STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 6 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← SA-10 — Developer Configuration Management

CCI-003161

Definition

Require the developer of the system, system component, or system service to track security flaws within the system, component, or service.

Parent Control

SA-10Developer Configuration ManagementSystem and Services Acquisition

Linked STIG Checks (1)

V-222650CAT IIFlaws found during a code review must be tracked in a defect tracking system.Application Security and Development Security Technical Implementation Guide