Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Confidentiality






2. Integrity






3. Risk management process






4. Availability






5. Access Matrix model

Warning: Invalid argument supplied for foreach() in /var/www/html/basicversity.com/show_quiz.php on line 183


6. OWASP development guide






7. Authentication






8. Complete mediation






9. ISO/IEC 27006:2007






10. Common best practices significant to Sofware Security






11. Open design






12. Single point failure






13. Error and exception management






14. NIST standards related to software security






15. Flaw Hypothesis Method (FHM)






16. Security profile of a software






17. Operation Controls






18. PCI DSS






19. Challenges in implementing auditing/logging






20. Technical Controls






21. General security concept






22. Compartmentalization






23. Total Risk






24. Security Controls






25. Annual Loss Expectancy (ALE)






26. ISO /IEC 27000:2009






27. Core Security Concept






28. Examples of Security Standards






29. Software security risk management methodologies






30. ISO/IEC 15408






31. Authorization






32. Management Controls






33. ISO/IEC 27005:2008






34. Auditing






35. Implementation challenges






36. Least common mechanism






37. Holistic Security in software






38. Session Management






39. Single Loss Expectancy (SLE)






40. Exposure factor (EF)






41. EALs levels






42. ISO/IEC 21827:2008






43. Annual Rate of Occurence (ARO)






44. After identification step is...






45. FIPS 201






46. ISO/IEC 27003






47. OWASP Top 10






48. FIPS 197 (Advance Cryptographic standards - AES)






49. ISO/IEC 9216






50. Benefits of coding standards