|
||||||||
![]() Beginning where the best-selling book Building Secure Software left off, Software Security teaches you how to put software security into practice.The software security best practices, or touchpoints, described in this book have their basis in good software engineering and involve explicitly pondering security throughout the software development lifecycle. This means knowing and understanding common risks (including implementation bugsand architectural flaws), designing for security, and subjecting all software artifacts to thorough, objective risk analyses and testing. Part I: Software Security FundamentalsChapter 1. Defining a Discipline Chapter 2. A Risk Management Framework Part II: Seven Touchpoints for Software Security Chapter 3. Introduction to Software Security Touchpoints Chapter 4. Code Review with a Tool Chapter 5. Architectural Risk Analysis Chapter 6. Software Penetration Testing Chapter 7. Risk-Based Security Testing Chapter 8. Abuse Cases Chapter 9. Software Security Meets Security Operations Part III: Software Security Grows Up Chapter 10. An Enterprise Software Security Program Chapter 11. Knowledge for Software Security Chapter 12. A Taxonomy of Coding Errors Chapter 13. Annotated Bibliography and References Part IV: Appendices Appendix A. Fortify Source Code Analysis Suite Tutorial Section 1. Introducing the Audit Workbench Section 2. Auditing Source Code Manually Section 3. Ensuring a Working Build Environment Section 4. Running the Source Code Analysis Engine Section 5. Exploring the Basic SCA Engine Command Line Arguments Section 6. Understanding Raw Analysis Results Section 7. Integrating with an Automated Build Process Section 8. Using the Audit Workbench Section 9. Auditing Open Source Applications
|
| More free ebooks | |
More computer ebooks 