Skip to main content

What do you think of this service? Your feedback will help us to improve it.

Secure Development

Skill Definition

Secure development allows for the implementation of secure systems, products and components, using appropriate methodologies and frameworks. It includes the development, creation, maintenance and coding of new (or modification of existing) computer applications, software or bespoke utility programs for business outcomes.

Awareness

  • Understands basic application/hardware/service development life cycle
  • Familiar with application, fraud, error and business logic exploits
  • Recognises basic to advanced languages to create a digital service
  • Comprehends the common Technical Security controls

Working

  • Develops services by writing programming and scripting language
  • Takes a lead in conducting software debugging and guides developers/engineers to resolve issues
  • Creates and delivers automated assurance against Technical Security guidance and configurations
  • Implements business logic and technical solutions to design out fraud and error
  • Builds and implements security audit points in digital services
  • Drives secure coding practices and champions them in the engineering community

Practitioner

  • Develops services by writing programming and scripting language
  • Leads software debugging and guides developers/engineers to resolve issues
  • Creates and delivers automated assurance against Technical Security guidance and configurations
  • Implements business logic and technical solutions to design out fraud and error
  • Builds and implements security audit points in digital services
  • Drives secure coding practices and champions them, including in the engineering community

Expert

  • Leads the implementation of secure development principles, software and hardware debugging. Guides developers/engineers
  • Develops services by writing advanced programming and scripting language
  • Creates and delivers automated assurance against Technical Security guidance and configurations
  • Implements security remediations and performs root cause analysis
  • Leads the development of advanced security audit points in digital services
  • Drives secure coding practices and champions them, including in the engineering community

Sign up to UK Government Security

Subscribe to our newsletters to receive notifications when changes to strategy, policy, standards, and guidance are published on the website.

Sign up now