SA-21—Developer Screening
>Control Description
The enterprise should implement screening processes for their internal developers. For system integrators who may be providing key developers that address critical components, the enterprise should ensure that appropriate processes for developer screening have been used. The screening of developers should be included as a contractual requirement and be a flow-down requirement to relevant sub-level subcontractors who provide development services or who have access to the development environment.
>Cross-Framework Mappings
Ask AI
Configure your API key to use AI features.