Pre-SDL Requirements: Security Training for LOB


In this section and in the remainder of the SDL-LOB, only supplements to the original SDL are highlighted. To create a complete security plan for LOB applications, you should consult each section of the main SDL and the supplemental information contained in each phase of the SDL-LOB.

In addition to the basic concepts outlined in the main SDL, LOB training should include the following additional topics:

Basic Concepts

  • Regulatory, which can include the following topics:
    • Compliance with SOX, HIPAA, GLBA, PCI.


Content Disclaimer

