Mobile App Security

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Tuesday, 11 June 2013

CompTIA Mobile App Security+ Getting Ready to Launch with Beta Exams

Posted on 17:14 by Unknown
by Janet Pinkerton Tuesday, May 28, 2013 CompTIA Blog


CompTIA and exam development partner viaForensics, a leading mobile security firm, are setting an industry standard for secure mobile app development with the release of the new CompTIA Mobile App Security+ exams. Beta exams are available as of today, and the formal exam release is expected late this summer.

The CompTIA Mobile App Security+ exam has two editions (one for iOS, one for Android) to certify that the successful candidate has the knowledge and skills required to develop secure native mobile applications that ensure secure network communications and backend Web services. Only one exam is required for certification.

"This certification isn't validating skills in developing mobile apps," said CompTIA Vice President of Products Tom Reilly. "It validates that the individual can create secure mobile apps."

>RELATED: Why Mobile App Development is a Risky Business

Prerequisite knowledge recommended for taking the exams includes Objective-C programming (for the iOS exam), Java programming (for the Android exam), plus SDK, SQL coding, mobile and app security essentials, and encryption implementation for the exam's specific operating system platform.

The Mobile App Security+ exams will test a candidate's knowledge and skill regarding:
Security principles, secure development life cycles, and threat models
Security features of software development kits and APIs
Service and network security
Data security and implementing encryption
Application hardening and reverse engineering
Secure coding practices

You can download the full exam objectives for free.
Beta Testers Needed

Mobile application developers with two years of experience are encouraged to validate their security skills by participating in the beta test for either the iOS edition, exam code "MAPS iOS EB beta"; or Android edition, exam code "MAPS ADR EB beta". The beta tests are free and if test-takers receive a passing score, they will become certified when the formal exam launches.

The beta exam period will remain open until 150 people have registered and taken each exam through CompTIA testing partner Pearson VUE.
A Life Cycle Approach to Security

Guided by CompTIA's exam development team, Oak Park, Illinois-based viaForensics developed the Mobile App Security+ objectives and exam questions. The effort included input from a team of industry subject matter experts with government, corporate and academic experience. The team included experts from viaForensics, as well as Kenneth R. Van Wyk of KRvW Associates, Dominic Chell of MDSec Labs, Jorgen Hjort of Maersk Line, author and consultant Jeff Six, and senior security architect/developer Jared Carlson.

viaForensics regularly educates its clients' developers, security teams and executives on how to write more secure mobile apps, but the company opted to partner with CompTIA rather than brand its own exam and certification. "CompTIA's focus, relationships and reputation in IT skills certification made them a great partner for this from our perspective," said Ted Eull, viaForensics' vice president of mobile services.

In addition, the small- and medium-sized businesses sector served by CompTIA and CompTIA members greatly needs the knowledge and skills certified by the credential. "Small- and medium-sized businesses are driving innovation in this country because in many cases they can adapt far more quickly than the larger companies," said viaForensics CEO Andrew Hoog. "With data as the new gold standard, small and medium-sized companies are just as much at risk."

"Cybercriminals and state-sponsored hackers cast a very wide net, trying to capture intellectual property, strategic information and financial vulnerabilities," Hoog added. "They're interested in whatever they can get their hands on."

The Mobile App Security+ certification will help ensure developers know how to integrate mobile app security into product lifecycles, said Eull, who helped manage the subject matter experts developing the test. "That is the best place to solve these problems: Consumers get more secure apps, and the company saves money because they don't have to retroactively fix security problems."
Preparing Candidates for Future Threats

Timed with the launch of the Mobile App Security+ exam, CompTIA Authorized Learning Content Partner Logical Operations will release instructor-facilitated courseware for the iOS and Android editions. The courseware will be available through the CompTIA Marketplace and Logical Operations' e-commerce store.

"Two huge and growing segments of the information technology sector — mobile application development and security — have been brought together in the Mobile App Security+ curriculum," said Logical Operations Vice President of Content Nancy Curtis, adding that the company will market the courseware to commercial training centers, the corporate/government market, and the continuing education sector.

The CompTIA Mobile App Security+ courseware will cover fundamental theory but be "very hands-on," said Brian Wilson, Logical Operations' Senior Instructional Designer. "The training will build on students' current development skills with a focus on secure app development."

Instructor documentation will recommend setting up a server with mobile device simulators commonly used in Android and iOS app development. In addition, Logical Operations recommends instructors provide some activated mobile devices for students to work with.

