Cybersecurity Perspectives: Systems Lifecycle Management Approach

by Craig McComb

One way to approach cybersecurity is through the system development lifecycle (SDLC) management approach. Using SDLC, one begins cybersecurity planning along with requirements formation during the requirements (or initiation) phase. As well as identifying and prioritizing user-based functional requirements and systems technical requirements [1], organizations should address data privacy issues, confidentiality, authentication, nonrepudiation, and other aspects of the data and information the proposed system will utilize. Both information and systems owners should be collaboratively and objectively involved. At this stage, it is also important to understand the potential threats to which the proposed system will be exposed in light of the system's known and potential vulnerabilities and to begin the initial planning of how to test cybersecurity requirements against the proposed system during the system testing phase.

Password Protected Cutter Consortium clients, please log in:


This document is available to Cutter Consortium Resource Center clients only. Retrieve password.
If you would like further information about how to become a client, please contact us at +1 781 648 8700 or sales@cutter.com.
Cybersecurity Perspectives: Systems Lifecycle Management Approach 17 September 2003