Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Authentication






2. Categories of controls






3. Non Repudiation






4. Single Loss Expectancy (SLE)






5. Counter measures






6. Exposure factor (EF)






7. Access Matrix model


8. FIPS140-2 (Security requirement for cryptographic modules)






9. Economy of mechanism






10. ISO /IEC 27000:2009






11. Implementation challenges






12. Session Management






13. Software security risk management methodologies






14. Configurations Parameters Management






15. Clipping level






16. Total Risk






17. Open design






18. OCTAVE






19. Auditing






20. Popular guides developed by OWASP






21. Safeguards






22. ISO/IEC 27005:2008






23. Complete mediation






24. Error and exception management






25. Least common mechanism






26. Security Policies


27. Compartmentalization






28. Annual Loss Expectancy (ALE)






29. After identification step is...






30. Examples of Security Standards






31. ISO/IEC 21827:2008






32. Operation Controls






33. Challenges in implementing auditing/logging






34. Information Security Models






35. OWASP development guide






36. Holistic Security in software






37. Security Standards






38. Annual Rate of Occurence (ARO)






39. OWASP Code Review Guide






40. ISO/IEC 27006:2007






41. Threat






42. NIST standards related to software security






43. General security concept






44. Risk management process






45. Technical Controls






46. OWASP Top 10






47. Security Risk Management Discipline






48. ISO/IEC 27003






49. ISO/IEC 27001:2005






50. Benefits of coding standards