Back

Disseminate and communicate continuously and routinely regarding system development project requirements.


CONTROL ID
06899
CONTROL TYPE
Behavior
CLASSIFICATION
Detective

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Establish and maintain the overall system development project management roles and responsibilities., CC ID: 00991

There are no implementation support Controls.


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • In implementation, it is necessary to proceed with measures in cooperation with persons in charge. (P19.1. ¶ 2, FISC Security Guidelines on Computer Systems for Financial Institutions, Ninth Edition, Revised March 2020)
  • The organization shall communicate with the project leaders routinely or continuously to ensure the furnished resources meet the project needs. (§ 6.2.2.3(b)(1), ISO 15288-2008 Systems and software engineering - System life cycle processes, R 2008)
  • Collaboration between IT and business units. (App A Objective 12:4b Bullet 1, FFIEC Information Technology Examination Handbook - Architecture, Infrastructure, and Operations, June 2021)
  • Management reports that provide the status of software development and maintenance activities. (App A Objective 3:5 a., FFIEC Information Technology Examination Handbook - Management, November 2015)
  • Confer with systems analysts, engineers, programmers, and others to design application and to obtain information on project limitations and capabilities, performance requirements, and interfaces. (T0034, National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework, NIST Special Publication 800-181)
  • Confer with systems analysts, engineers, programmers, and others to design application and to obtain information on project limitations and capabilities, performance requirements, and interfaces. (T0034, Reference Spreadsheet for the Workforce Framework for Cybersecurity (NICE Framework)”, July 7, 2020)