Application Security - Methodology

Methodology

According to the patterns & practices Improving Web Application Security book, a principle-based approach for application security includes:

  • Knowing your threats.
  • Securing the network, host and application..
  • Incorporating security into your software development process

Note that this approach is technology / platform independent. It is focused on principles, patterns, and practices.

Read more about this topic:  Application Security

Famous quotes containing the word methodology:

    One might get the impression that I recommend a new methodology which replaces induction by counterinduction and uses a multiplicity of theories, metaphysical views, fairy tales, instead of the customary pair theory/observation. This impression would certainly be mistaken. My intention is not to replace one set of general rules by another such set: my intention is rather to convince the reader that all methodologies, even the most obvious ones, have their limits.
    Paul Feyerabend (1924–1994)