The Software Security Framework (SSF)

The table below is a clickable version of the Software Security Framework. There are twelve practices organized into four domains.

The Software Security Framework (SSF)
Governance Intelligence SSDL Touchpoints Deployment
Strategy and Metrics Attack Models Architecture Analysis Penetration Testing
Compliance and Policy Security Features and Design Code Review Software Environment
Training Standards and Requirements Security Testing Configuration Management and Vulnerability Management