Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Clipping level






2. Develop hack resilient software






3. Authorization






4. Residual Risk






5. NIST standards related to software security






6. Least common mechanism






7. Counter measures






8. OWASP Code Review Guide






9. DREAD






10. Vulnerability






11. ISO/IEC 27006:2007






12. ISO/IEC 27002:2005






13. Single point failure






14. Accountability






15. Vulnerabilities repositories






16. Security Risk Management Discipline






17. Authentication






18. Challenges in implementing auditing/logging






19. Single Loss Expectancy (SLE)






20. OCTAVE






21. Information Security Models






22. Annual Rate of Occurence (ARO)






23. Total Risk






24. Economy of mechanism






25. Integrity






26. Error and exception management






27. Compartmentalization






28. OWASP Top 10






29. Benefits of coding standards






30. Flaw Hypothesis Method (FHM)






31. Security Standards






32. Phsychological acceptability






33. Security Policies


34. Access Matrix model


35. Implementation challenges






36. Safeguards






37. OWASP testing guide






38. Risk management process






39. ISO/IEC 9216






40. Session Management






41. Security profile of a software






42. Confidentiality






43. Complete mediation






44. Security design principles






45. Technical Controls






46. Popular guides developed by OWASP






47. Non Repudiation






48. Take-Grant Model






49. ISO/IEC 15408






50. OWASP development guide