Domain 8: Software Development Security
One of the responsibilities of the release control process is ensuring that the process includes acceptance testing that confirms that any alterations to end-user work tasks are understood and functional prior to code release. The request control, change control, and configuration control processes do not include acceptance testing. The SDLC consists of seven phases, in the following order: i) conceptual definition ii) functional requirements determination iii) control specifications development iv) design review v) code review vi) system test review and vii) maintenance and change management Assurance is the level of confidence that software is free from vulnerabilities, either intentionally designed into the software or accidentally inserted at any time during its lifecycle, and that the software functions in the intended manner. It is a term typically used in military and defense environments. Change Control is responsible for provi...