From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep

Unlock the full course today

Join today to access over 24,400 courses taught by industry experts.

Secure software deployment, operations, and maintenance

Secure software deployment, operations, and maintenance

- [Instructor] The seventh domain of the CSSLP is secure software deployment, operations, and maintenance. This domain focuses on the knowledge you need to securely install and manage your software on a day-to-day basis, as well as the ongoing security tasks you can perform to ensure the software security posture doesn't degrade over time. This domain accounts for 11% of the CSSLP exam. One of the first things you'll learn in this domain is how to perform an operational risk analysis. Again, the CSSLP body of knowledge addresses multiple types of risk, and this domain dives deeper into risks related to the deployment environment, to personnel training, to safety criticality, and to system integration. You'll also learn how to release software securely. Earlier in this course, we touched on the continuous integration and continuous delivery or CI/CD pipeline. In this domain, you'll learn how to build security into that pipeline. Releasing software securely is a more attainable goal if…

Contents