| Are Your Software Programmers Coding Securely? |
|
|
|
|
A group of organizations led by the SANS Institute has launched the National Secure Programming Skills Assessment program, a series of tests designed to give companies with internal software development employees a way to test their coding skills so any flaws can be caught and corrected.
Initially, four examinations will be offered, with each one testing a different type of programming language. The four areas covered are C/C++, Java/J2EE, Perl/PHP, and .Net/ASP. The exams will first be available in Washington, D.C., in August, and be made available worldwide later in the year. The necessity for a security assessment test comes from the growing need to improve programming skills while cybercriminals are becoming increasingly better at exploiting application-level vulnerabilities, many of which are the result of common coding errors such as input validation, buffer overflows, and integer errors. The program involved more than 360 organizations from the private sector, government agencies, and universities. The exams are being designed to test knowledge of basic security problems that may arise during programming, not to test advanced security knowledge. The objective is to test an individual's ability to spot coding errors and apply fundamental best practices while coding software. Click Here to View Full Article |
| < Prev | Next > |
|---|
Upcoming Public Events:
With your technical knowledge you are kind of ambidextrous in your domain