This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Application Security Program Quick Start Guide"
Gabrielgumbs (talk | contribs) |
Gabrielgumbs (talk | contribs) |
||
Line 21: | Line 21: | ||
''''' *Key Questions: ''''' | ''''' *Key Questions: ''''' | ||
*Management | *Management | ||
− | + | *Security | |
− | + | *IT Ops | |
− | + | *Engineering Groups (inc. QA)/Development | |
''' *Day 2''' | ''' *Day 2''' | ||
''''' **Key Activities: ''''' | ''''' **Key Activities: ''''' | ||
*Asset Discovery | *Asset Discovery | ||
− | + | *Asset Risk Prioritization | |
− | + | *Communication Plan | |
''' *Day 3''' | ''' *Day 3''' | ||
''''' **Key Activities: ''''' | ''''' **Key Activities: ''''' | ||
− | + | *Vulnerability Assessments | |
− | + | *Vulnerability delivery | |
''' *Day 4''' | ''' *Day 4''' | ||
''''' **Key Activities: ''''' | ''''' **Key Activities: ''''' | ||
− | + | *Measured Metrics | |
''' *Day 5''' | ''' *Day 5''' | ||
''''' **Key activities: ''''' | ''''' **Key activities: ''''' | ||
− | + | *Compensating Controls | |
− | + | *Mitigating Controls | |
− | + | *Remediation Prioritization | |
Revision as of 18:25, 1 December 2014
The Application Security Program Quick Start GuidePlaceholder Contents
*Key Questions:
*Day 2 **Key Activities:
*Day 3 **Key Activities:
*Day 4 **Key Activities:
*Day 5 **Key activities:
LicensingThe OWASP Application Security Program Quick Start Guide is free to use. It is licensed under the Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International license. You are free to:
The licensor cannot revoke these freedoms as long as you follow the license terms. |
CreditsProject lead and authors
Other contributorsCo-authors, contributors and reviewers:
Further InformationApplication Security Program Quick Start GuideThe OWASP Application Security Program Quick Start Guide is also available as
|