Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. DREAD






2. Challenges in implementing auditing/logging






3. Annual Loss Expectancy (ALE)






4. Availability






5. Auditing






6. Popular guides developed by OWASP






7. Holistic Security in software






8. Exposure factor (EF)






9. OWASP Code Review Guide






10. Accountability






11. Security Policies


12. Categories of controls






13. Error and exception management






14. ISO/IEC 27002:2005






15. Residual Risk






16. STRIDE






17. OWASP Top 10






18. Least common mechanism






19. EALs levels






20. Integrity






21. Economy of mechanism






22. ISO/IEC 27005:2008






23. Complete mediation






24. Software security risk management methodologies






25. FIPS140-2 (Security requirement for cryptographic modules)






26. Information Security Models






27. Compartmentalization






28. Configurations Parameters Management






29. Security Risk Management Discipline






30. Single Loss Expectancy (SLE)






31. ISO/IEC 15408






32. Total Risk






33. Core Security Concept






34. Examples of Security Standards






35. Authentication






36. Authorization






37. Single point failure






38. ISO /IEC 27000:2009






39. General security concept






40. Vulnerability






41. Common best practices significant to Sofware Security






42. Flaw Hypothesis Method (FHM)






43. Session Management






44. Security Standards






45. ISO/IEC 21827:2008






46. Security Controls






47. Security design principles






48. Risk management process






49. Technical Controls






50. Phsychological acceptability