IAM-26—Source Code Security
>Control Description
Access to modify source code is restricted to authorized personnel.
Theme
Process
Type
Preventive
Policy/Standard
Access Management Procedure>Implementation Guidance
1. Ensure that access to modify source code is restricted to authorized personnel.
>Testing Procedure
1. Observe and validate the change management process for code development process. 2. Observe configurations in code source management tools showing that only authorized users are able to make changes to source code. 3. Observe a sample of code change tickets, to show that only authorized personnel were able to make the appropriate change necessary.
>Audit Artifacts
E-IAM-36
E-IAM-37
>Framework Mappings
Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.
Ask AI
Configure your API key to use AI features.