Unit of competency Outline
Date retreived
23/07/2026 12:27 AM AWST
23/07/2026 12:27 AM AWST
Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.
Implement security for applications
Implement security for applications
Unit of competency
National Code
ICTPRG507
ICTPRG507
State Code
AUV80
AUV80
TGA Status
Replaced
Replaced
DTWD Status
Replaced
Replaced
State Implementation and Classification
Approved Date
16/09/2015
Field of Education
020103 - Programming
Original Release Date
16/09/2015
Nominal Hours
50
Description
This unit describes the skills and knowledge required to implement security for software applications, including code access security, security access control, cryptographic and secure, input and output handling.It applies to individuals who may be responsible for coding secure software applications and who may work as software developers, software engineers, system and security administrators, and testers.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Implement policy-based code-access security in an application
- 1.1 Identify the purpose of application security in software development
- 1.2 Configure the platform security configuration files using security configuration tools
- 1.3 Define a custom code access permission, to restrict access to protected resources or to run protected operations
2. Implement security access control in an application
- 2.1 Plan an authentication and authorisation strategy
- 2.2 Develop an appropriate authentication and authorisation strategy for an application
3. Write code to encrypt and decrypt data for secure communication
- 3.1 Analyse the standard cryptographic algorithms
- 3.2 Encrypt, and decrypt, data using standard cryptographic algorithms
4. Protect an application against injections
- 4.1 Plan secure input and output handling, to prevent vulnerabilities related to code injections
- 4.2 Use secure input and output handling
No information
No information
Replaces
| State Code | National Code | Title | Type |
|---|---|---|---|
| D8022 | ICAPRG507A | Implement security for applications | Unit of competency |
Replaced By
| State Code | National Code | Title | Type |
|---|---|---|---|
| OBT04 | ICTPRG537 | Implement security for applications | Unit of competency |
| State Code | National Code | Title | Type |
|---|---|---|---|
| AC942 | ICTSS00031 | Application Development Specialist Skill Set | Skill set |
| AWA1 | ICT50515 | Diploma of Database Design and Development | Qualification |
| AWF1 | ICT50115 | Diploma of Information Technology | Qualification |
| BEH1 | ICT50118 | Diploma of Information Technology | Qualification |
| AWE6 | ICT50715 | Diploma of Software Development | Qualification |
| BEG8 | ICT50718 | Diploma of Software Development | Qualification |
| AWE3 | ICT50615 | Diploma of Website Development | Qualification |