CSSLP.AO1
CSSLP Course with Hands-on Labs
Prepare for the CSSLP certification. Learn everything you need to know from the early planning stages to secure deployment and maintenance.
- Practice in 40 Laboratorios prácticos — nothing to install
- 22 Lecciones interactivas y 135 topics mapped to the official exam objectives
- 345 Preguntas del examen de práctica y 2 Pruebas completas
Expert A tu propio ritmo · 1 año de acceso 4.4/5 (6 Revisar)
40 LiveLabs prácticos
Practice real IT tasks in guided environments.
- Entornos reales
- Calificación automática
- Sin instalación
01 / Habilidades que obtendrás
What you will be able to do
Discover the fully-composed, CSSLP course, designed to help you conquer the exam seamlessly. Get access to over 300 collections of curated practice questions, covering all eight domains, including secure software concepts, secure software requirements & many more.
Go beyond basic security awareness and get hands-on with threat modeling, risk management, secure coding, and security testing, just like top-tier software teams do. Then, learn to align your development process with industry standards like OWASP, NIST, and ISO.
- Secure Software Design - Apply threat modeling, attack surface reduction, and secure architecture principles during the design phase.
- Defensive Coding Practices - Implement secure coding techniques to prevent vulnerabilities like buffer overflows, injection attacks, and improper error handling.
- Risk and Compliance Management - Evaluate risks, align with regulatory standards (e.g., NIST, GDPR), and ensure secure governance across the SDLC.
- Secure Deployment and Maintenance – Manage secure software releases, DevOps integration, patching, and ongoing operational security.
- General Security Concepts - Understanding the security design tenets & discovering the access control modes.
Target Career Roles
- Arquitecto de software
- Ingeniero de software
- Desarrollador de software
- Especialista en seguridad de aplicaciones
02 / Lecciones y laboratorios
See exactly what you will learn and practice
Plan de estudios
22 Lecciones interactivas · 135 topics01 Introduction 5 topics +
- Why Focus on Software Development?
- The Role of CSSLP
- How to Use This Course?
- The Examination
- CSSLP (2020)
02 General Security Concepts 4 topics · 3 Laboratorio en vivo +
- General Security Concepts
- Security Models
- Adversaries
- Lesson Review
3 Laboratorio en vivo in this lesson — see the labs panel →
03 Risk Management 6 topics · 1 Laboratorio en vivo +
- Definitions and Terminology
- Types of Risk
- Governance, Risk, and Compliance
- Risk Management Models
- Risk Options
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
04 Security Policies and Regulations 8 topics · 3 Laboratorio en vivo +
- Regulations and Compliance
- Legal Issues
- Privacy
- Security Standards
- Secure Software Architecture
- Trusted Computing
- Acquisition
- Lesson Review
3 Laboratorio en vivo in this lesson — see the labs panel →
05 Software Development Methodologies 5 topics · 3 Laboratorio en vivo +
- Secure Development Lifecycle
- Secure Development Lifecycle Components
- Software Development Models
- Microsoft Security Development Lifecycle
- Lesson Review
3 Laboratorio en vivo in this lesson — see the labs panel →
06 Policy Decomposition 4 topics · 1 Laboratorio en vivo +
- Confidentiality, Integrity, and Availability Requirements
- Authentication, Authorization, and Auditing Requirements
- Internal and External Requirements
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
07 Data Classification and Categorization 6 topics · 2 Laboratorio en vivo +
- Data Classification
- Data Ownership
- Labeling
- Types of Data
- Data Lifecycle
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
08 Requirements 5 topics · 2 Laboratorio en vivo +
- Functional Requirements
- Operational Requirements
- Requirements Traceability Matrix
- Connecting the Dots
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
09 Design Processes 7 topics · 1 Laboratorio en vivo +
- Attack Surface Evaluation
- Threat Modeling
- Control Identification and Prioritization
- Risk Assessment for Code Reuse
- Documentation
- Design and Architecture Technical Review
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
10 Design Considerations 3 topics · 1 Laboratorio en vivo +
- Application of Methods to Address Core Security Concepts
- Interfaces
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
11 Securing Commonly Used Architecture 8 topics · 3 Laboratorio en vivo +
- Distributed Computing
- Service-Oriented Architecture
- Rich Internet Applications
- Pervasive/Ubiquitous Computing
- Mobile Applications
- Integration with Existing Architectures
- Cloud Architectures
- Lesson Review
3 Laboratorio en vivo in this lesson — see the labs panel →
12 Technologies 13 topics · 4 Laboratorio en vivo +
- Authentication and Identity Management
- Credential Management
- Flow Control (Proxies, Firewalls, Middleware)
- Logging
- Data Loss Prevention
- Virtualization
- Digital Rights Management
- Trusted Computing
- Database Security
- Programming Language Environment
- Operating Systems
- Embedded Systems
- Lesson Review
4 Laboratorio en vivo in this lesson — see the labs panel →
13 Common Software Vulnerabilities and Countermeasures 10 topics · 2 Laboratorio en vivo +
- CWE/SANS Top 25 Vulnerability Categories
- OWASP Vulnerability Categories
- Common Vulnerabilities and Countermeasures
- Input Validation Failures
- Common Enumerations
- Virtualization
- Embedded Systems
- Side Channel
- Social Engineering Attacks
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
14 Defensive Coding Practices 7 topics · 2 Laboratorio en vivo +
- Declarative vs. Programmatic Security
- Memory Management
- Error Handling
- Interface Coding
- Primary Mitigations
- Learning from Past Mistakes
