Over the life of an application, it's likely that you'll want to validate how well that app adheres to your security requirements. In this video, learn how you can do this using a security requirement traceability matrix (SRTM).
- [Jarod] If you use all the info … you've learned throughout this course to identify … and document your application security requirements, … you'll have done a pretty stellar job at figuring out … what controls you need to secure your application. … But there's still one last piece. … You'll want one additional document … to help you keep track of all these requirements, … something you can use to track whether or not … the developers actually implemented these security controls. … You'll want a security requirements traceability matrix. … The concept of a requirements traceability matrix … is nothing new in the app dev world. … The only difference here is that your matrix … should focus on application security requirements. … A requirements traceability matrix, or RTM, … is a document that captures … each requirement at a high level, … as well as test case details related to each requirement. … A traditional requirements test matrix … is going to focus on three types of requirements, …
Share this video
Embed this video
Video: Security requirement traceability matrix