From the course: CSSLP Cert Prep: 6 Secure Lifecycle Management

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Security metrics

Security metrics

From the course: CSSLP Cert Prep: 6 Secure Lifecycle Management

Start my 1-month free trial

Security metrics

- [Narrator] Measuring your security over time helps you improve your security software life cycle management policies and procedures. The fastest path to identifying and implementing these improvements is through security metrics. Peter Drucker, the well-known management consultant and author, was famously quoted as saying, "If you can't measure it, you can't improve it." That saying holds true when it comes to secure software lifecycle management. If your CSO were to ask you "Is our app secure?" how would you even answer that question? How would you even know if your idea of secure and your CSO's definition were the same? Through metrics, that's how. One of the most popular software metrics is defects per line of code. With the right tools, this metric is easy to capture and measure, which accelerates your ability to address those defects and improve your code. Steve McConnell, author of "Code Complete", recommends…

Contents