Basic risk management concepts
Identify confidentiality, integrity, and availability as to how they affect secure
coding, basic risk management concepts, and the generation of the team
concept in creating a secure development culture.
Explain the legal requirements about privacy that could affect the
development process, identify legal requirements that impact information
system developments, decide how governance should be applied to the
organization, and explain the difference between policies and procedures.
Identify probable locations in the system for forgery, correctly apply input
validation, and identify the access points into the system.
Explain the mitigation process for security vulnerabilities of browsers and
client-side applications and explain how to build security into a Web
application.

