Which NIST Special Publication defines the System Development Life Cycle (SDLC)?

Enhance your preparation for the Federal IT Security Professional Test. Use quizzes, flashcards, and detailed explanations to ensure success. Stay ahead in the field of IT Security!

Multiple Choice

Which NIST Special Publication defines the System Development Life Cycle (SDLC)?

Explanation:
Understanding how security is integrated into the development process is what this item tests. NIST SP 800-64, titled Security Considerations in the System Development Life Cycle, is the publication that defines the System Development Life Cycle and explains how security activities are performed at each phase—from initiation through disposal. That explicit definition and guidance on embedding security across the lifecycle is why this document is the correct reference. Other publications cover related topics like risk assessment or security controls, but they do not define the SDLC itself.

Understanding how security is integrated into the development process is what this item tests. NIST SP 800-64, titled Security Considerations in the System Development Life Cycle, is the publication that defines the System Development Life Cycle and explains how security activities are performed at each phase—from initiation through disposal. That explicit definition and guidance on embedding security across the lifecycle is why this document is the correct reference. Other publications cover related topics like risk assessment or security controls, but they do not define the SDLC itself.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy