ISO/IEC 27000 Secure Development Life Cycle, v2022

Specifies requirements in accordance with the security and privacy controls specified by ISO/IEC Publication 27001:2022, related to secure development life cycle.

Assessment Step

1
Secure Development Life Cycle (SecureDevelopmentLifeCycle)
Are rules for the secure development of software and systems established and applied?
Artifact
A1
Provide evidence (e.g. organizational policies, procedures, compliance/assessment reports, etc.) and supporting notes as appropriate to support the assessor's response to this assessment step.

Conformance Criteria (1)

Secure Development Life Cycle
Rules for the secure development of software and systems shall be established and applied.
Citations
27001
Annex A, Control 8.25
27002
Section 8.25