From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Unlock the full course today
Join today to access over 24,700 courses taught by industry experts.
Obtaining security approval to operate
From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Obtaining security approval to operate
- [Instructor] Shifting from deployment to operations isn't just a technical process, it involves communication and management sign-off as well. You'll want to build processes that enable you to obtain the security approval needed to operate your application and production. ISC2 uses a specific term for the security approval, Authorization to Operate. Yes, you'll have your hands full with all of the technical security details that constitute the secure deployment of an application. But remember, the business is less concerned with security than they are with risk. You'll want to brief one or more of the senior leaders of your organization on your application and your deployment plans, so they can weigh that information against how this new application might impact the overall risk that the organization is currently managing. By enabling them to make well-informed decisions about those risks, you're enabling them to determine whether or not those risks are reasonable or whether the…
Download courses and learn on the go
Watch courses on your mobile device without an internet connection. Download courses using your iOS or Android LinkedIn Learning app.
Contents
-
-
(Locked)
Secure architecture and design patterns3m 43s
-
(Locked)
Identifying and prioritizing controls6m 15s
-
(Locked)
Traditional application architectures7m 23s
-
(Locked)
Pervasive and ubiquitous computing6m 43s
-
(Locked)
Rich internet and mobile applications7m 9s
-
(Locked)
Cloud architectures7m 8s
-
(Locked)
Embedded system considerations8m 45s
-
(Locked)
Architectural risk assessments6m 59s
-
(Locked)
Component-based systems5m 2s
-
(Locked)
Security enhancing tools4m 8s
-
(Locked)
Cognitive computing4m 37s
-
(Locked)
Control systems8m 34s
-
(Locked)
-
-
(Locked)
Components of a secure environment8m 25s
-
(Locked)
Designing network and server controls4m 22s
-
(Locked)
Designing data controls6m 25s
-
(Locked)
Secure design principles and patterns5m 6s
-
(Locked)
Secure interface design6m 49s
-
(Locked)
Security architecture and design review3m 6s
-
(Locked)
Secure operational architecture3m 37s
-
(Locked)