Under active development Content is continuously updated and improved

IAM-26Source Code Security

>Control Description

Access to modify source code is restricted to authorized personnel.

Theme

Process

Type

Preventive

Policy/Standard

Access Management Procedure

>Implementation Guidance

1. Ensure that access to modify source code is restricted to authorized personnel.

>Testing Procedure

1. Observe and validate the change management process for code development process. 2. Observe configurations in code source management tools showing that only authorized users are able to make changes to source code. 3. Observe a sample of code change tickets, to show that only authorized personnel were able to make the appropriate change necessary.

>Audit Artifacts

E-IAM-36
E-IAM-37

>Framework Mappings

Cross-framework mappings provided by Adobe CCF Open Source under Creative Commons License.

Ask AI

Configure your API key to use AI features.