their doctors. The project is subject to strict HIPAA regulations, which mandate the protection of sensitive patient health information (PHI). The target audience includes a wide range of users, many of whom are elderly and not tech-savvy. The system must also be highly responsive, with key pages loading in under two seconds.
The project manager has allocated a limited budget for the testing phase and needs to prioritize efforts to mitigate the most significant risks. Key features include a multi-factor authentication (MFA) login, a calendar for appointment booking with complex scheduling rules, and a secure messaging module. The portal will be accessed via web browsers on desktops and mobile devices.
Given the context of this project, which of the following represents the MOST effective and risk-oriented test strategy?
Show answer & explanation
Correct answer: C
This is the most effective strategy. It directly addresses the highest risks identified in the case study: security (HIPAA), usability (elderly users), and performance (responsiveness). By prioritizing testing efforts based on these risks, the team can use its limited budget to make the biggest impact on quality and compliance, while still validating complex functional areas.
- Question 6Intermediate
Chapter 2: Testing Throughout the Software Development Lifecycle · 2.2.1 Test levels
In a project following the V-model, a series of tests are conducted by business users to confirm that a new government tax reporting system meets their needs and can be used effectively in their daily workflow. What is the primary objective of this test level?
Show answer & explanation
Correct answer: C
This is the primary objective of Acceptance Testing (specifically, User Acceptance Testing or UAT). It is performed by business users to validate that the software meets their needs and is acceptable for deployment. In the V-model, this level corresponds to the initial requirements gathering phase.
- Question 7Advanced
Chapter 5: Managing the Test Activities · 5.3.1 Metrics for testing
After analyzing defect metrics from the last three releases, a test manager observes the following pattern: a high number of defects are being reported against the user interface, but very few are related to database transactions. Furthermore, the majority of the UI defects are classified as 'critical' because they block user workflows. What is the most likely root cause indicated by this data?
Show answer & explanation
Correct answer: B
This is the most plausible root cause. A high number of critical UI defects that block workflows suggests that fundamental design and usability issues are not being caught early. Effective static testing of UI/UX designs and requirements would identify such problems before any code is written, preventing them from becoming expensive defects in the final product.
- Question 8Intermediate
Chapter 4: Test Analysis and Design · 4.2.4 State Transition Testing
A new online banking application requires multi-factor authentication (MFA). A user's login state can be described by the following diagram. Based on this state transition diagram, which of the following represents a valid sequence of events and transitions?
stateDiagram-v2 [*] --> NotLoggedIn NotLoggedIn --> AwaitingMFA: EnterCorrectCredentials AwaitingMFA --> LoggedIn: EnterCorrectMFACode AwaitingMFA --> LockedOut: EnterIncorrectMFACode3Times LoggedIn --> NotLoggedIn: Logout LockedOut --> NotLoggedIn: AdminResetShow answer & explanation
Correct answer: B
This is a valid sequence. The user starts at 'NotLoggedIn', transitions to 'AwaitingMFA' via 'EnterCorrectCredentials', then transitions to 'LoggedIn' via 'EnterCorrectMFACode', and finally transitions back to 'NotLoggedIn' via 'Logout'. Each transition follows a valid path in the diagram.
- Question 9BeginnerSelect 2
Chapter 3: Static Testing · 3.1.2 Value of static testing
What are two key objectives of performing static testing early in the software development lifecycle? (Select TWO)
Show answer & explanation
Correct answers: A, C
This is a primary objective. Static testing, such as reviewing requirements and design documents, can identify defects before a single line of code is written, making them significantly less expensive to correct.
By reviewing documents like requirements, user stories, and design specifications, static testing helps identify ambiguities, omissions, and inconsistencies. This feedback loop leads to higher-quality work products and prevents defects from being introduced in later stages.
- Question 10Beginner
Chapter 2: Testing Throughout the Software Development Lifecycle · 2.2.3 Confirmation and regression testing
A developer investigates a defect report, finds the root cause in the code, and implements a fix. A tester then receives the new build and runs the exact test case that originally failed to ensure the fix has resolved the issue. What is this testing activity specifically called?
Show answer & explanation
Correct answer: C
Confirmation testing (also known as re-testing) is the process of testing that a previously reported defect has been fixed. It involves re-running the test that initially exposed the defect to confirm it now passes. This is exactly what the scenario describes.
Ready for the real thing?
The full ASTQB simulator has every exam-style question, timed mode, and instant scoring.