InfosecTrain

(ISC)² ® CSSLP Domain 4: Secure Software Implementation


Listen Later

Domain 4: Secure Software Implementation (14%)

The fourth domain of the CSSLP certification exam is a secure software implementation, and the domain comprises 14% exam weightage. This domain covers the most significant security challenges and concerns for developers to consider while writing code. This domain explains declarative vs. mandatory (programmatic) security, Sanitization of output (encoding, obfuscation), Auditing and logging in a secure manner, Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST), Compiler switches, and address compiler warnings.

The CSSLP certification exam’s fourth domain covers the following subtopics:

  • Adhere to relevant secure coding practices
  • Analyze code for security risks
  • Implement security codes
  • Address security risks
  • Securely reuse third-party code or libraries
  • Securely integrate components
  • Apply security during the build process
  • (ISC)² ® CSSLP Domain 4: Secure Software Implementation

    ...more
    View all episodesView all episodes
    Download on the App Store

    InfosecTrainBy InfosecTrain

    • 3.7
    • 3.7
    • 3.7
    • 3.7
    • 3.7

    3.7

    3 ratings


    More shows like InfosecTrain

    View all
    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

    649 Listeners

    CyberWire Daily by N2K Networks

    CyberWire Daily

    1,033 Listeners

    Cybersecurity Today by Jim Love

    Cybersecurity Today

    178 Listeners

    Certified: The CompTIA Security+ Audio Course by Dr. Jason Edwards

    Certified: The CompTIA Security+ Audio Course

    3 Listeners