Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Single point failure






2. ISO/IEC 27005:2008






3. Software security risk management methodologies






4. OWASP Top 10






5. ISO/IEC 27002:2005






6. Security profile of a software






7. Least privilege






8. Benefits of coding standards






9. General security concept






10. Non Repudiation






11. Access Matrix model


12. Categories of controls






13. Compartmentalization






14. Single Loss Expectancy (SLE)






15. Properties of secure software






16. After identification step is...






17. Core Security Concept






18. ISO/IEC 21827:2008






19. Availability






20. Security Risk Management Discipline






21. Challenges in implementing auditing/logging






22. Examples of Security Standards






23. STRIDE






24. Security Policies


25. Operation Controls






26. Holistic Security in software






27. Total Risk






28. Multifactor authentication






29. Exposure factor (EF)






30. Integrity






31. ISO/IEC 27001:2005






32. Vulnerabilities repositories






33. FIPS 201






34. Open design






35. Management Controls






36. Develop hack resilient software






37. Security Standards






38. Economy of mechanism






39. Phsychological acceptability






40. Security design principles






41. ISO/IEC 27003






42. FIPS140-2 (Security requirement for cryptographic modules)






43. Accountability






44. Security Controls






45. ISO/IEC 9216






46. OWASP development guide






47. Technical Controls






48. Common best practices significant to Sofware Security






49. OWASP Code Review Guide






50. Residual Risk