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
15 Secure Software Coding Operations 6 topics · 1 Laboratorio en vivo +
- Code Analysis (Static and Dynamic)
- Code/Peer Review
- Build Environment
- Antitampering Techniques
- Configuration Management: Source Code and Versioning
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
16 Security Quality Assurance Testing 10 topics · 3 Laboratorio en vivo +
- Standards for Software Quality Assurance
- Testing Methodology
- Functional Testing
- Security Testing
- Environment
- Bug Tracking
- Attack Surface Validation
- Testing Artifacts
- Test Data Lifecycle Management
- Lesson Review
3 Laboratorio en vivo in this lesson — see the labs panel →
17 Security Testing 9 topics · 2 Laboratorio en vivo +
- Scanning
- Penetration Testing
- Fuzzing
- Simulation Testing
- Testing for Failure
- Cryptographic Validation
- Regression Testing
- Impact Assessment and Corrective Action
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
18 Secure Lifecycle Management 4 topics · 1 Laboratorio en vivo +
- Introduction to Acceptance
- Pre-release Activities
- Post-release Activities
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
19 Secure Software Installation and Deployment 3 topics · 1 Laboratorio en vivo +
- Secure Software Installation and Its Subsequent Deployment
- Configuration Management
- Lesson Review
1 Laboratorio en vivo in this lesson — see the labs panel →
20 Secure Software Operations and Maintenance 5 topics · 2 Laboratorio en vivo +
- Secure Software Operations
- The Software Maintenance Process
- Secure DevOps
- Secure Software Disposal
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
21 Supply Chain and Software Acquisition 6 topics · 2 Laboratorio en vivo +
- Supplier Risk Assessment
- Supplier Sourcing
- Software Development and Testing
- Software Delivery, Operations, and Maintenance
- Supplier Transitioning
- Lesson Review
2 Laboratorio en vivo in this lesson — see the labs panel →
22 Appendix: Key Terms 1 topics +
- Glossary
Laboratorios prácticos Our edge
40 Laboratorio en vivos- Understanding Security Design Tenets
- Discussing About Access Control Models
- Understanding Information Flow Models
- Understanding Annualized Loss Expectancy
- Understanding Compliance-Based Assessment Regulations
- Understanding PII and PHI
- Understanding National Institute of Standards and Technology
- Discussing About Software Development Methodologies
- Understanding Secure Development Lifecycle Components
- Understanding Software Development Models
- Understanding Access Control Mechanisms
- Understanding Data Classification Types
- Understanding Data Ownership Roles
- Understanding Functional Requirements
- Understanding the Requirements Traceability Matrix
- Understanding Documentation
- Discussing About Security Design Considerations
- Understanding Distributed Computing Terms
- Understanding the Enterprise Service Bus
- Understanding Cloud Service Models
- Understanding X.509 Digital Certificate Fields
- Understanding Flow Control Technologies
- Understanding Syslog
- Understanding Trusted Computing Elements
- Discussing About Software Vulnerabilities and Countermeasures
- Understanding the Buffer Overflow Attack
- Understanding Imperative and Declarative Securities
- Understanding Memory Management
- Understanding Code Analysis Types
- Discussing About Security Quality Assurance Testing Methods
- Understanding Functional Testing Types
- Understanding Security Testing Types
- Understanding the Attack Surface Analyzer
- Understanding Regression Testing
- Understanding Various Forms of Testing
- Understanding Bootstrapping
- Understanding Operations/Maintenance Activities
- Understanding the Software Disposal Process
- Discussing About Supplier Risk Assessment
- Understanding Service Level Agreements
03 / Detalles del examen
CSSLP Course with Hands-on Labs Detalles
Aprueba el examen (ISC)² CSSLP con el curso y laboratorio Certified Secure Software Lifecycle Professional (CSSLP). El laboratorio se puede asignar a cualquier curso, libro de texto o capacitación, agregando así valor y un componente práctico a la capacitación. La guía de capacitación CSSLP proporciona habilidades para los temas del examen CSSLP y experiencia en áreas como principios de diseño de seguridad, modelado de amenazas, diseño de interfaz segura, evaluación de riesgos arquitectónicos, código para riesgos de seguridad, pruebas dinámicas de seguridad de aplicaciones (DAST) y muchas más.
¿Listo para presentar el examen?
Agrega tu CSSLP.AO1 bono de examen oficial a tu pedido.
Bono oficial · Entrega rápida · Paquete de repetición disponible04 / Preguntas frecuentes
Preguntas antes de empezar
What is a Certified Secure Software Lifecycle Professional CSSLP?+
Is CSSLP certification worth it?+
Which is better, CISSP or CSSLP?+
¿Cuál es la cuota de inscripción al examen?+
¿Dónde hago el examen?+
¿Cuál es el formato del examen?+
¿Cuáles son los requisitos previos del examen?+
¿Cuántas preguntas se hacen en el examen?+
¿Cuál es la duración del examen?+
¿Cuál es la puntuación mínima para aprobar?+
¿Cuál es la política de repetición del examen?+
Esta es la política de repetición de exámenes:
- Si no apruebas el examen la primera vez, puedes volver a presentarte después de 30 días.
- Si no apruebas la segunda vez, puedes volver a presentarte al examen después de 90 días adicionales.
- Si no apruebas a la tercera, puedes volver a presentarte al examen 180 días después de tu último intento.
¿Cuál es la validez de la certificación?+
¿Dónde puedo encontrar más información sobre este examen?+
CSSLP: Secure Software. Certified.
Certify your software skills with uCertify’s CSSLP course & lead your way into application security.
- 1 año de acceso completo
- 40 LiveLab incluido
- Certificado de finalización
No se requiere tarjeta de crédito