Building Solid Security Testing Requirements

Table of Contents
We know that security is a big deal, which is why TSG Training is running ISTQB Advanced Security Tester courses in association with industry-expert Randall Rice, who visits us next on November 12-15 in London. The problem is with security is that it is such a big field, but we don’t seem to have a handle on it as in industry. Too frequently we see companies fix things and learn lessons once they’ve fallen foul of a security breach, but is that really what we should be doing? Prevention is definitely better than cure, particularly if you consider the publicity damage (TSB, Tesco and many others recently) and increasing sizes of fine being dolled out to companies falling foul of what are now well established guidelines from the regulators and the measures they will apply So, where do we begin to get security into our systems? The same place as every other requirement – smack at the beginning of the programme, where security can be included with everything else and tested as being correct and able to be built. This, too is a big deal, as the breadth of security requirements has become increasingly wide, the result of which is that security is either missed out or simply tested as a ‘firewall’ post build activity . To help, Randall has compiled a series of slides specifically on the subject of getting security requirements right and built in from the start. These will help you with a number of key measures, including: Business confidence, you are building the right thing, you are building the thing right. Randall will be talking about requirements of security as just one of the topics on the new ISTQB Advanced Security course at TSG, the first of which is on November 12-15. Find out more about the course and come and join us – see here.

Table of Contents

Related Articles

ITIL and test management

How ITIL meets test management with continuous quality

When you hear the word ITIL, you might think of service desks, incident queues, and change request forms. And when you hear test management, you might picture test cases, defect logs, and sprint cycles. At first glance, these two worlds can feel miles apart one rooted in IT service management, the other in software delivery. However, in

Read More »
Software Testing

The Training Stack: Stack software testing and skills for maximum ROI

In software development, a technology stack is the carefully chosen set of tools, frameworks, and languages that work together to build and run an application. Each layer plays a role. For example,  the database stores the data, the backend powers the logic, and the frontend delivers the user experience. A good stack is balanced, complementary,

Read More »
IT Service Management

From Service Desk to Strategic Leader: A 12-month career roadmap

Front-line service‑desk roles are rarely permanent destinations. Many analysts view the desk as a springboard toward service-management leadership, especially now that ITIL 4 emphasises adaptable value streams over rigid processes. Below is a month-by-month plan to help you transition from ticket tamer to strategic service leader, complete with certification milestones, stretch projects, and metrics that

Read More »
7 Steps to Plan Your Next Certification

Skill‑Gap Self‑Audit: 7 Steps to Plan Your Next Certification

Certification budgets are finite, and the options for training continue to grow. However, without a structured review, you risk chasing fashionable badges that don’t advance your career or your organisation. A skills gap self-audit provides a clear, evidence-based map from your current competence to the next step in certification and career. The seven steps below

Read More »

Pass Protect, offered by TSG Training, is a valuable option for those concerned about the possibility of not passing their exam on the first attempt. It acts like an insurance policy, allowing you to resit your exam at a significantly reduced rate. Pass Protect covers one resit per exam purchased, so you don’t have to worry about the cost of an additional attempt if you don’t pass initially.

Enquire Now