From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Unlock the full course today
Join today to access over 24,600 courses taught by industry experts.
Implementing security controls
From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Implementing security controls
- [Instructor] Application security controls can exist within the development process as well as outside of the application itself. More to the point, you should implement security controls on the application's host systems if you want the application running on those hosts to be secure. To do this, you can tap into your threat models and your risk assessments for guidance. During your threat modeling exercises, you identified potential threats that represent credible risks to your applications. And when you conducted your risk assessments, you identified those controls that you might implement to manage those risks. By filtering on risks associated with the host, you're likely to see a few recommended controls popping up again and again. There's a good chance that antimalware made it on your list of recommended controls. Antimalware solutions have been around since the 1980s, although the antimalware industry really didn't take off until the '90s. The goal of this software is to look…
Download courses and learn on the go
Watch courses on your mobile device without an internet connection. Download courses using your iOS or Android LinkedIn Learning app.
Contents
-
-
(Locked)
Secure architecture and design patterns3m 43s
-
(Locked)
Identifying and prioritizing controls6m 15s
-
(Locked)
Traditional application architectures7m 23s
-
(Locked)
Pervasive and ubiquitous computing6m 43s
-
(Locked)
Rich internet and mobile applications7m 9s
-
(Locked)
Cloud architectures7m 8s
-
(Locked)
Embedded system considerations8m 45s
-
(Locked)
Architectural risk assessments6m 59s
-
(Locked)
Component-based systems5m 2s
-
(Locked)
Security enhancing tools4m 8s
-
(Locked)
Cognitive computing4m 37s
-
(Locked)
Control systems8m 34s
-
(Locked)
-
-
(Locked)
Components of a secure environment8m 25s
-
(Locked)
Designing network and server controls4m 22s
-
(Locked)
Designing data controls6m 25s
-
(Locked)
Secure design principles and patterns5m 6s
-
(Locked)
Secure interface design6m 49s
-
(Locked)
Security architecture and design review3m 6s
-
(Locked)
Secure operational architecture3m 37s
-
(Locked)