Information Security Risk Management Programs Part 3
source: http://https://www.infosecisland.com/blogview/13228-Information-Security-Risk-Management-Pro...
-
-
- Paisano1
- added this
Business use cases must be consumed by the IT group to build functional/non-functional requirements. Security mis-use cases in their remediated language turn into functional/non-functional requirements. If security is engaged - we translate them into detailed technical requirements...
https://www.infosecisland.com/blogview/13228-Information-Security-Risk-Managemen...
https://www.infosecisland.com/blogview/13228-Information-Security-Risk-Managemen...