NIST-800-53-SA-11 2

Developer Security Testing and Evaluation | Threat and Vulnerability Analyses

System and Services Acquisition Policy for 18F requires the developer of the information system, system component, or information system service to perform threat and vulnerability analyses and subsequent testing/evaluation of the as-built system, component, or service. Covered By:

