Software Security for Product Owners and Managers

Security as a management task

© Fraunhofer IEM

The growing threat of security vulnerabilities in software products is putting business success at risk. However, the responsibility for security incidents is often placed solely on the development team. Though, it is the responsibility of product owners and managers to proactively address and systematically embed software security within their areas of responsibility. Secure software development starts at the management and product owner level.

Our goal is to support you as a product owner or manager in promoting secure software development. Our training focuses on providing you with a thorough understanding of your roles and responsibilities related to software security. We show you how to create the right conditions to ensure a secure development environment. In addition, we focus on identifying risks and taking appropriate measures to minimize potential security vulnerabilities and effectively protect your products from attacks.

In our final coaching-on-the-job, you will receive individualized advice on security challenges in your area of responsibility. This will allow you to strategically apply your new knowledge and further strengthen your software security skills as a product owner or manager.

Our training is open to individuals with prior knowledge of software security as well as those with no specific experience. We emphasize a confidential and respectful learning environment, taking into account the sensitivity of the subject matter and respecting individual limits of openness.

Our software security training for product owners and managers provides answers to the following questions:

  • What are my roles, responsibilities, and tasks as a product owner or manager in the context of software security?
  • What are the typical entry points for attackers?
  • What is software security, why is it important, and how does it differ from other types of security?
  • Which laws and standards do we have to consider?
  • How do I identify and address software security risks?
  • What can I do as a product owner or manager to ensure secure software development?
  • What software security contingency plans should I have in place?
  • How can I build the necessary skills in my area of responsibility?
  • How can I raise awareness of software security within my organization?