Microsoft Security SDLC Guide Updated - Developer Highway Code

Microsoft updated their sold, free guide to developing secure software. They discuss generic topics that apply to all development:

  • Integrating security into the SDLC
  • Security engineering objectives
  • Web app security design guidelines
  • Threat modeling (tho i'm not crazy about that term)
  • Security architecture & deisgn reviews
  • Security code reviews
  • Security devlelopment reviews

and also provide some specific guidance, checklists and information on Microsoft technologies.

A must-read for all developers.