Under active development Content is continuously updated and improved

TDA-05Developer Architecture & Design

Weight: 8

>Control Description

Mechanisms exist to require the developers of Technology Assets, Applications and/or Services (TAAS) to produce a design specification and security architecture that: (1) Is consistent with and supportive of the organization's security architecture which is established within and is an integrated part of the organization's enterprise architecture; (2) Accurately and completely describes the required security functionality and the allocation of security controls among physical and logical components; and (3) Expresses how individual security functions, mechanisms and services work together to provide required security capabilities and a unified approach to protection.

>Cross-Framework Mappings

NIST SP 800-53 r5

FedRAMP Rev 5

NIST AI RMF

Canada ITSP 10.171

CIS Controls v8.1 (Detailed)

ISO 27002:2022

NIST SP 800-171 Rev 3

NIST SP 800-218 SSDF

CISA SSDAF

Executive Order 14028

Ask AI

Configure your API key to use AI features.