行业标准网
文库搜索
切换导航
文件分类
频道
文件分类
批量下载
S-SDLC CMM 1 S-SDLC CMM 软件安全 开发能 力成熟度模型 S-SDLC CMM 2 文档修订记录 版本 变化状态 修订说明 日期 变更人 备注 V1.0 N 新建文档 2022- 12-30 S-SDLC CMM V2.2 M 修订 2023- 03-06 S-SDLC CMM V2.3 M 修订 2023- 03-22 S-SDLC CMM V2.0 M 新增 DevSecOps 平台能力 2023- 03-06 S-SDLC CMM S-SDLC CMM 3 目 录 Contents 文档修订记录 ...................................................................................................................................................... 2 CONTENTS ........................................................................................................................................................... 3 1. 背景 ................................................................................................................................................................ 7 2. 模型概述 ......................................................................................................................................................... 7 2.1. 什么是S -SDLC CMM ............................................................................................................................... 7 2.2. S-SDLC CMM术语表 ............................................................................................................................... 7 2.3. S-SDLC CMM结构 ................................................................................................................................... 7 2.4. S-SDLC CMM评估域概述 ........................................................................................................................ 8 2.5. S-SDLC CMM成熟度级别 ...................................................................................................................... 12 3. 安全开发实践 ................................................................................................................................................ 14 3.1. 监管..................................................................................................................................................... 14 3.1.1. 流程与政策 ................................................................................................................................................... 14 3.1.2. 合规性 ........................................................................................................................................................... 14 3.1.3. 培训 ............................................................................................................................................................... 15 3.1.4. 软件供应链安全管理 ................................................................................................................................... 16 3.2. 能力..................................................................................................................................................... 16 3.2.1. 攻击模型 ....................................................................................................................................................... 16 3.2.2. 安全设计方案与安全开发组件 ................................................................................................................... 17 3.2.3. 第三方组件库管理 ....................................................................................................................................... 17 3.2.4. 标准与要求 ................................................................................................................................................... 18 3.2.5. 敏感数据处理 ............................................................................................................................................... 20 3.3. 触点..................................................................................................................................................... 20 3.3.1. 安全需求分析 ........................................................
S-SDLC-CMM
文档预览
中文文档
27 页
50 下载
1000 浏览
0 评论
309 收藏
3.0分
赞助2元下载(无需注册)
温馨提示:本文档共27页,可预览 3 页,如浏览全部内容或当前文档出现乱码,可开通会员下载原始文档
下载文档到电脑,方便使用
赞助2元下载
本文档由 思考人生 于
2023-12-02 21:08:13
上传分享
举报
下载
原文档
(1.5 MB)
分享
友情链接
ISO 22435 2024 Gas cylinders — Cylinder valves with integrated.pdf
ISO 4641 2024 Rubber hoses and hose assemblies for water suction and discharge — Specification.pdf
ISO-IEC 17839-2 2024 Information technology - Biometric System-on-Card - Part 2 Physical characteristics.pdf
ISO 26900 2024 Space data and information transfer systems — Orbit data messages.pdf
ISO TS 80004-13 2024 Nanotechnologies - Vocabulary - Part 13 Graphene and related two-dimensional (2D) materials.pdf
ISO 14119 2024 Safety of machinery — Interlocking.pdf
ISO 24682 2024 Ships and marine technology Technical requirements for B class fire-resistant compartment systems of composite mineral wool panel.pdf
ISO 18128 2024 Information and documentation — Records risks — Risk assessmentt.pdf
ISO 19885-1 2024 Gaseous hydrogen Fuelling protocols for hydrogen-fuelled vehicles Part 1 Design and development process for fuelling protocols.pdf
ISO 34257 2024 Adhesives — Wood adhesives — Determination of tensile strength o.pdf
GB-T 25778-2010 焊接材料采购指南.pdf
GB 439-1990 航空喷气机润滑油.pdf
GB-T 17146-2015 建筑材料及其制品水蒸气透过性能试验方法.pdf
GB-T 17601-2023 耐火材料 耐酸性试验方法.pdf
GB-T 17492-2019 工业用金属丝编织网 技术要求和检验.pdf
GB-T 19699-2023 船舶和海上技术 液货舱压力-真空阀和阻火装置.pdf
GB-T 11638-2020 乙炔气瓶.pdf
GB-T 2674-2017 内六角花形半沉头螺钉.pdf
GB-T 39981-2021 建筑施工机械与设备 便携、手持、内燃机式切割机 安全要求.pdf
GB-T 19844-2018 钢板弹簧 技术条件.pdf
1
/
3
27
评价文档
赞助2元 点击下载(1.5 MB)
回到顶部
×
微信扫码支付
2
元 自动下载
官方客服微信:siduwenku
支付 完成后 如未跳转 点击这里 下载
站内资源均来自网友分享或网络收集整理,若无意中侵犯到您的权利,敬请联系我们
微信(点击查看客服)
,我们将及时删除相关资源。