ISTQB · Topic 15 of 15
Standards, Regulations, and Compliance
~5% of exam. Standards (ISO 27001, NIST CSF, OWASP ASVS, PCI-DSS), regs (GDPR, HIPAA), compliance vs security distinction.
4 lessons400 questions
What this topic covers
- 01Major Security Standards360m
- 02Regulatory Requirements Affecting Security Testing360m
- 03Compliance Testing vs Security Testing300m
- 04Chapter Review and Practice Questions480m
Other topics in CT-STE — Security Test Engineer
Introduction to Security Test Engineering6 lessonsFundamentals of Security Testing4 lessonsThreat Modeling & Risk Assessment6 lessonsSecurity Test Design5 lessonsApplication Security Testing6 lessonsSpecific Security Test Topics8 lessonsSecurity Testing Tools7 lessonsSecurity Test Automation & CI/CD Integration6 lessonsSecurity Test Implementation and Execution7 lessonsSecurity Test Analysis and Reporting4 lessonsInfrastructure & Network Testing6 lessonsCryptography & Data Protection Testing6 lessonsSecurity Testing as Part of an ISMS4 lessonsSecurity Test Strategy and Planning5 lessons