Reference no: EM134011970
Question
Security activities should be physically and logically integrated into an organization's SDLC policy and guidelines versus maintaining them in a separate, complementary document or security life cycle
The most effective way to accomplish the integration of security within the system development life cycle is to plan and implement a comprehensive risk management program.
Tasks:
Research and develop a well thought-out, graduate-level paper, of NO LESS than three pages, which addresses the following:
1. What is risk management?
2. How is risk management appropriately applied to the systems development life cycle (SDLC)?
3. When is risk management most appropriately integrated into the SDLC?
4. Identify three (3) risks that a systems analyst should be aware of or on the lookout for during the SDLC.
5. Provide a recommendation for each of the three risks that you have identified, in step 4, designed to mitigate that risk effecting the organization's SDLC.