Rules may be extended with organization-specific rules. However, the rules contained in a standard must be obeyed to claim compliance with the standard.
Once established, tools can be developed or modified to determine compliance with the standard. Compliant software systems may then be certified as compliant by a properly authorized certification body.
Training may also be developed to educate software professionals regarding the appropriate application of secure coding standards. After passing an examination, these trained programmers may also be certified as secure coding professionals.