category
Certified Secure Software Lifecycle Professional – Tier 3
Type
Virtual
Classroom ILT
Skill Level
Available dates
Learning Path
Virtual
Duration
1 Day
TYPE
Virtual
Classroom ILT
LEARNING PATH
SKILL LEVEL
DURATION
AVAILABLE DATES
Tier 3
Pricing is applicable to the following countries: Algeria, Angola, Botswana, Cameroon, Cape Verde, Cote d’Ivoire, Congo, Djibouti, Egypt, Gabon, Ghana, Lesotho, Libya, Mauritania, Mozambique, Morocco, Namibia, Nigeria, Saint Helena, Ascension and Tristan da Cunha, Senegal, Sudan, Swaziland, Tunisia, Zambia, Zimbabwe.
Introduction
The Certified Secure Software Lifecycle Professional (CSSLP) is a global, vendor-neutral certification to recognize those with leading software and application security skills. The CSSLP recognizes your expertise and ability to incorporate security practices — authentication, authorization and auditing — into each phase of the SDLC.
Audience Profile
The CSSLP is ideal for software development and security professionals responsible for applying best practices to each phase of the SDLC – from software design and implementation to testing and deployment – including those in the following positions:
- Software Architect
- Software Engineer
- Software Developer
- Application Security Specialist/Manager/Architect
- Software Program Manager
- Quality Assurance Tester
- Penetration Tester/Testing Manager
- Software Procurement Analyst
- Project Manager
- Security Manager
- IT Director/Manager
Pre-requisites
The knowledge and skills that a learner must have before attending this course is as follows:
- Candidates must have a minimum of four years of cumulative paid Software Development Lifecycle (SDLC) professional work experience in one or more of the eight domains of the ISC2 CSSLP Common Body of Knowledge (CBK)
- Earning a four-year college degree or regional equivalent in Computer Science, Information Technology (IT) or related fields or an additional credential from the ISC2 approved list will satisfy one year of the required experience
- Education credit will only satisfy one year of experience
- Part-time work and internships may also count towards your experience
- Fulltime Experience: Your work experience is accrued monthly
- Thus, you must have worked a minimum of 35 hours/week for four weeks to accrue one month of work experience
- Part-Time Experience: Your part-time experience cannot be less than 20 hours a week and no more than 34 hours a week
- 1040 hours of part-time = 6 months of full-time experience
- 2080 hours of part-time = 12 months of full-time experience
- Internship: Paid or unpaid internship is acceptable. You will need documentation on company/organisation letterhead confirming your position as an intern. If you are interning at a school, the document can be on the registrar’s stationery
What is included?
- Official ISC2 Digital Student Kit
- Course Evaluation
- Post Course Assessment and Answer Key
- Certificate of Completion
Note: An official ISC2 printed student book can be provided as a special order at an additional cost, which will be borne by the client. The turnaround time for delivery of printed books is 10–15 working days from the date of order.
Course Content
| Domain 1: Secure Software Concepts | |
|
|
|
|
| Domain 2: Secure Software Requirements | |
|
|
|
|
|
|
|
|
|
|
| Domain 3: : Secure Software Architecture and Design | |
|
|
|
|
|
|
|
|
| Domain 4: Secure Software Implementation | |
|
|
|
|
|
|
|
|
|
|
| Domain 5: Secure Software Testing | |
|
|
|
|
|
|
|
|
| Domain 6: Secure Software Lifecycle Management | |
|
|
|
|
|
|
|
|
|
|
| Domain 7: Secure Software Deployment, Operations, Maintenance | |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| Domain 8: Secure Software Supply Chain | |
|
|
|
|
|
|
|
|
Benefits of Certified Secure Software Lifecycle Professional
For the Individual:
- Instant credibility: Proves subject matter expertise in application security and shows desirable skills for employers around the world
- Increased compensation: Can lead to pay gains and “skill premiums.”
- Relevant, new knowledge: Expand security knowledge, affirm expertise. Continuing education helps keep skills current and relevant
- Versatile skills: Vendor-neutral so skills can be applied to different technologies and methodologies
- A broader perspective: Holistic understanding of best practices, policies and procedures throughout the software development life cycle; skills to advise others on how to build secure software
- Better protect the organisation: Keep sensitive data safe through secure coding practices
For the Organisation:
- Protect reputation: Reduce loss of revenue and reputation due to a breach resulting from insecure software
- Improve processes: Break the “penetrate and patch” test approach.
- Save money: Reduce production cost, vulnerabilities and delivery delays
- Gain instant credibility: Increases credibility of the organisation and its development team.
- Stay current: Ensures professionals are up to date on best practices, policies and procedures through continuing professional education requirements.
- Ensure compliance: Comply with government and industry regulations (DoD 8140.01/8570.01 approved)
Associated Certifications and Exam
Associate of ISC2: A candidate who doesn’t have the required experience may become an Associate of ISC2 by successfully passing the CSSLP examination. The Associate of ISC2 will then have five years to earn the four years of cumulative paid Software Development Lifecycle (SDLC) professional work experience in one or more of the eight domains of the ISC2 CSSLP Common Body of Knowledge (CBK).
| Exam Details | Certified Secure Software Lifecycle Professional (CSSLP) |
| Exam Title | CSSLP |
| Number of Questions/Practical Challenges | 125 Questions |
| Test Duration | 3 Hours |
| Test Format | Multiple choice questions |
| Test Delivery | Pearson VUE
Testing Centre |
| Availability | English |
| Passing Score | 700/1000 |
On successful completion of this course students will receive a Torque IT attendance certificate.
ISC2 Overview
In an increasingly complex cyber world, there is a growing need for information security leaders who possess the breadth and depth of expertise necessary to establish holistic security programs that assure the protection of an organisations information assets.
ISC2 is an international non-profit membership association leading in educating and certifying cyber, information, software, and infrastructure security professionals throughout their careers. Headquartered in the United States and with offices in London, Hong Kong, and an authorized China agency in Beijing, ISC2, is recognized for the acclaimed Certified Information Systems Security Professional (CISSP®) certification, along with a portfolio of credentials and world-class education programs in the form of vendor-neutral education products and career services.
ISC2 members represent an elite, global network of dedicated cybersecurity professionals – preeminent experts in their field – who have committed themselves to the highest ethical standards and best practices. All members are certified professionals who have passed ISC2 examinations attesting to skill and knowledge in their field. Through their ISC2 certification, they have demonstrated superior competency and devoted themselves to making the cyber world a safer place for all. With more than 120,000 certified members in more than 160 countries, the ISC2 community plays a vital role not only in the organizations they serve but in society. Without them, our critical infrastructures would go unprotected and we wouldn’t be as safe. As organizations are increasingly recognizing information security as imperative, ISC2 members are in greater demand than ever before.
Torque IT has embarked into a new and exciting growth phase that will further cement our organizations position as the leading Training, Enablement and Certification solutions provider in our market. As part of this strategy, Torque IT has achieved the status of Official Training Provider for ISC2.