July 2018
Intermediate to advanced
356 pages
9h 18m
English
In practice, the security design review can be considered as low-level threat modeling. The following are suggested during design review:
When we are doing a design review for the top security issues, we may also refer to industry practices such as OWASP Top 10 and CWE/SANS Top 25 Most Dangerous Software Errors. Meanwhile, the project team may also build its own top security issue based on historical records or customer feedback: