data.gift
  • Datasets

http://cyfun.data.gift/data/requirement_PR_PS_06_1

http://cyfun.data.gift/data/requirement_PR_PS_06_1
Concept

  • http://cyfun.data.gift/data/CyFun2025

    • External link
    • Internal link
  • http://cyfun.data.gift/data/CyFun2025_delta_BASIC_to_IMPORTANT

    • External link
    • Internal link
  • http://cyfun.data.gift/data/CyFun2025_IMPORTANT

    • External link
    • Internal link
  • http://cyfun.data.gift/data/CyFun2025_ESSENTIAL

    • External link
    • Internal link

  • http://cyfun.data.gift/data/subcategory_PR.PS-06

    • External link
    • Internal link

Properties and relations

Direct links from the subject.

Property Value

type

The subject is an instance of a class.

  • External link
  • Internal link

http://cyfun.data.gift/ontology#Requirement

  • External link
  • Internal link

type

The subject is an instance of a class.

  • External link
  • Internal link

Concept

An idea or notion; a unit of thought.

  • External link
  • Internal link

label

A human-readable name for the subject.

  • External link
  • Internal link

PR.PS-06.1: Security shall be considered throughout the lifecycle of systems and applications, whether developed internally or acquired externally.

http://cyfun.data.gift/ontology#requirementId

  • External link
  • Internal link

PR.PS-06.1

http://cyfun.data.gift/ontology#foundIn

  • External link
  • Internal link

http://cyfun.data.gift/data/loc_CyFun2025_Booklet_IMPORTANT_E_p88

  • External link
  • Internal link

http://cyfun.data.gift/ontology#foundIn

  • External link
  • Internal link

http://cyfun.data.gift/data/loc_CyFun2025_Booklet_ESSENTIAL_E_p127

  • External link
  • Internal link

has broader

Relates a concept to a concept that is more general in meaning.

  • External link
  • Internal link

http://cyfun.data.gift/data/subcategory_PR.PS-06

  • External link
  • Internal link

note

A general note, for any purpose.

  • External link
  • Internal link

<div><p>The goal of this control is to make sure that security is built into systems and applications from the beginning andmaintainedthroughouttheirentirelife— fromdesigntoretirement —whethertheyaredevelopedin-house or purchased. To achieve this goal:</p><ul><li>Initiation Phase Security requirements should be defined early, risks identified, and relevant stakeholders, including security experts, engaged from the start.</li><li>Acquisition or Development Phase<ul><li>For acquired solutions: vendors should follow secure development practices, provide evidence of testing, and meet contractual security requirements.</li><li>For in-house development: secure coding practices should be applied, changes managed, and security testing conducted.</li></ul></li><li>Implementation Phase Systems should be securely configured before deployment, with access controls and encryption applied to protect sensitive data.</li><li>Operations and Maintenance Phase Systems should be monitored for incidents, regularly updated, and security controls reviewed and improved as needed.</li><li>Disposition Phase Systems should be decommissioned securely, sensitive data removed, and lessons learned documented to strengthen future processes.</li></ul></div>

note

A general note, for any purpose.

  • External link
  • Internal link

The goal of this control is to make sure that security is built into systems and applications from the beginning andmaintainedthroughouttheirentirelife— fromdesigntoretirement —whethertheyaredevelopedin-house or purchased. To achieve this goal: • Initiation Phase Security requirements should be defined early, risks identified, and relevant stakeholders, including security experts, engaged from the start. • Acquisition or Development Phase o For acquired solutions: vendors should follow secure development practices, provide evidence of testing, and meet contractual security requirements. o For in-house development: secure coding practices should be applied, changes managed, and security testing conducted. • Implementation Phase Systems should be securely configured before deployment, with access controls and encryption applied to protect sensitive data. • Operations and Maintenance Phase Systems should be monitored for incidents, regularly updated, and security controls reviewed and improved as needed. • Disposition Phase Systems should be decommissioned securely, sensitive data removed, and lessons learned documented to strengthen future processes.

note

A general note, for any purpose.

  • External link
  • Internal link

The goal of this control is to make sure that security is built into systems and applications from the beginning andmaintainedthroughouttheirentirelife— fromdesigntoretirement —whethertheyaredevelopedin-house or purchased. To achieve this goal: - Initiation Phase Security requirements should be defined early, risks identified, and relevant stakeholders, including security experts, engaged from the start. - Acquisition or Development Phase - For acquired solutions: vendors should follow secure development practices, provide evidence of testing, and meet contractual security requirements. - For in-house development: secure coding practices should be applied, changes managed, and security testing conducted. - Implementation Phase Systems should be securely configured before deployment, with access controls and encryption applied to protect sensitive data. - Operations and Maintenance Phase Systems should be monitored for incidents, regularly updated, and security controls reviewed and improved as needed. - Disposition Phase Systems should be decommissioned securely, sensitive data removed, and lessons learned documented to strengthen future processes.

note

A general note, for any purpose.

  • External link
  • Internal link

The goal of this control is to make sure that security is built into systems and applications from the beginning andmaintainedthroughouttheirentirelife— fromdesigntoretirement —whethertheyaredevelopedin-house or purchased. To achieve this goal: - Initiation Phase Security requirements should be defined early, risks identified, and relevant stakeholders, including security experts, engaged from the start. - Acquisition or Development Phase - For acquired solutions: vendors should follow secure development practices, provide evidence of testing, and meet contractual security requirements. - For in-house development: secure coding practices should be applied, changes managed, and security testing conducted. - Implementation Phase Systems should be securely configured before deployment, with access controls and encryption applied to protect sensitive data. - Operations and Maintenance Phase Systems should be monitored for incidents, regularly updated, and security controls reviewed and improved as needed. - Disposition Phase Systems should be decommissioned securely, sensitive data removed, and lessons learned documented to strengthen future processes.

notation

A notation, also known as classification code, is a string of characters such as "T58.5" or "303.4833" used to uniquely identify a concept within the scope of a given concept scheme.

  • External link
  • Internal link

PR.PS-06.1

alternative label

skos:prefLabel, skos:altLabel and skos:hiddenLabel are pairwise disjoint properties.

  • External link
  • Internal link

Secure system development lifecycle

preferred label

A resource has no more than one value of skos:prefLabel per language tag, and no more than one value of skos:prefLabel without language tag.

  • External link
  • Internal link

Security shall be considered throughout the lifecycle of systems and applications, whether developed internally or acquired externally.

is in scheme

Relates a resource (for example a concept) to a concept scheme in which it is included.

  • External link
  • Internal link

http://cyfun.data.gift/data/CyFun2025

  • External link
  • Internal link

is in scheme

Relates a resource (for example a concept) to a concept scheme in which it is included.

  • External link
  • Internal link

http://cyfun.data.gift/data/CyFun2025_delta_BASIC_to_IMPORTANT

  • External link
  • Internal link

is in scheme

Relates a resource (for example a concept) to a concept scheme in which it is included.

  • External link
  • Internal link

http://cyfun.data.gift/data/CyFun2025_IMPORTANT

  • External link
  • Internal link

is in scheme

Relates a resource (for example a concept) to a concept scheme in which it is included.

  • External link
  • Internal link

http://cyfun.data.gift/data/CyFun2025_ESSENTIAL

  • External link
  • Internal link

http://cyfun.data.gift/ontology#level

  • External link
  • Internal link

http://cyfun.data.gift/data/level_IMPORTANT

  • External link
  • Internal link

triple count

The number of triples associated with the subject.

  • External link
  • Internal link

19

in dataset

Specifies the dataset the subject is part of.

  • External link
  • Internal link

http://data.gift/d/datasets/69E8863AA6CE46D9ACD13109

  • External link
  • Internal link

Resultaten 1 - 21 of 21

References

Inverse links to the subject.

Property Subject

http://cyfun.data.gift/ontology#hasRequirement

  • External link
  • Internal link

http://cyfun.data.gift/data/subcategory_PR.PS-06

  • External link
  • Internal link

has narrower

Relates a concept to a concept that is more specific in meaning.

  • External link
  • Internal link

http://cyfun.data.gift/data/subcategory_PR.PS-06

  • External link
  • Internal link

Resultaten 1 - 1 of 1

© 2024 redpencil.io. All rights reserved.