From the course: Static Application Security Testing
Unlock this course with a free trial
Join today to access over 25,400 courses taught by industry experts.
OWASP ASVS - SonarQube Tutorial
From the course: Static Application Security Testing
OWASP ASVS
- [Narrator] At this point, I bet you're thinking, "Wow, there is a lot that goes into verifying whether an application is secure. I really wish OWASP had a project that could help me out here." Well, you're in luck. OWASP maintains the Application Security Verification Standard project to help organizations manage their application security conversations with internal developers, external developers, and security testers. You can use the ASVS to document and track metrics around how secure your applications really are in line with your organization's security maturity targets. Metrics aside, the ASVS contains extensive guidance on the application security controls that you should consider testing. And then there's the piece of the ASVS that I personally consider to be the most significant, procurement support. If you're looking for a clear set of application security expectations that you can share with your vendors,…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.