Countrywide Training Home

Home / Articles

Overview of the CSSLP Certification

Computer software has been around for about 65 years now. We’ve come a very long way during that time, and many expect we will see just as much technological advancement in the next 65 years. During the past 30 years, the explosion in computing required that we change many of our approaches to computer security since technology is advancing so fast. Today, as software becomes more complex, the need for secure software is increasingly critical to software development organizations. That is why (ISC)2 — a certification body that specializes in information security — developed a new certification for software developers, called the Certified Secure Software Lifecycle Professional (CSSLP).

(ISC)2 felt the security of software was an important \ since software was becoming more and more exposed to threats, which is how the CSSLP certification came about. It would be one way to define a new standard for software development security. In the course of its research, (ISC)2 found there was indeed a need for specialists in both security and software development and decided that creating a certification program would be the best way to enable widespread adoption of better development security standards. The CSSLP is targeted at people who improve the security of all software, including those who improve the security of general-purpose software and those who develop security tools.

In providing certification opportunities to developers, (ISC)2 aims to establish a base level of professional skill for individuals who wish to pursue this area as a career path. (ISC)2 did a few studies, which have found that professionals who work every day in the field of software development often walk a fine line between profit and process. They must balance the mandate for high productivity with their professional commitment to producing high-quality systems. Those responsible for security must promote security best practices in. So, the CSSLP is intended for software life cycle professionals who are responsible for improving the security of software and those responsible for developing secure systems or application software.

Certification Body of Knowledge

The CSSLP CBK covers all the stages of normal software development and is what a candidate of the exam must know in order to successfully pass the certification exam. It’s somewhat of a study guide for those looking to become CSSLP certified professionals. Candidates must understand requirements, design, coding, testing, deployment, patching, maintenance and disposal. Further, they must learn the security functions associated with each of these stages in the software development life cycle (SDLC). Additionally, candidates must know how to apply core information security concepts such as risk management, vulnerability assessment, auditing and legal issues. Finally, candidates will be required to show that they understand the mathematical models that represent the engineering foundation for secure software development.

About Countrywide Training:

Countrywide Training is your full service computer training resource with a variety of learning programs to fit your every need. Whether you are a corporate training director or an individual seeking to enhance your skills, you’re sure to find the perfect solution within our pages of various computer class titles. Whether you want onsite training classes, computer room rentals, online training by K Alliance (elearning), self-study computer based training classes, or wish to attend one of our IT certification bootcamps, we have a training solution well suited to fit your learning style.