Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Least privilege






2. ISO /IEC 27000:2009






3. Software security risk management methodologies






4. Economy of mechanism






5. FIPS 201






6. NIST standards related to software security






7. Security Risk Management Discipline






8. Categories of controls






9. Multifactor authentication






10. Access Matrix model


11. Security design principles






12. Session Management






13. Integrity






14. Single Loss Expectancy (SLE)






15. Risk management process






16. Flaw Hypothesis Method (FHM)






17. Core Security Concept






18. Security profile of a software






19. STRIDE






20. Implementation challenges






21. Auditing






22. Total Risk






23. After identification step is...






24. OWASP testing guide






25. Challenges in implementing auditing/logging






26. Open design






27. Counter measures






28. FIPS140-2 (Security requirement for cryptographic modules)






29. Confidentiality






30. Vulnerability






31. ISO/IEC 27005:2008






32. Vulnerabilities repositories






33. PCI DSS






34. Residual Risk






35. Annual Rate of Occurence (ARO)






36. Error and exception management






37. Authentication






38. Take-Grant Model






39. Availability






40. Configurations Parameters Management






41. OWASP development guide






42. Authorization






43. Management Controls






44. Popular guides developed by OWASP






45. OWASP Code Review Guide






46. Clipping level






47. Least common mechanism






48. ISO/IEC 9216






49. ISO/IEC 21827:2008






50. Benefits of coding standards