Appendix . InsideBackCover

InsideBackCover Three Pillars of Software Security

  1. Applied risk management

  2. Software security touchpoints

  3. Knowledge

InsideBackCover Seven Touchpoints

  1. Code review

  2. Architectural risk analysis

  3. Penetration testing

  4. Risk-based security tests

  5. Abuse cases

  6. Security requirements

  7. Security operations

InsideBackCover Seven Pernicious Kingdoms

  1. Input validation and representation

  2. API abuse

  3. Security features

  4. Time and state

  5. Error handling

  6. Code quality

  7. Encapsulation

  • Environment

Get Software Security: Building Security In now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.