Book traversal links for 3.4.6 Change Security Requirements
3.4.6 Change Security Requirements
No: 43028139 | Date(g): 4/11/2021 | Date(h): 29/3/1443 | Status: In-Force |
Principle
Cyber security requirements should be defined and thoroughly tested for all changes in the information system in a testing environment in order to identify and mitigate security vulnerabilities therein prior introducing them into the production environment.
Control Requirements
1. | System change management process should consider SAMA Cyber Security Framework for defining, testing and implementing security requirements for any changes in the information assets. |