From the course: Static Application Security Testing

Unlock the full course today

Join today to access over 24,600 courses taught by industry experts.

BSIMM

BSIMM

- [Instructor] Another resource to include in your static testing preparation is the Building Security in Maturity Model or BSIMM. The BSIMM is similar to the OWASP SAMM project in that it applies to capability maturity model to ensuring that software is secure. Over 100 organizations from a variety of industries came together to form the BSIMM. While it's most heavily influenced by professionals from financial services organizations and independent software vendors, you can find benefit from this resource regardless of the industry you represent. In addition to teaching courses here on LinkedIn, I present on a pretty regular basis at professional meetings and conferences. And if there's one message that creeps into every one of my presentations, it's that compliance does not equal security. If you want real, effective, meaningful security, then you should focus on maturity instead. Software vulnerabilities aren't the…

Contents