Lightweight S–SDLC (Secure Software Development Lifecycle) is an overall security software methodology for Web and APP developers. It is created to help software companies to reduce security issue, and improve the quality of software security.
S-SDLC defines security software development process as well as guides, tools, and templates of activities in each phase.
It contains some of current OWASP project and will also added more documents to provide a full lifecycle security instructions.
Lightweight S–SDLC including:
l Training: Security Trainings, such as security awareness, fundamentals of application security, S-SDLC introduction and other professional security knowledge.
l Requirements Phase: How to evaluate software risk and establish security requirements.
l Design Phase: Providing security designing and threat modeling guide.
l Implement Phase: OWASP secure coding guide, security function library and code review guide.
l Testing Phase: OWASP Testing guide
l Release/maintenance Phase: Create vulnerability management guide.