/* */

Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. General security concept






2. Security design principles






3. ISO/IEC 27001:2005






4. Implementation challenges






5. ISO/IEC 9216






6. Properties of secure software






7. Take-Grant Model






8. ISO/IEC 21827:2008






9. Auditing






10. Annual Loss Expectancy (ALE)






11. FIPS 197 (Advance Cryptographic standards - AES)






12. Integrity






13. Information Security Models






14. Complete mediation






15. Residual Risk






16. Compartmentalization






17. Non Repudiation






18. Operation Controls






19. Benefits of coding standards






20. Threat






21. Counter measures






22. Total Risk






23. FIPS140-2 (Security requirement for cryptographic modules)






24. Core Security Concept






25. Access Matrix model


26. ISO/IEC 27003






27. Single point failure






28. Economy of mechanism






29. After identification step is...






30. Develop hack resilient software






31. Security Policies


32. ISO/IEC 27006:2007






33. Confidentiality






34. Least common mechanism






35. OWASP Top 10






36. Annual Rate of Occurence (ARO)






37. Security Risk Management Discipline






38. Safeguards






39. Authorization






40. Configurations Parameters Management






41. ISO/IEC 27005:2008






42. OWASP development guide






43. OCTAVE






44. Vulnerability






45. Software security risk management methodologies






46. Availability






47. Risk management process






48. ISO /IEC 27000:2009






49. Technical Controls






50. Categories of controls






//