This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Application Security Program Quick Start Guide"
Gabrielgumbs (talk | contribs) |
Gabrielgumbs (talk | contribs) |
||
Line 20: | Line 20: | ||
***Evaluation | ***Evaluation | ||
''''' *Key Questions: ''''' | ''''' *Key Questions: ''''' | ||
− | + | **Management | |
− | + | **Security | |
− | + | **IT Ops | |
− | + | **Engineering Groups (inc. QA)/Development | |
''' *Day 2''' | ''' *Day 2''' | ||
''''' **Key Activities: ''''' | ''''' **Key Activities: ''''' | ||
− | + | **Asset Discovery | |
− | + | **Asset Risk Prioritization | |
− | + | **Communication Plan | |
''' *Day 3''' | ''' *Day 3''' | ||
''''' **Key Activities: ''''' | ''''' **Key Activities: ''''' | ||
− | + | **Vulnerability Assessments | |
− | + | **Vulnerability delivery | |
''' *Day 4''' | ''' *Day 4''' | ||
''''' **Key Activities: ''''' | ''''' **Key Activities: ''''' | ||
− | + | **Measured Metrics | |
''' *Day 5''' | ''' *Day 5''' | ||
''''' **Key activities: ''''' | ''''' **Key activities: ''''' | ||
− | + | **Compensating Controls | |
− | + | **Mitigating Controls | |
− | + | **Remediation Prioritization | |
Revision as of 18:24, 1 December 2014
The Application Security Program Quick Start GuidePlaceholder Contents
*Key Questions:
*Day 2 **Key Activities:
*Day 3 **Key Activities:
*Day 4 **Key Activities:
*Day 5 **Key activities:
LicensingThe OWASP Application Security Program Quick Start Guide is free to use. It is licensed under the Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International license. You are free to:
The licensor cannot revoke these freedoms as long as you follow the license terms. |
CreditsProject lead and authors
Other contributorsCo-authors, contributors and reviewers:
Further InformationApplication Security Program Quick Start GuideThe OWASP Application Security Program Quick Start Guide is also available as
|