STIGhub
STIGs
RMF Controls
Compare
← All Controls
SA-3
System and Services Acquisition
Rev 5
System Development Life Cycle
CCI Identifiers (16)
CCI-000615
Manage the system using an organization-defined system development life cycle that incorporates information security considerations.
CCI-000616
Define and document information system security roles and responsibilities throughout the system development life cycle.
CCI-000617
The organization documents information system security roles and responsibilities throughout the system development life cycle.
CCI-000618
Identify individuals having information system security roles and responsibilities.
CCI-003092
Defines a system development life cycle that is used to manage the system.
CCI-003093
Integrate the organizational information security risk management process into system development life cycle activities.
CCI-004669
Acquire the system using an organization-defined system development life cycle that incorporates information security considerations.
CCI-004670
Acquire the system using an organization-defined system development life cycle that incorporates information privacy considerations.
CCI-004671
Develop the system using an organization-defined system development life cycle that incorporates information security considerations.
CCI-004672
Develop the system using an organization-defined system development life cycle that incorporates information privacy considerations.
CCI-004673
Manage the system using an organization-defined system development life cycle that incorporates information privacy considerations.
CCI-004674
Defines a system development life cycle that is used to develop the system.
CCI-004675
Defines a system development life cycle that is used to acquire the system.
CCI-004676
Define and document information system privacy roles and responsibilities throughout the system development life cycle.
CCI-004677
Identify individuals having information system privacy roles and responsibilities.
CCI-004678
Integrate the organizational information privacy risk management process into system development life cycle activities.
Linked STIG Checks (0)
No STIG checks reference this control.