Tools and Resources
Secure Development & Testing · 1 min read
Development Tools
- SAST: SonarQube, Coverity, Fortify
- DAST: OWASP ZAP, Burp Suite
- Fuzzing: AFL++, Peach, LibFuzzer
- SBOM: SPDX tools, CycloneDX
Standards and Guidelines
- OWASP: Application Security Verification Standard
- CERT: Secure Coding Standards
- NIST: Secure Software Development Framework
- IEC 62304: Medical device software lifecycle
Training Resources
- SANS Secure Coding courses
- OWASP Training materials
- ISC2 CSSLP certification
- Medical device specific training
See how your device measures up
Take the free FDA 524B readiness assessment and get a personalized gap report covering this topic and more.
Check Your Readiness