"We're making this course very strategic—teaching students how to respond to the most common threats, but also giving them the concepts and procedures necessary to identify and mitigate new threats in an ongoing fashion," added Wilson.
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in Computer Science, Digital Media, Industry News, James Jones, Mobility, Web | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • LearningWorks: THE MISSING PIECE: Quantifying Non-Completion Pathways to Success
    ” . . . in the California Community College system . . . nearly one-third of students took an average of just two courses over about two yea...
  • Cisco Career Certifications Awarded American National Standards Institute Accreditation
    Achievement Demonstrates Compliance With Rigorous, Internationally Recognized Standards SAN JOSE, CA--(Marketwire - Jan 16, 2013) - Unders...
  • CyberWatch West Free Student 2 Student Webinar October 30th
    Online Workshop Oct 30 at 10:30 am PDT Man-in-the-Middle Attacks Using Mobile Devices Register @ cyberwatchwest.webex.com Student 2 Student ...
  • Spring 2013 NEW CCCApply Webinar Series
      Monday, 28 January 2013, TechEDge Written by Tim Calhoon Saturday, 26 January 2013 The New CCCApply online admissions application...
  • Community college grads out-earn bachelor's degree holders
    By Jon Marcus at The Hechinger Institute @CNNMoney February 26, 2013: 6:23 AM ET Nearly 30% of Americans with associate's degrees now ...
  • ACM CCECC Alice Summer Workshops Registration now open
    Registration has opened for the Alice Summer Workshops! A week has been set aside for a Community College focused workshop at Walt Disn...
  • CA Career Cafe: CALJOBS Job Search Service Now Available
    “ Somewhere someone is looking for exactly what you have to offer. ”                                                                    - ...
  • Code.org Launches To Help Make Computer Programming Accessible To Everyone
    Drew Olanoff ,  TechCrunch       Drew Olanoff has over 10 years of marketing, PR, customer service and support, relationship buildin...
  • EDGE goals addressed in 2013-14 California State Budget
    California's 2013-14 State Budget and an accompanying trailer bill, AB 86, address key EDGE goals of 1) beginning to restore dedicated f...
  • NCRIC Cyber Internship Program
    Northern California Regional Intelligence Center Cyber Internship Program Northern California Regional Intelligence Center (“NCRIC”) Mission...

Categories

  • Big Data
  • CATV
  • CENIC
  • Certifications
  • Cloud
  • Computational Thinking
  • Computer Engineering
  • Computer Science
  • CTE
  • Database
  • Digital Divide
  • Digital Literacy
  • Digital Media
  • Diversity
  • Educational Technology
  • elearning
  • Electronics
  • Entrepreneur
  • ethics
  • funding opportunity
  • Gaming
  • GIS
  • Grants
  • Hacking
  • Healthcare IT
  • ICT Applications
  • ICT Core Competencies
  • ICT Education
  • ICT Infrastructure
  • ICT Jobs
  • ICT pathways
  • ICT Regulation
  • ICT Research
  • Industry News
  • Innovation
  • Internships
  • James Jones
  • K-12
  • law
  • Linux
  • Mobility
  • MOOC
  • MPICT Announcements
  • Multimedia
  • Networking
  • networking security
  • Olivia Herriford
  • Open Source
  • Operating Systems
  • Pierre Thiry
  • Piracy
  • Public Policy
  • Security
  • Security; Identity Management
  • Smart Grid
  • Social Media
  • Soft Skills
  • Software Assurance
  • Software Engineering
  • Spanish
  • STEM Education
  • Storage
  • Teaching and Learning
  • Telecom
  • Tools
  • virtualization
  • Web
  • WIB
  • Wireless
  • women
  • Women in ICT
  • Workforce Development

Blog Archive

  • ▼  2013 (418)
    • ►  November (41)
    • ►  October (53)
    • ►  September (44)
    • ►  August (21)
    • ►  July (30)
    • ▼  June (28)
      • Volunteers wanted for STEM Summer Camp from July 2...
      • Code.org Update
      • TELL YOUR MEMBER OF CONGRESS TO SUPPORT K-12 COMPU...
      • Cyberattacks the greatest threat to nations, say g...
      • Microsoft Offers Steep Education Discount on Surfa...
      • 6 highest/lowest paid IT jobs
      • Gigabit Squared Unveils Residential Pricing for Lo...
      • California ICT Deputy Sector Navigators Announced!
      • CCC Information Security Services, Website
      • L.A. school board OKs $30 million for Apple iPads
      • "President Obama's Plan to 'Connect' America's You...
      • MPICT Featured in CENIC Quarterly Update
      • Has the World Sent its Last Telegram?
      • Verizon's Wireless 'Voice Link' as a Replacement o...
      • New Salary Surfer Website Shows Median Earnings fo...
      • Phase 2 of AP CS Principles: pilot schools announc...
      • Introducing the New Cisco CCNA Curriculum
      • PG&E LAUNCHES NEW ECONOMIC VITALITY GRANT PROGRAM
      • sfciti: Connecting Teachers and Tech
      • Demand for Tech Pros Continues to Climb
      • CompTIA Mobile App Security+ Getting Ready to Laun...
      • The Hidden STEM Economy: Key Findings
      • Obama urges U.S. to benchmark Korea’s digital revo...
      • California Bill Allowing Credit for MOOCs Passes S...
      • Tablets Displacing Portable PCs
      • 2013 Winter Conference Interviews
      • Amazon’s cloud is how big again?
      • Free San Francisco Faculty Development in San Fran...
    • ►  May (43)
    • ►  April (43)
    • ►  March (35)
    • ►  February (43)
    • ►  January (37)
  • ►  2012 (82)
    • ►  December (25)
    • ►  November (40)
    • ►  October (17)
Powered by Blogger.

About Me

Unknown
View my complete profile