Meeting - 2010-09-13 - Notes

Meeting - 2010-09-13 - Notes

Security Development Life Cycle (SDL)

  • Bob Ono presented IET Architecture Meeting.ppt, a summary of the information presented at the recent two-day semnar at UC Davis.  It included a demonstration Microsoft's SDL threat modeling tool..
  • The issue of who is responsible for SDL was discussed.  In general, it's a project's sponsors. IET doesn't tend to enforce standards if sponsors do not agree.