Under active development Content is continuously updated and improved

TDA-06.1Criticality Analysis

Weight: 9

>Control Description

Mechanisms exist to require the developer of the Technology Asset, Application and/or Service (TAAS) to perform a criticality analysis at organization-defined decision points in the Secure Development Life Cycle (SDLC).

>Cross-Framework Mappings

NIST CSF 2.0

SOC 2 TSC

OSFI B-13

SOC 2 TSC (Detailed)

ISO 27002:2022

NIST SP 800-218 SSDF

Data Privacy Management Principles

CISA SSDAF

Executive Order 14028

Ask AI

Configure your API key to use AI features.