Tag: security
Questions Related to security
-
LiveHTTPHeaders
-
Sqlninja
-
Bobcat
-
WebGoat
-
Ounce
-
WebInspect
-
IBM RAD
-
None of the above
-
Ounce
-
DevInspect
-
AppScan
-
FXCop
-
Web Proxy
-
XSS Scanner
-
An insecure J2EE web application
-
None of the above
-
Group based access control should be implemented to assign permissions to application users
-
Consistent authorization checking should be performed on all application pages
-
A set of all allowable actions should be defined for each user role and all other's denied
-
All failed access authorization requests should be logged to a secure location for review by administrators
-
During testing
-
During development
-
During all phases of development starting with requirement analysis and ending with rollout
-
During design
-
Capture the customer requirements
-
Update the project plan
-
Capture and update the URS and SRS with security requirements for the project
-
None of the above
-
ASAP Team
-
Development Team
-
Testing Team
-
Project Management
-
Time and Money, Fixed price
-
Offshore, Onshore, Offshore-Onshore
-
Full-Fledged, Staggered, Fast Track
-
None of the above
-
Dynamic code analysis
-
Static code analysis
-
Both
-
None