Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 3 fuera de 18 páginas
Examen

D487 Practice Question with 100% Verified Answers

Document preview thumbnail
Vista previa 3 fuera de 18 páginas

D487 Practice Question with 100% Verified Answers

Vista previa del contenido

D487 Practice Question with 100% Verified
Answers
software security

______ is about building secure software: designing software tobe secure; making sure that

software is secure; and educating software developers, architects, and users about how to

build security in

Application security

_____is about protecting software and the systems that software runs in a post-facto, only

after development is complete

Security Development Lifecycle

__is a software development process used to reduce software maintenance costs and increase

reliability of software concerning software security related bugs.

1- To reduce the number of security vulnerabilities and privacy problems

2-to reduce the severity of the vulnerabilities that remain

2 goals of SDL

Taint Analysis

Static analysis tools use a technique called "________________" to look for unfiltered or

unsanitized inputs (the scourge of software security) in application code

Confidentiality, integrity, and availability

There are three minimum goals that that the information security industry considers of

primary importance for an SDL

information security

,The protection of information and information systems from unauthorized access, use,

disclosure, disruption, modification, or destruction in order to provide confidentiality,

integrity, and availability

Confidentiality

Preserving authorized restrictions on information access and disclosure, including means for

protecting personal privacy and proprietary information

Integrity

Guarding against improper information modification or destruction, and includes ensuring

information non-repudiation and authenticity.

Availability

Ensuring timely and reliable access to and use of information

attack surface

the entry points and exit points of an application that may be accessible to an attacker

BSIMM

____ is the study of real-world software security initiatives organized so that you can

determine where you stand withyour software security initiative and how to evolve your

efforts over time

OWASP software assurance maturity model

is a flexible and prescriptive framework for building security into a software development

organization

ISO/IEC 27001

, It is an information security management system (ISMS) standard that specifies a

management system intended to bring information security under formal management control

ISO/IEC 27034

standard provides guidance to help organizations embed security within their processes that

help secure applications running in the environment, including application life cycle

processes

Software Assurance Forum for Excellence in Code (SAFE)

_____is a nonprofit organization dedicated to increasing trust in information and

communications technology products and services through the advancement of effective

software assurance method

NIST Software Assurance Metrics and Tool Evaluation (SAMATE)

_____project is dedicated to improving software assurance by developing methods to enable

software tool

evaluations, measuring the effectiveness of tools and techniques, and identifying gaps in

tools and methods

National Vulnerability Database (NVD)

_____is the U.S. government repository of

standards-based vulnerability management data represented using the Security Content

Automation Protocol (SCAP)

Common Computer Vulnerabilities and Exposures (CVE)

Información del documento

Subido en
15 de agosto de 2026
Número de páginas
18
Escrito en
2026/2027
Tipo
Examen
Contiene
Preguntas y respuestas
$13.99

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
KenAli
2.6
(18)
Vendido
103
Seguidores
5
Artículos
21938
Última venta
5 días hace




Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes