The CSSLP Prep Guide: Mastering the Certified Secure Software Lifecycle Professional | by Ronald L. Krutz and Alexander J. Fry | 2009 | ISBN: 9780470461907. Software Engineering Books. Security Design Principles. Software Development Methodologies. Standards for Software Quality Assurance
The CSSLP Prep Guide: Mastering the Certified Secure Software Lifecycle Professional
by Ronald L. Krutz and Alexander J. Fry
2009 (672 pages)
ISBN:9780470461907
Written by experts in computer systems and security, this guide covers vital topics in the area of software security, conveys the key concepts and principles that the CSSLP embodies, and imparts beneficial insight for taking the Certification exam.
Get this Book by clicking below:
![]() |
The CSSLP Prep Guide—Mastering the Certified Secure Software Lifecycle Professional
Introduction
CSSLP Domains
Requirements
Chapter 1 – Secure Software Concepts
Overview
Confidentiality, Integrity, and Availability
Authentication, Authorization, Auditing, and Accountability
Security Design Principles
Risk Management
Regulations, Privacy, and Compliance
Software Architecture
Software Development Methodologies
Intellectual Property and Privacy Legal Issues
Standards and Guidelines
Information Security Models
Trusted Computing
Acquisition Assurance Issues
Summary
Assessment Questions
Chapter 2 – Secure Software Requirements
Overview
Approaches to Software Requirements Engineering
Security Policy Decomposition
Identification of Data and Gathering of Threat Information
Summary
Assessment Questions
Chapter 3 – Secure Software Design
Overview
Design Processes
Design Considerations
Architecture
Technologies
Design and Architecture Technical Review
Summary
Assessment Questions
Chapter 4 – Secure Software Implementation/Coding
Declarative versus Programmatic Security
Common Software Vulnerabilities and Countermeasures
Defensive Coding Practices
Exception Handling
Configuration Management
Build Environment
Code/Peer Review
Code Analysis
Anti-tampering Techniques
Interface Coding
Summary
Assessment Questions
Chapter 5 – Secure Software Testing
Testing for Security Quality Assurance
Test Types
Testing for Failure
Cryptographic Validation
Impact Assessment and Corrective Action
Standards for Software Quality Assurance
Regression Testing
Summary
Assessment Questions
Chapter 6 – Software Acceptance
Pre-release or Pre-deployment Activities
Post-release Activities
Summary
Assessment Questions
Chapter 7 – Software Deployment, Operations, and Maintenance
Installation and Deployment
Operations and Maintenance
Monitoring and Auditing
End-O-Life Policies
Summary
Assessment Questions
Appendix A – Answers to Assessment Questions
Chapter 1
Chapter 2
Chapter 3
Chapter 4
Chapter 5
Chapter 6
Chapter 7
Appendix B – Glossary of Terms and Acronyms
For 1000+ more Computer Books & Software Engineering Books, click below:



Related posts:
- Software Engineering for Modern Web Applications: Methodologies and Technologies | by Daniel M. Brandon (ed) | ISBN: 9781599044927. WEB DEVELOPMENT BEST PRACTICES. Data Integration for Web-Enabled Information Systems. Web Application Architectures. Resources on Web-Centric Computing.
- Applied Software Measurement: Global Analysis of Productivity and Quality, Third Edition | by Capers Jones | ISBN: 9780071502443. Software Measurement Methodologies and Tools. Software Measurement System. Software Metrics. Software Productivity and Quality
- Cyber Security and Global Information Assurance: Threat Analysis and Response Solutions | by Kenneth J. Knapp (ed) | 2009 | ISBN: 9781605663265. Insider Threat Prevention, Detection and Mitigation. Information Security Management Standards. Approach to Managing Identity Fraud. Emergency Response Planning
- Principles of Software Development Leadership: Applying Project Management Principles to Agile Software Development | by Ken Whitaker | 2010 | ISBN: 9781584505860. 7 Deadly Habits of Ineffective Software Managers. Project Procurement Best Practices. Agile Software Development Methodology
- Agile Technologies in Open Source Development | by Barbara Russo, Marco Scotto, Alberto Sillitti and Giancarlo Succi | 2010 | ISBN: 9781599046815. Open Source Computing Books. OPEN SOURCE SOFTWARE DEVELOPMENT. Agile Software Development. Open Source Tools. Open Source Assessment Methodologies
- Computer and Information Security Handbook | by John R. Vacca (ed) | 2009 | ISBN: 9780123743541. System and Network Security. TEN STEPS TO BUILDING A SECURE ORGANIZATION. Unix and Linux Security. Internet Security. Information Technology Security Management. Security Management Systems. Computer Forensics
- Handbook of Research on Information Security and Assurance | by Jatinder N. D. Gupta and Sushil K. Sharma (eds) | 2009 | ISBN: 9781599048550. E-Commerce Security Risks and Countermeasures. Information Security Management Research. Effective Security Policies and Procedures.
