Chapter 8. Software Development Security

The Software Development Security domain is concerned with the security controls used by applications during their design, development, and use. Individuals studying this domain should understand the security and controls of application security, which includes the systems development process, application controls, and knowledge-based systems. Test candidates should also understand the concepts used to ensure data and application integrity. The following list gives you some specific areas of knowledge to be familiar with for the CISSP exam:

• SDLC (software development life cycle)

• Change (life cycle) management

• Database security

• Artificial Intelligence systems

• Mobile code

• Malware, viruses, and ...

Get CISSP Practice Questions Exam Cram, Third Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.