Test your basic knowledge |

CSSLP: Certified Secure Software Lifecycle Professional

Instructions:
  • Answer 50 questions in 15 minutes.
  • If you are not ready to take this test, you can study here.
  • Match each statement with the correct term.
  • Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.

This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Vulnerability






2. OWASP testing guide






3. Benefits of coding standards






4. ISO/IEC 9216






5. Risk management process






6. Integrity






7. Operation Controls






8. Authorization






9. Threat






10. Core Security Concept






11. OCTAVE






12. Least privilege






13. Counter measures






14. Single Loss Expectancy (SLE)






15. ISO /IEC 27000:2009






16. Least common mechanism






17. Authentication






18. Develop hack resilient software






19. Accountability






20. FIPS 197 (Advance Cryptographic standards - AES)






21. Examples of Security Standards






22. Annual Rate of Occurence (ARO)






23. Security design principles






24. OWASP Top 10






25. Management Controls






26. OWASP development guide






27. ISO/IEC 27003






28. Auditing






29. OWASP Code Review Guide






30. Phsychological acceptability






31. Security Risk Management Discipline






32. STRIDE






33. Flaw Hypothesis Method (FHM)






34. After identification step is...






35. ISO/IEC 27001:2005






36. Single point failure






37. Software security risk management methodologies






38. Error and exception management






39. Access Matrix model


40. General security concept






41. Implementation challenges






42. FIPS140-2 (Security requirement for cryptographic modules)






43. Popular guides developed by OWASP






44. Residual Risk






45. EALs levels






46. Security profile of a software






47. Information Security Models






48. PCI DSS






49. ISO/IEC 27005:2008






50. Security Controls