CSSLP Cert Prep: 6 Secure Lifecycle Management
1h 21mIntermediate2021-01-07
Authors

Jerod Brennen
Security Architect, Advisor, Speaker, Teacher
Course details
Change is a certainty throughout the software development lifecycle (SDLC). To enhance the security state of their organization’s software, information security professionals must create a lifecycle management program that lays out how to apply clear security standards throughout the SDLC. In this course, the sixth installment of the CSSLP Cert Prep series, instructor Jerod Brennen dives into the subject of secure software lifecycle management, helping prepare you for the sixth domain of the Certified Secure Software Lifecycle Professional (CSSLP) exam: Secure Software Lifecycle Management. Jerod discusses how to define your strategy and roadmap, manage security in both adaptive and predictive methodologies, and promote security culture within your organization. He also discusses the importance of generating and maintaining software security documentation, developing security metrics, applying lessons learned to enable continuous improvement, and more.
Skills covered
Software ArchitectureCert PrepSoftware Development
Concepts
0. Introduction
- 01 - Secure software lifecycle management
1. Laying Your Foundation
- 02 - Strategy and roadmap
- 03 - Development methodologies
- 04 - Integrated risk management
- 05 - Promote security culture
2. Setting Expectations
- 06 - Security standards and frameworks
- 07 - Security documentation
- 08 - Hardware and software configuration
- 09 - Ongoing configuration management
3. Improving over Time
- 10 - Decommission software
- 11 - Manage licenses and archives
- 12 - Security metrics
- 13 - Reporting security status
- 14 - Continuous improvement
Conclusion
- 15 - Next steps