Unit of competency Outline

Date retreived
23/07/2026 12:27 AM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Implement security for applications

Implement security for applications

Unit of competency
National Code
ICTPRG507
State Code
AUV80
TGA Status
Replaced
DTWD Status
Replaced
Current Release Number
1.00
Current Release Date
25/03/2015
State Implementation and Classification
Approved Date
16/09/2015
Field of Education
020103 - Programming
Original Release Date
16/09/2015
Nominal Hours
50
Description
This unit describes the skills and knowledge required to implement security for software applications, including code access security, security access control, cryptographic and secure, input and output handling.It applies to individuals who may be responsible for coding secure software applications and who may work as software developers, software engineers, system and security administrators, and testers.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Implement policy-based code-access security in an application
  • 1.1 Identify the purpose of application security in software development
  • 1.2 Configure the platform security configuration files using security configuration tools
  • 1.3 Define a custom code access permission, to restrict access to protected resources or to run protected operations
2. Implement security access control in an application
  • 2.1 Plan an authentication and authorisation strategy
  • 2.2 Develop an appropriate authentication and authorisation strategy for an application
3. Write code to encrypt and decrypt data for secure communication
  • 3.1 Analyse the standard cryptographic algorithms
  • 3.2 Encrypt, and decrypt, data using standard cryptographic algorithms
4. Protect an application against injections
  • 4.1 Plan secure input and output handling, to prevent vulnerabilities related to code injections
  • 4.2 Use secure input and output handling
No information
No information
Replaces
State Code National Code Title Type
D8022 ICAPRG507A Implement security for applications Unit of competency
Replaced By
State Code National Code Title Type
OBT04 ICTPRG537 Implement security for applications Unit of competency