Integrating Cybersecurity into SDLC
Overview:
Course concentrates on fundamentals of systems development projects that include application and IT infrastructure. Course will cover different SDLC methodologies for new and major system upgrades. In addition, an overview of system tiers that includes how the OS, DBs, and NW controls need to be considered in the SDLC process. The course will include best practices for managing SDLC projects and how to assess and review IT security controls for SDLC.
Course Outline:
Integrating Cybersecurity into SDLC
· Overview of different SDDLC methodologies
· SDLC for major application development (enhancements and new applications)
·
SDLC for major system upgrades (OS,
DB, NW, etc)
·
System tiers, components, and system
design
·
Best practices for integrating
security into SDLC projects
·
Assessing IT security controls in SDLC programs
No advance preparation or prerequisites are necessary for this course. The program level is basic and is intended for IT Auditors and IT security professionals. The delivery method is Group-Live and 16 CPE hours in the Auditing field of study are available.