🔥 3-day streak
ISACA CRISC — Certified in Risk and Information Systems Control136 / 150
Question 136 of 150

A development team is building a new customer-facing web application under an accelerated SDLC. The risk practitioner is asked when security requirements should be formally defined to most cost-effectively reduce the risk of vulnerabilities being embedded in the final product. Which SDLC phase is the BEST point to define these requirements?

Reviewed for accuracy · Report an issueNext question