Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Access Matrix model


2. Integrity






3. DREAD






4. OWASP Code Review Guide






5. Authentication






6. Single point failure






7. STRIDE






8. Examples of Security Standards






9. Multifactor authentication






10. Least privilege






11. Clipping level






12. ISO/IEC 27001:2005






13. ISO/IEC 27003






14. Counter measures






15. Risk management process






16. Confidentiality






17. Safeguards






18. Develop hack resilient software






19. Common best practices significant to Sofware Security






20. FIPS 197 (Advance Cryptographic standards - AES)






21. After identification step is...






22. Single Loss Expectancy (SLE)






23. Core Security Concept






24. Popular guides developed by OWASP






25. ISO/IEC 27002:2005






26. ISO/IEC 21827:2008






27. Least common mechanism






28. Complete mediation






29. Information Security Models






30. Benefits of coding standards






31. Security profile of a software






32. ISO /IEC 27000:2009






33. Threat






34. Total Risk






35. ISO/IEC 27006:2007






36. Residual Risk






37. Implementation challenges






38. Configurations Parameters Management






39. Properties of secure software






40. PCI DSS






41. ISO/IEC 9216






42. Error and exception management






43. FIPS 201






44. OWASP testing guide






45. Software security risk management methodologies






46. Compartmentalization






47. NIST standards related to software security






48. Session Management






49. Availability






50. Economy of mechanism