ABSTRACT

At this point in the book, you are equipped with an abundance of recommendations, advice, tips, hints, tricks, and tools to assure that security and resilience characteristics make their way into all aspects of software development and procurement activities. Chapter 10 offers one very popular and well-known methodology called the Comprehensive, Lightweight Application Security Process (CLASP) to help you implement these concepts and tools into your own software development life cycle (SDLC), whether you are working in a legacy environment or are able to build a new “green-fields” SDLC from scratch.