- Schneier on Security | by Bruce Schneier | ISBN: 9780470395356. Information Security Books. The Architecture of Security. The Risks of Cyberterrorism. Identity-Theft Disclosure Laws. The Security of RFID Passports. Cybercrime and Cyberwar. Software Vulnerabilities
- Wastewater Engineering Books. Practical Wastewater Treatment | by David L. Russell | 2006 | ISBN: 9780471780441. WATER QUALITY REGULATIONS. DRINKING WATER QUALITY STANDARDS. Reverse Osmosis. wastewater treatment plant design. BIOLOGICAL TREATMENT SYSTEMS
- The IT Regulatory and Standards Compliance Handbook: How to Survive Information Systems Audit and Assessments | by Craig S. Wright | ISBN: 9781597492669. IT Compliance Guideline. Information Systems Audit Program. Developing IT Security Policy. Vulnerability Assessment Tools. Information Systems Legislation
- Safety and Security Review for the Process Industries: Application of HAZOP, PHA and What-If Reviews, 2nd Edition | by Dennis P. Nolan | ISBN: 9780815515463. Qualitative Safety Reviews. Security Vulnerability Analysis (SVA). Process Hazard Analysis Reviews. Quality Assurance Audit Checklist.
- C++ Programming for the Absolute Beginner, Second Edition | by Mark Lee | 2009 | ISBN: 9781598638752. How To Design Software using Object-Oriented Programming. The Software Development Cycle. Software Design Best Practices. Programming On Mac Os X. Programming On Linux.
- Systems Engineering Books. Software & Systems Requirements Engineering: In Practice | by Brian Berenbach, Daniel J. Paulish, Juergen Kazmeier and Arnold Rudorfer | 2009 | ISBN: 9780071605472. Key Success Factors in Requirements Engineering. Model-Driven Requirements Engineering (MDRE)
- Computer Security Handbook, Fifth Edition | by Seymour Bosworth, M.E. Kabay and Eric Whyne (eds) | 2009 | ISBN: 9780471716525. Computer Books. IT EBooks. Information System Security Books.
- Multimedia Transcoding in Mobile and Wireless Networks | by Ashraf M. A. Ahmad and Ismail Khalil Ibrahim (eds) | 2009 | ISBN: 9781599049847. Mobile Computing Books. Quality of Experience in Mobile TV. Secure Multimedia Transcoding for Scalable Video Streams. Wireless Collaborative Virtual Environments
- RFID Books. RFID Design Principles | by Harvey Lehpamer | 2008 | ISBN: 9781596931947. Microwave Library. Radio Frequency Identification. Short-Range Communications Systems. RFID Security and Privacy
- The Engineering Design of Systems: Models and Methods, Second Edition | by Dennis M. Buede | 2009 | ISBN: 9780470164020. Systems Engineering and Management. Systems Engineering Design Process. SYSTEMS ENGINEERING TOOL. Engineering Design and Integration.
- Computer Software Development Books. Game Programming Books. iPhone Cool Projects | by Gary Bennett et al. | 2009 | ISBN: 9781430223573. Planning a Simple Collaborative Phone Game. Multitouch Interface Design and Implementation
- Manager’s Guide to Operations Management | by John Kamauff | 2010 | ISBN: 9780071627993. How to Improve Production Processes. Product Design and Process Development. Six Sigma for Quality Improvement. Lean Production, Lean Thinking, Lean Principles. Sourcing, Procurement, Logistics, and Outsourcing.
- Security in RFID and Sensor Networks | by Yan Zhang and Paris Kitsos (eds) | 2009 | ISBN: 9781420068399. Multi-Tag RFID Systems. How to Attack RFID Systems. RFID Relay Attacks Implementation. Designing Secure Wireless Embedded Systems. Security Schemes Against Jamming in Wireless Sensor Networks
- Safety Answer Book | by J.J. Keller & Associates, Inc. | 2009 | ISBN: 9781877798467. Health and Safety Books. Safety Engineering Books. Occupational Safety and Health Administration (OSHA). Electrical Design Safety Standards. Environmental Management Systems
- Innovation, Product Development and Commercialization: Case Studies and Key Practices for Market Leadership | by Dariush Rafinejad | ISBN: 971932159707. Best Practices for Product Development Managers. Product Development Process. SOFTWARE PRODUCT DEVELOPMENT.
- Behavioral Modeling for Embedded Systems and Technologies: Applications for Design and Implementation | by Luís Gomes and João M. Fernandes | 2010 | ISBN: 9781605667508. Embedded Systems Design. Industrial Embedded Control Systems. Distributed Real-Time Embedded Systems. Engineering Embedded Software
- Visual Design Fundamentals: A Digital Approach, Third Edition | by Alan Hashimoto and Mike Clayton | 2009 | ISBN: 9781584505815. Computer Science Books. Principles of Good Design.
- Computer Certifications Study Guide. ExamWise for CompTIA 2009 Security+ Certification Exams SY0-201 and BR0-001 | by David Failor | 2009 | ISBN: 9781590952139. Computing Infrastructure Security. Communication and Wireless Security. IT Vulnerabilities, Threats, and Attacks.
