前往小程序,Get更优阅读体验!
立即前往
首页
学习
活动
专区
工具
TVP
发布
社区首页 >专栏 >CISSP考试指南笔记:8.1 创建好的代码

CISSP考试指南笔记:8.1 创建好的代码

作者头像
血狼debugeeker
发布2021-09-10 10:33:05
2570
发布2021-09-10 10:33:05
举报
文章被收录于专栏:debugeeker的专栏debugeeker的专栏

Quality can be defined as fitness for purpose.

Code reviews and interface testing, are key elements in ensuring software quality.

Software controls come in various flavors and have many different goals. They can control input, encryption, logic processing, number-crunching methods, inter-process communication, access, output, and interfacing with other software. Software controls should be developed with potential risks in mind, and many types of threat models and risk analyses should be invoked at different stages of development. The goals are to reduce vulnerabilities and the possibility of system compromise.

Where Do We Place Security?


This chapter is an attempt to show how to address security at its source, which is at the software development level. This requires a shift from reactive to proactive actions toward security problems to ensure they do not happen in the first place, or at least happen to a smaller extent.

Different Environments Demand Different Security


As the complexity of these types of environments grows, tracking down errors and security compromises becomes an awesome task.

剩余内容请关注本人公众号debugeeker, 链接为CISSP考试指南笔记:8.1 创建好的代码

本文参与 腾讯云自媒体分享计划,分享自作者个人站点/博客。
原始发表:2021-03-30 ,如有侵权请联系 cloudcommunity@tencent.com 删除

本文分享自 作者个人站点/博客 前往查看

如有侵权,请联系 cloudcommunity@tencent.com 删除。

本文参与 腾讯云自媒体分享计划  ,欢迎热爱写作的你一起参与!

评论
登录后参与评论
0 条评论
热度
最新
推荐阅读
目录
  • Where Do We Place Security?
  • Different Environments Demand Different Security
领券
问题归档专栏文章快讯文章归档关键词归档开发者手册归档开发者手册 Section 归档