Commit One SAMM Control to the Sprint
Create a concrete sprint commitment from an OWASP SAMM improvement opportunity.
Add a security acceptance criterion and evidence requirement to one active DevSecOps work item. a SAMM improvement around design, implementation, verification, or operations in your current sprint For , before , I will add and so the team can verify . In 2 days, check whether the ticket includes the criterion and evidence, not just a vague security note. A public API story entering refinement without abuse-case acceptance criteria. A CI pipeline change that adds a new third-party action without permission review. A service launch checklist missing an owner for vulnerability triage after release. For , before , I will…
Sign up free — one personalized lesson every day, matched to your role and goals.
Already have an account? Sign in