Complete Study Guide with Verified Answers
Course Code: D487
Subject: Secure Software Design
Institution: [Insert University or College Name]
Year: 2025
What's Inside?
• Comprehensive breakdown of all SDLC phases
• In-depth summaries of Agile, Scrum, Waterfall, and Lean development
• Key terms explained: BSIMM, OWASP SAMM, STRIDE, DREAD, Trike, PASTA
• Coverage of security roles: Architect, Champion, Evangelist
• Extensive overview of testing methods: White-box, Black-box, Gray-box
• Diagrams & easy-to-follow formatting for rapid understanding
Why This Guide?
This professionally curated exam prep document is designed to help you master every aspect of Secure
Software Design. Each concept is clearly explained with direct answers, practice-style Q&A, and
exam-focused insights.
⬛ Perfect for students preparing for assessments
⬛ Ideal for online classes, revisions, or late-night cramming
⬛ Reliable content compiled from top academic resources
, D487 Secure Software Design | SDLC & Security Models Guide
SDLC Phase 1:
Answer: Planning - A vision and next steps are developed.
SDLC Phase 2:
Answer: Requirements - The necessary software requirements are defined.
SDLC Phase 3:
Answer: Design - Requirements are prepared for technical design.
SDLC Phase 4:
Answer: Implementation - The features involved in the application are determined from a known
resource.
SDLC Phase 5:
Answer: Testing - The software is tested to verify its functionality in a known environment.
SDLC Phase 6:
Answer: Deployment - Security is implemented.
SDLC Phase 7:
Answer: Maintenance - Continuous security monitoring is performed.
SDLC Phase 8:
Answer: End of Life - Appropriate steps are taken to completely retire the software.
BSIMM:
Answer: A study of real-world software security that allows you to develop the security of your software
over time.
OWASP SAMM: