Training

Software security doesn't mean security software.

The training you need for everyone who contributes to your secure software development lifecycle.

Improving software security means applying a number of best practices throughout the software development lifecycle. Such best practices (or touchpoints) allow software professionals to build applications that behave appropriately even when attacked. Integrating these best practices into a secure SDLC requires knowing and understanding non-functional security requirements, common attacks, secure design, and defensive programming, and also subjecting all software artifacts to thorough, objective risk analyses and security testing.

Most companies have barely begun to apply real solutions, often because the problem simply seems too large to manage. Applying the security touchpoints reinforced throughout our software security training courses is a solid start toward producing secure software.

Our training covers topics such as software security fundamentals, security requirements, architectural risk analysis, defensive programming, secure code review, static analysis tools, risk-based testing strategy, and SOA, Web Services, and XML security. Software security training is available for on-site delivery and some courses are offered as eLearning modules for computer-based training (CBT). We can also combine courses to create multi-day curricula. See the complete listing of the Cigital Security Training Series.

Cigital can customize a course to meet your specific needs; call us at 800-824-0022 or e-mail us to discuss a tailored solution. To see the greatest improvement toward a secure SDLC, software security training is needed for each of the following roles within software development and quality assurance organizations:

Course applicability by role graphic - Fundamentals: Foundations of Software Security (1 and 2 day courses), Software Security Fundamentals (executive overview); Specialized: Architecture Risk Analysis, Defensive Programming for C/C++, C#, .NET, and Java EE, Secure Code Review (Static Analysis), Fortify Add-Ons, Security Requirements and Abuse Cases, Risk-Based Security Testing, and SOA, Web Services, and XML Security



Training
> Overview
> Security Series
> Courses
> Security Touchpoints
Your Account
Login to your account to download white papers and more, or

Create an account if you don't have one!

Free White Paper

Training: the secret to ongoing compliance
Hundreds of thousands of companies around the world have collectively spent billions of dollars in response to the security- and privacy-related compliance mandates of the past 10 years. So, why are data breaches and other security failures still a common occurrence?