Advisory

Advisory  Secure System and Software Lifecycle Management Standard

Date: 10/05/2018
Organization: Cybersecurity and Enterprise Risk Management
Referenced Sources: MGL Chapter 7D, Section 2

The Secure System and Software Lifecycle Management Standard establishes requirements for identifying controls to be incorporated in system and software planning, design, building, testing and implementation.

Contact   for Secure System and Software Lifecycle Management Standard

Cybersecurity and Enterprise Risk Management

Online

For cybersecurity or risk management questions: Email Cybersecurity and Enterprise Risk Management at ERM@mass.gov

Table of Contents

Purpose

The Secure System and Software Lifecycle Management Standard establishes requirements for controls that shall be incorporated in system and software planning, design, building, testing, and implementation, including:

  • Information security activities that shall occur during the system and software development life cycle.
  • Required controls for supporting system or software development processes such as segregation of environments, prevention and/or protection of confidential production data in test environments.
  • The use of version control for software development.
  • Requirements for security hardening when building and configuring systems and applications.

Downloads   for Secure System and Software Lifecycle Management Standard

Contact   for Secure System and Software Lifecycle Management Standard

Online

For cybersecurity or risk management questions: Email Cybersecurity and Enterprise Risk Management at ERM@mass.gov
Referenced Sources:

Help Us Improve Mass.gov  with your feedback

Please do not include personal or contact information.
Feedback