What oversight should the information security team have in the change management process for application security?
A.
Information security should be informed of changes to applications only
B.
Development team should tell the information security team about any application security flaws
C.
Information security should be aware of any significant application security changes and work with developer to test for vulnerabilities before changes are deployed in production
D.
Information security should be aware of all application changes and work with developers before changes are deployed in production
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit