Study. uk . com
  1. Home
  2. All questions
  3. Question 476

CISSP study material · question 476 of 500

Which three parts does OWASP give for having a secure design? Choose three.

  1. Having a secure development life cycle.
  2. Creating a secure design.
  3. Gathering requirements and managing resources.
  4. Running a bug bounty programme.
Show the answer

Answer: C. Gathering requirements and managing resources.
B. Creating a secure design.
A. Having a secure development life cycle.

OWASP names three key parts of secure design: requirements gathering and resource management, creating a secure design, and having a secure development life cycle.

Source: OWASP Top 10 A06:2025 (OWASP) — OWASP Top 10:2025 A06 Insecure Design > Description

Challenge yourself on this topic → Study as cards