Skip to main content

πŸ’Ό SA-3 SYSTEM DEVELOPMENT LIFE CYCLE

Description​

The organization: SA-3a. Manages the information system using [Assignment: organization-defined system development life cycle] that incorporates information security considerations; SA-3b. Defines and documents information security roles and responsibilities throughout the system development life cycle; SA-3c. Identifies individuals having information security roles and responsibilities; and SA-3d. Integrates the organizational information security risk management process into system development life cycle activities.

Similar​

  • Internal
    • ID: dec-c-0496850e

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.IP-2: A System Development Life Cycle to manage systems is implemented66

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags