From the course: CSSLP Cert Prep: 6 Secure Lifecycle Management

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Continuous improvement

Continuous improvement

From the course: CSSLP Cert Prep: 6 Secure Lifecycle Management

Start my 1-month free trial

Continuous improvement

- [Instructor] Improving the security state of your software isn't a one-time activity but rather a continuous process. Continuous improvement is the natural byproduct of performing retrospectives and gathering lessons learned. The concept of continuous or continual improvement is often represented using the plan, do, check, act model. When applied to software security, you start by identifying some way in which you can improve your development processes. You make some small change in an effort to improve those processes, you measure how effective that change was, and then you either incorporate that change into your processes or you go back to the planning stage and try something else. In this model, you're never really done. Rather, you're always looking for ways to make it easier, faster, and less expensive for your developers to build secure applications. The Agile Manifesto calls for this approach as part of its…

Contents