Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. PCI DSS






2. Management Controls






3. Threat






4. ISO/IEC 15408






5. ISO/IEC 21827:2008






6. Vulnerabilities repositories






7. EALs levels






8. Benefits of coding standards






9. Annual Rate of Occurence (ARO)






10. Vulnerability






11. Availability






12. Multifactor authentication






13. Access Matrix model


14. ISO/IEC 27003






15. Information Security Models






16. Single Loss Expectancy (SLE)






17. Authorization






18. ISO/IEC 9216






19. Take-Grant Model






20. Residual Risk






21. Core Security Concept






22. Security Standards






23. Counter measures






24. Compartmentalization






25. Flaw Hypothesis Method (FHM)






26. General security concept






27. Configurations Parameters Management






28. OWASP development guide






29. Security Risk Management Discipline






30. Authentication






31. Security Controls






32. ISO/IEC 27001:2005






33. DREAD






34. Holistic Security in software






35. Operation Controls






36. Accountability






37. ISO /IEC 27000:2009






38. Risk management process






39. Properties of secure software






40. Technical Controls






41. Common best practices significant to Sofware Security






42. Open design






43. Phsychological acceptability






44. OCTAVE






45. OWASP Top 10






46. Safeguards






47. FIPS140-2 (Security requirement for cryptographic modules)






48. Session Management






49. STRIDE






50. Least common mechanism