Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Examples of Security Standards






2. Complete mediation






3. ISO/IEC 15408






4. Safeguards






5. Operation Controls






6. Core Security Concept






7. Availability






8. ISO/IEC 27003






9. Threat






10. Vulnerability






11. Annual Loss Expectancy (ALE)






12. Integrity






13. Security Policies


14. Security profile of a software






15. Risk management process






16. Economy of mechanism






17. ISO/IEC 9216






18. OWASP Code Review Guide






19. FIPS 197 (Advance Cryptographic standards - AES)






20. ISO/IEC 21827:2008






21. Popular guides developed by OWASP






22. OWASP testing guide






23. Challenges in implementing auditing/logging






24. EALs levels






25. Clipping level






26. Common best practices significant to Sofware Security






27. OWASP Top 10






28. After identification step is...






29. Least privilege






30. Multifactor authentication






31. Security design principles






32. STRIDE






33. FIPS 201






34. OWASP development guide






35. Authentication






36. Properties of secure software






37. Flaw Hypothesis Method (FHM)






38. Security Risk Management Discipline






39. Security Standards






40. Error and exception management






41. Residual Risk






42. Auditing






43. Open design






44. Non Repudiation






45. Benefits of coding standards






46. FIPS140-2 (Security requirement for cryptographic modules)






47. Management Controls






48. Security Controls






49. Session Management






50. OCTAVE