Course Duration: 1 hour
Intended Audience: Security Professionals, Developers and Software Quality Assurance Staff
The security industry often pays a tremendous amount of attention to finding security vulnerabilities. This is done via code review, penetration testing and other assessment methods. Unfortunately, finding vulnerabilities is only the first step toward actually addressing the associated risks, and addressing these risks is arguably the most critical step in the vulnerability management process. Complicating matters is the fact that most application security vulnerabilities cannot be fixed by members of the security team because they require code-level changes in order to address the underlying issue successfully. Therefore, security vulnerabilities need to be communicated and transferred to software development teams and then prioritized and added to their workloads.
This course examines steps required to remediate software-level vulnerabilities properly, and recommends best practices organizations can use to be successful in their remediation efforts.
Lesson 1: Software Security Remediation Basics
Course Objectives: After completing this lesson, you should be able to:
Lesson 2: Phase One - Inception
Course Objectives: After completing this lesson, you should be able to:
Lesson 3: Phase Two - Planning
Course Objectives: After completing this lesson, you should be able to:
Lesson 4: Phase Three - Execution
Course Objectives: After completing this lesson, you should be able to:
If e-Learning is not the best solution for your training needs, the creators of ThreadStrong also offer application security training in classroom format.