Skip to main content

3.4.6 Change Security Requirements

No: 43028139 Date(g): 4/11/2021 | Date(h): 29/3/1443

Effective from 2021-11-04 - Nov 03 2021
To view other versions open the versions tab on the right

Principle

Cyber security requirements should be defined and thoroughly tested for all changes in the information system in a testing environment in order to identify and mitigate security vulnerabilities therein prior introducing them into the production environment.

Control Requirements

1.System change management process should consider SAMA Cyber Security Framework for defining, testing and implementing security requirements for any changes in the information assets.