The OWASP Application Security Verification Standard is understood by many as a simple test catalog for penetration testing and code reviews. However, I would like to showcase how to fully integrate this security treasure chest in your secure software development lifecycle.
Here’s what’s on the menu:
* An introduction to ASVS for those who have never seen it before
* How to fully integrate the ASVS in key activities of your secure software development process
* Preparation and procedure for certification according to the ASVS
* A speculative outlook into the future of the ASVS