Skip to content

Commit

Permalink
Removed sldc connection standard as it has no resource, put opencre a…
Browse files Browse the repository at this point in the history
…t top, some rewording (#55)
  • Loading branch information
robvanderveer authored Aug 21, 2024
1 parent 1706ad7 commit 586dfe5
Showing 1 changed file with 3 additions and 4 deletions.
7 changes: 3 additions & 4 deletions index.md
Original file line number Diff line number Diff line change
Expand Up @@ -11,12 +11,11 @@ pitch: Standards to integrate between standardisation projects to properly handl

The goal of the Integration Standards project is to facilitate technical interaction between software security initiatives inside OWASP and outside: links between documents and exchange between tools. More interaction reduces fragmentation and complexity of the standard landscape which has been making it hard for developers, testers, and procurement to set and apply appropriate standards and attain a shared understanding.

Four deliverables are specified:
This project produced three results:

- A study of **OWASP in the SDLC** (see [report](writeups/owasp_in_sdlc/))
- The **Open Common Requirement Enumeration** or OpenCRE: a revolutionary mechanism to link standards and guidelines together on multiple levels of topics, providing a harmonized resource for requirements, testing strategies, tool rules, countermeasures, and links to existing repositories of threats and weaknesses. OpenCRE is live at [opencre.org](https://www.opencre.org). Where all standards come together.
- The **Security wayfinder** (see below): an interactive overview of OWASP projects and how they are related
- The **Open Common Requirement Enumeration** or OpenCRE: a mechanism to link between the content of standards and guidelines on multiple levels of topics, bringing together requirements, testing strategies, tool rules, countermeasures, and links to existing repositories of threats and weaknesses. OpenCRE is live at [opencre.org](https://www.opencre.org). Where all standards come together.
- An **SDLC tool exchange standard** on how security initiatives can be integrated by exchanging data regarding different elements of the software development lifecycle (instructions, requirements, tests, test results, threats, findings).
- A study of **OWASP in the SDLC** (see [report](writeups/owasp_in_sdlc/))

## The Security wayfinder

Expand Down

0 comments on commit 586dfe5

Please sign in to comment.