This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Software Security 5D Framework"
(Created page with "The OWASP Software Security 5D framework represents a practical framework that focus on 5 dimensions to evaluate the maturity of a SDLC. The key areas are the following: - Sw...") |
|||
| (3 intermediate revisions by the same user not shown) | |||
| Line 1: | Line 1: | ||
| − | |||
| − | + | __NOTOC__ | |
| − | |||
| − | |||
| − | |||
| − | |||
| − | |||
| − | + | '''This is the DRAFT article of the New OWASP Software Security 5D Framework'''<br> | |
| − | |||
| − | |||
| − | |||
| − | |||
| − | This new model aims are: | + | Back to the OWASP Software Security 5D Framework: |
| − | - build a more practical Secure SDLC for the Companies | + | https://www.owasp.org/index.php/OWASP_Software_Security_5D_Framework |
| − | - have a fast assessment to undertand the actual maturity of a Company | + | |
| − | - create a reliable way to build a concrete Software Security Program | + | ---- |
| + | <br> <br> | ||
| + | The OWASP Software Security 5D framework represents a practical framework that focus on 5 dimensions to evaluate the maturity of a SDLC and create the best Software Security Roadmap in a fast way.<br> | ||
| + | |||
| + | The key areas are the following:<br> | ||
| + | - SwSec PROCESSES <br> | ||
| + | - SwSec TESTING<br> | ||
| + | - SwSec TEAM<br> | ||
| + | - SwSec AWARENESS<br> | ||
| + | - SwSec STANDARDS<br> | ||
| + | |||
| + | Traditional Secure SDLC frameworks lack of: <br> | ||
| + | - level of awareness for all the people involved in the process <br> | ||
| + | - description of the application security roles involved <br> | ||
| + | - set of security standards <br> | ||
| + | - security testing tools adopted<br> | ||
| + | <br> | ||
| + | This new model aims are:<br> | ||
| + | - build a more practical Secure SDLC for the Companies<br> | ||
| + | - have a fast assessment to undertand the actual maturity of a Company<br> | ||
| + | - create a reliable way to build a concrete Software Security Program<br> | ||
Latest revision as of 17:21, 23 October 2018
This is the DRAFT article of the New OWASP Software Security 5D Framework
Back to the OWASP Software Security 5D Framework: https://www.owasp.org/index.php/OWASP_Software_Security_5D_Framework
The OWASP Software Security 5D framework represents a practical framework that focus on 5 dimensions to evaluate the maturity of a SDLC and create the best Software Security Roadmap in a fast way.
The key areas are the following:
- SwSec PROCESSES
- SwSec TESTING
- SwSec TEAM
- SwSec AWARENESS
- SwSec STANDARDS
Traditional Secure SDLC frameworks lack of:
- level of awareness for all the people involved in the process
- description of the application security roles involved
- set of security standards
- security testing tools adopted
This new model aims are:
- build a more practical Secure SDLC for the Companies
- have a fast assessment to undertand the actual maturity of a Company
- create a reliable way to build a concrete Software Security Program