/* */

Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. OWASP Top 10






2. ISO /IEC 27000:2009






3. Auditing






4. ISO/IEC 21827:2008






5. Benefits of coding standards






6. ISO/IEC 27005:2008






7. FIPS140-2 (Security requirement for cryptographic modules)






8. Develop hack resilient software






9. Single point failure






10. Accountability






11. Session Management






12. Counter measures






13. After identification step is...






14. Vulnerability






15. Implementation challenges






16. Management Controls






17. DREAD






18. Threat






19. Authentication






20. Security profile of a software






21. Information Security Models






22. ISO/IEC 15408






23. Multifactor authentication






24. Security design principles






25. Exposure factor (EF)






26. Properties of secure software






27. Residual Risk






28. OCTAVE






29. Risk management process






30. Security Standards






31. Availability






32. Take-Grant Model






33. Challenges in implementing auditing/logging






34. Annual Rate of Occurence (ARO)






35. OWASP testing guide






36. ISO/IEC 27001:2005






37. Access Matrix model


38. STRIDE






39. Error and exception management






40. EALs levels






41. Safeguards






42. Phsychological acceptability






43. Compartmentalization






44. Categories of controls






45. NIST standards related to software security






46. Common best practices significant to Sofware Security






47. ISO/IEC 27003






48. FIPS 197 (Advance Cryptographic standards - AES)






49. Security Policies


50. Single Loss Expectancy (SLE)






//