Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Benefits of coding standards






2. STRIDE






3. Security profile of a software






4. PCI DSS






5. OWASP Top 10






6. Multifactor authentication






7. Vulnerability






8. ISO/IEC 9216






9. Develop hack resilient software






10. Session Management






11. Security Risk Management Discipline






12. Compartmentalization






13. Phsychological acceptability






14. Single point failure






15. Software security risk management methodologies






16. OWASP development guide






17. NIST standards related to software security






18. Complete mediation






19. After identification step is...






20. FIPS140-2 (Security requirement for cryptographic modules)






21. Configurations Parameters Management






22. DREAD






23. Risk management process






24. Take-Grant Model






25. Counter measures






26. Least privilege






27. Access Matrix model


28. Annual Rate of Occurence (ARO)






29. OWASP testing guide






30. Flaw Hypothesis Method (FHM)






31. ISO/IEC 15408






32. Accountability






33. Single Loss Expectancy (SLE)






34. Vulnerabilities repositories






35. Holistic Security in software






36. Security Policies


37. General security concept






38. ISO/IEC 27001:2005






39. Implementation challenges






40. Annual Loss Expectancy (ALE)






41. Auditing






42. FIPS 197 (Advance Cryptographic standards - AES)






43. Least common mechanism






44. Residual Risk






45. Authorization






46. Confidentiality






47. Operation Controls






48. Exposure factor (EF)






49. Categories of controls






50. Security Controls