Organizational Control: Development Process, Standards, And Tools
Control ID: SA-15 Development Process, Standards, And Tools | Family: System and Services Acquisition | Source: NIST 800-53r4 |
Control: The organization:
|
||
Supplemental Guidance: Development tools include, for example, programming languages and computer-aided design (CAD) systems. Reviews of development processes can include, for example, the use of maturity models to determine the potential effectiveness of such processes. Maintaining the integrity of changes to tools and processes enables accurate supply chain risk assessment and mitigation, and requires robust configuration control throughout the life cycle (including design, development, transport, delivery, integration, and maintenance) to track authorized changes and prevent unauthorized changes. Related Controls: SA-3, SA-8 |
||
Control Enhancements: N/A | ||
References: N/A | ||
Mechanisms: | ||
Protocol Implementation Conformance Statements: N/A |