- Manufacturing Execution Systems: Optimal Design, Planning, and Deployment | by Heiko Meyer, Franz Fuchs and Klaus Thiel | 2009 | ISBN: 9780071623834. Production Management Systems. Product Lifecycle Management. Production Flow-Oriented Design
- Unity Game Development Essentials: Build Fully Functional, Professional 3D Games with Realistic Environments, Sound, Dynamic Effects, and More! | by Will Goldstone | 2009 | ISBN: 9781847198181. Game Development Books. 3D Game Design. FPSWalker Script
- Digital Signal Processing: Fundamentals and Applications | by Li Tan | ISBN: 9780123740908. Electrical Engineering Books. DSP Applications. Digital Filter Design. Hardware and Software for Digital Signal Processors. Adaptive Filters
- Security Manager’s Guide to Disasters: Managing Through Emergencies, Violence, and Other Workplace Threats | by Anthony D. Manley | 2009 | ISBN: 9781439809068. Disaster Management Books. Security and Safety Management. The Emergency Procedure Plan. Criminal and Civil Litigation
- Power Quality in Power Systems and Electrical Machines | by Ewald Fuchs and Mohammad Masoum | ISBN: 9780123695369. Power Engineering Books. POWER QUALITY IMPROVEMENT TECHNIQUES. Transformers and Induction Machines. Unified Power Quality Conditioner (UPQC).
- Service Science for Socio-Economical and Information Systems Advancement: Holistic Methodologies | by Adamantios Koumpis (ed) | 2010 | ISBN: 9781605666839. Information Systems Books. Computer Science Books. THE SERVICE ANALYSIS MODEL (SAM). SERVICE DEVELOPMENT PROCESS
- Principles of Naval Architecture: Stability and Strength, Volume 1, Second Revision | by Edward V. Lewis (ed) | ISBN: 9780939773008. Naval Engineering Books. Ship Engineering Books. Marine Engineering Books. Ship Geometry.
- Microwave Transmission Networks: Planning, Design, and Deployment | by Harvey Lehpamer | ISBN: 9780071432498. Microwave Communications Books. Microwave Systems Engineering. Microwave Design Tools. The Microwave Network Design and Planning Process.
- 400+ New Computer EBooks – Software Engineering, Programming Language, Project Management, IT Research Resources
- Data Quality and Record Linkage Techniques | by Thomas N. Herzog, Fritz J. Scheuren and William E. Winkler | ISBN: 9780387695020. Specialized Data Quality Tools and Techniques. Data Analysis Techniques. Specialized Tools for Database Improvement. Checklist for Evaluating Record Linkage Software
- Practical Insight into CMMI, Second Edition | by Tim Kasse | ISBN: 9781596932753. Quality Management Books. Professional Education and Training. Download Adobe E-Book.
- The Executive MBA in Information Security | by John J. Trinckes, Jr. | 2010 | ISBN: 9781439810071. Information Security Management. IT Audit and Compliance. Effective Information Security Program. Administrative Controls. Technical Controls. Application Controls. Perimeter Controls
- The Definitive Guide to Magento: A Comprehensive Look at Magento | by Adam McCombs and Robert Banh | 2009 | ISBN: 9781430272298. Open Source Software. Advanced Magento Development. Installing and Configuring Magento. Magento Tips and Tricks
- Manufacturing Execution System: MES | by Jürgen Kletti (ed) | ISBN: 9783540497431. Manufacturing Engineering Books. SAP’s Adaptive Manufacturing Initiative. Building an MES System. Software Architecture of an MES System. Integrated Production Management with MES
- Embedded Technology Books. Intelligent Sensor Design Using the Microchip dsPIC | by Creed Huddleston | 2007 | ISBN: 9780750677554. Embedded Control Engineering. Temperature Sensors. Pressure and Load Sensors. Flow Sensors. Intelligent Sensors Principles.
Comments
3 Comments on The CSSLP Prep Guide: Mastering the Certified Secure Software Lifecycle Professional | by Ronald L. Krutz and Alexander J. Fry | 2009 | ISBN: 9780470461907. Software Engineering Books. Security Design Principles. Software Development Methodologies. Standards for Software Quality Assurance
-
Tweets that mention The CSSLP Prep Guide: Mastering the Certified Secure Software Lifecycle Professional | by Ronald L. Krutz and Alexander J. Fry | 2009 | ISBN: 9780470461907. Software Engineering Books. Security Design Principles. Software Development M on
Mon, 30th Nov 2009 1:54 am
-
¤ Kinds Of Intellectual Property ¤ on
Mon, 30th Nov 2009 11:50 am
-
Ruthless Golf: The Relationship Between Strength & Flexibility | Fitness Health Wisdom on
Fri, 11th Dec 2009 6:14 am
[...] This post was mentioned on Twitter by Alisha Jamaal, Ahmad. Ahmad said: The CSSLP Prep Guide: Mastering the Certified Secure Software …: Business Success Center.Life Success Coach.C.. http://bit.ly/8CMAyP [...]
[...] The CSSLP Prep Guide: Mastering the Certified Secure Software … [...]
[...] The CSSLP Prep Guide: Mastering the Certified Secure Software … [...]
Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!
You must be logged in to post a comment.





