ISO 27001 8.29 Security Testing In Development and Acceptance Requirement:
"Security testing processes shall be defined and implemented in the development life cycle."[1]
ISO 27001 8.29 Security Testing In Development and Acceptance Requirement Explanation:
Software should be tested before it is deployed to the production environment this includes testing the software's security. Software security testing involves code reviews vulnerability scans and fuzz testing. OWASP provides a wide variety of information and tools for software security testing.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you