CLASP Concepts Flashcards
What are the Concepts behind Developing CLASP?
1- Adaptability of CLASP to Existing Development Processes
2-CLASP Vulnerability Lexicon
3-Automated Analysis Tool
what does Adaptability to Existing Development Processes mean?
CLASP is designed to easily integrate its security activities in the existing application lifecycle.
each activity in CLASP is divided into discrete process components and linked to one or more specific project roles. In this way CLASP can provide guidance to project participants that is easy to adopt to their way of working;
can you talk about CLASP Vulnerability Lexicon?
CLASP contains them to help development teams avoid/remediate specific designing/coding errors that can lead to exploitable security services.
The basis of this Lexicon is a highly flexible taxonomy which enables evelopment teams to quickly locate Lexicon information from many perspectives.
what about Automated Analysis Tool in CLASP
Much of the information in the CLASP Vulnerability Lexicon can be enforced through use of automated tools using techniques of static analysis of source code.