/* */

Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Least privilege






2. Vulnerability






3. After identification step is...






4. Information Security Models






5. Security Controls






6. Session Management






7. Security Risk Management Discipline






8. Operation Controls






9. Security Policies


10. Challenges in implementing auditing/logging






11. Clipping level






12. ISO/IEC 27001:2005






13. ISO/IEC 27005:2008






14. ISO/IEC 15408






15. Categories of controls






16. Safeguards






17. Core Security Concept






18. Properties of secure software






19. Error and exception management






20. Accountability






21. Benefits of coding standards






22. Configurations Parameters Management






23. STRIDE






24. ISO/IEC 21827:2008






25. OCTAVE






26. NIST standards related to software security






27. Examples of Security Standards






28. Popular guides developed by OWASP






29. Technical Controls






30. Develop hack resilient software






31. Risk management process






32. Common best practices significant to Sofware Security






33. Complete mediation






34. Phsychological acceptability






35. Management Controls






36. PCI DSS






37. EALs levels






38. Compartmentalization






39. Exposure factor (EF)






40. Authentication






41. General security concept






42. Security profile of a software






43. Annual Loss Expectancy (ALE)






44. Vulnerabilities repositories






45. ISO/IEC 27003






46. OWASP testing guide






47. FIPS 197 (Advance Cryptographic standards - AES)






48. ISO/IEC 27002:2005






49. Multifactor authentication






50. Economy of mechanism






//