ABSTRACT

“The Ten Best Practices for Secure Software Development,” by Mano Paul, discusses the importance of engaging the right stakeholders before moving forward with the project. Different organizations have stakeholders that carry different weights. Be sure to include the right players to establish secure coding practices for mobile applications. No matter what the secure software development life cycle process looks like in organization, also want to institute application vulnerability scans on the mobile applications before they are released into production, and then periodically after they are in production. Ideally, homegrown App Store/Google Play architecture should look like the already secured development, QA, staging, and production environment that use for other applications. Consider store to be like any other public-facing offering and secure it accordingly, because it will be probed as soon as it’s online. Have a short list of individually identifiable people who can publish to the store.