Cisco, Microsoft and Symantec are among the vendors backing a new certification aimed at stemming the flow of
software being developed with little thought to security. Created by (ISC)2, which developed the Certified Information Systems Security Professional designation, the new Certified Secure Software Lifecycle Professional (CSSLP) certification aims to establish best practices and validate an individual’s competency in addressing security issues throughout the software lifecycle, according to (ISC)2. “The time to act is now, because new applications that lack basic security controls are being developed every day, and thousands of existing vulnerabilities are being ignored,” said Howard A. Schmidt, (ISC)² board member.
Microsoft is also backing the certification. Shouldn't Microsoft insist that all its developers achieve this certification?
More from Cisco Subnet:
* Gartner advises WAAS customers to proceed with caution
* Cisco issues 11 security alerts for IOS, plus one for Cisco Unified Communications Manager
* Simplifying Shellcode Analysis
* Cisco's new ASA code allows you to securely take your Cisco IP Phone with you anywhere
* Cisco's First Software Switch - the Nexus 1000V
* Using JUNOS Macros
* Building a CUCME home lab series
Go to Cisco Subnet for more Cisco news, blogs, discussion forums, security alerts, book giveaways, and more.
The Cisco Subnet blog is written by Network World managing editor Jim Duffy Visit the Cisco Subnet home page daily and while you are there, subscribe to the Cisco Alert e-mail newsletter, which includes news and views generated by the Cisco Subnet community as well as Cisco-related stories on Network World and elsewhere on the Web.
Follow Jim Duffy on Twitter