Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Security Standards






2. OCTAVE






3. General security concept






4. Compartmentalization






5. Vulnerabilities repositories






6. FIPS 201






7. Operation Controls






8. OWASP Top 10






9. Take-Grant Model






10. ISO/IEC 21827:2008






11. Security profile of a software






12. Implementation challenges






13. ISO/IEC 27001:2005






14. ISO/IEC 27003






15. Phsychological acceptability






16. Residual Risk






17. Safeguards






18. EALs levels






19. ISO/IEC 27005:2008






20. Least privilege






21. Clipping level






22. STRIDE






23. Accountability






24. NIST standards related to software security






25. Annual Rate of Occurence (ARO)






26. FIPS140-2 (Security requirement for cryptographic modules)






27. After identification step is...






28. Properties of secure software






29. Authentication






30. Availability






31. Risk management process






32. Security design principles






33. Annual Loss Expectancy (ALE)






34. Software security risk management methodologies






35. Single point failure






36. Non Repudiation






37. Security Risk Management Discipline






38. Holistic Security in software






39. Common best practices significant to Sofware Security






40. ISO /IEC 27000:2009






41. Technical Controls






42. OWASP Code Review Guide






43. Vulnerability






44. Authorization






45. Configurations Parameters Management






46. Multifactor authentication






47. Least common mechanism






48. ISO/IEC 27006:2007






49. Develop hack resilient software






50. ISO/IEC 27002:2005