Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Core Security Concept






2. Availability






3. Clipping level






4. Security Risk Management Discipline






5. Implementation challenges






6. Multifactor authentication






7. Software security risk management methodologies






8. Take-Grant Model






9. After identification step is...






10. Annual Loss Expectancy (ALE)






11. Develop hack resilient software






12. OWASP Top 10






13. Authentication






14. DREAD






15. Single Loss Expectancy (SLE)






16. Vulnerability






17. ISO/IEC 27001:2005






18. Residual Risk






19. ISO/IEC 21827:2008






20. General security concept






21. Risk management process






22. Vulnerabilities repositories






23. Management Controls






24. FIPS 197 (Advance Cryptographic standards - AES)






25. Security Controls






26. Annual Rate of Occurence (ARO)






27. Challenges in implementing auditing/logging






28. Single point failure






29. OWASP development guide






30. Examples of Security Standards






31. Security Standards






32. Session Management






33. Least common mechanism






34. ISO /IEC 27000:2009






35. Least privilege






36. Flaw Hypothesis Method (FHM)






37. OCTAVE






38. ISO/IEC 27003






39. Security profile of a software






40. Security design principles






41. STRIDE






42. ISO/IEC 15408






43. Auditing






44. Phsychological acceptability






45. Common best practices significant to Sofware Security






46. ISO/IEC 9216






47. Safeguards






48. Security Policies


49. ISO/IEC 27006:2007






50. PCI DSS