(ISC)2 aims to fill software security gap

Information security body (ISC)2 has moved to fill what it sees as a gap in managing software risks, with an effort to improve skills in supply chain and software acquisition.

It has added a new domain to the Certified Secure Software Lifecycle Professional (CSSLP) credential exam, to ensure candidates know the security measures to take when acquiring software.