CSSLP is an industry leading secure software development certification that teaches and evaluates best practices for software security. Earning a CSSLP demonstrates the advanced technical skills and knowledge required to design and build security best practices into each phase of the software development lifecycle (SDLC). In this course, we will prepare for the CSSLP exam, as we review secure software concepts, describe the phases of the Software Development Lifecycle (SDLC), and investigate the importance of authentication, authorization, and auditing for software security.
What you need to know to earn the CSSLP.
涵盖的内容
1个视频
显示有关单元内容的信息
1个视频•总计25分钟
The CSSLP certification exam•25分钟
Secure software concepts
第 2 单元•小时 后完成
单元详情
We'll explore core security concepts and principles like confidentiality, integrity, and availability.
涵盖的内容
3个视频1个作业
显示有关单元内容的信息
3个视频•总计26分钟
Overview of secure software concepts•1分钟
Core concepts•15分钟
Security design principles•11分钟
1个作业•总计30分钟
Secure software concepts quiz•30分钟
Secure software lifecycle management
第 3 单元•小时 后完成
单元详情
Learn how to manage security within different software development methodologies while integrating risk management methods.
涵盖的内容
7个视频1个作业
显示有关单元内容的信息
7个视频•总计26分钟
Overview of secure software lifecycle management•2分钟
Security management and software development methodology standards•4分钟
Strategy, roadmap, security documentation, and metrics•4分钟
Decommission applications•3分钟
Security reporting mechanisms•2分钟
Integrated risk management methods•5分钟
Secure operation practices•6分钟
1个作业•总计30分钟
Secure software lifecycle management•30分钟
Secure software requirements
第 4 单元•小时 后完成
单元详情
We will discuss how to define software security requirements, as well as interpreting compliance, data classification, and privacy requirements.
涵盖的内容
9个视频1个作业
显示有关单元内容的信息
9个视频•总计38分钟
Overview of secure software requirements•4分钟
Software security requirements•2分钟
Compliance requirements•5分钟
Data classification requirements•9分钟
Privacy requirements•9分钟
Data access provisioning•3分钟
Misuse and abuse cases•2分钟
Security requirement traceability matrix•2分钟
Third-party vendor security requirements•3分钟
1个作业•总计30分钟
Secure software assignments quiz•30分钟
Secure software architecture and design
第 5 单元•小时 后完成
单元详情
In this module, Dave covers security architecture, performing threat modeling, and assessing architectural risks.
涵盖的内容
7个视频1个作业
显示有关单元内容的信息
7个视频•总计66分钟
Overview of secure software architecture and design•2分钟
Security architecture•23分钟
Secure interface design•3分钟
Evaluate and select reusable technologies•20分钟
Threat modeling•12分钟
Model (non-functional) security properties and constraints•2分钟
Secure operations architecture•4分钟
1个作业•总计30分钟
Secure software architecture and design•30分钟
Secure software implementation
第 6 单元•小时 后完成
单元详情
In this module, we cover how to adhere to secure coding practices, analyze code for security risks, and address identified risks.
涵盖的内容
6个视频1个作业
显示有关单元内容的信息
6个视频•总计53分钟
Overview of secure software implementation•6分钟
Relevant secure coding practices•31分钟
Analyze code for security risks•6分钟
How to implement security controls and address identified security risks•2分钟
Evaluate and integrate components•4分钟
Apply security during the build process•4分钟
1个作业•总计30分钟
Secure software implementation•30分钟
Secure software testing
第 7 单元•小时 后完成
单元详情
We will tackle how to develop security testing strategies, create test cases, and analyze the implications of test results in this module.
涵盖的内容
7个视频1个作业
显示有关单元内容的信息
7个视频•总计29分钟
Overview of secure software testing•1分钟
Develop security testing strategy and plan•7分钟
Develop security test cases•13分钟
Documentation, undocumented functionality, and security implications of test results•3分钟
Classify and track security errors•2分钟
Secure test data•2分钟
Perform verification and validation testing•2分钟
1个作业•总计30分钟
Secure software testing•30分钟
Secure software deployment, operations and maintenance
第 8 单元•小时 后完成
单元详情
Learn to perform operational risk analysis, secure configuration, and manage security across the software lifecycle.
涵盖的内容
14个视频1个作业
显示有关单元内容的信息
14个视频•总计44分钟
Overview of secure software deployment, operations and maintenance•1分钟
Perform operational risk analysis•3分钟
Secure configuration and version control•3分钟
Release software securely•2分钟
Store and manage security data•5分钟
Ensure secure installation•4分钟
Obtain security approval to operate•1分钟
Perform information security continuous monitoring•7分钟
Execute the incident response plan•3分钟
Perform patch management•1分钟
Vulnerability management•2分钟
Incorporate runtime protection•2分钟
Support continuity of operations•5分钟
Service level objectives and service level agreements (SLA)•3分钟
1个作业•总计30分钟
Secure software deployment, operations and maintenance•30分钟
Secure software supply chain
第 9 单元•小时 后完成
单元详情
In this module, we'll discuss how to implement software supply chain risk management and analyze the security of third-party software.
涵盖的内容
6个视频1个作业
显示有关单元内容的信息
6个视频•总计14分钟
Overview of secure software supply chain•3分钟
Software supply chain risk management•3分钟
Analyze security of third-party software•1分钟
Verify pedigree and provenance•2分钟
Ensure and verify supplier security requirements in the acquisition process•2分钟
Infosec believes knowledge is power when fighting cybercrime. We help IT and security professionals advance their careers with skills development and certifications while empowering all employees with security awareness and privacy training to stay cyber-safe at work and home. Learn more at infosecinstitute.com.
When will I have access to the lectures and assignments?
To access the course materials, assignments and to earn a Certificate, you will need to purchase the Certificate experience when you enroll in a course. You can try a Free Trial instead, or apply for Financial Aid. The course may offer 'Full Course, No Certificate' instead. This option lets you see all course materials, submit required assessments, and get a final grade. This also means that you will not be able to purchase a Certificate experience.
What will I get if I purchase the Certificate?
When you purchase a Certificate you get access to all course materials, including graded assignments. Upon completing the course, your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile.
Is financial aid available?
Yes. In select learning programs, you can apply for financial aid or a scholarship if you can’t afford the enrollment fee. If fin aid or scholarship is available for your learning program selection, you’ll find a link to apply on the description page.