Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CISSP Exam - Topic 2 Question 117 Discussion

Actual exam question for ISC2's CISSP exam
Question #: 117
Topic #: 2
[All CISSP Questions]

Which of the following phases in the software acquisition process does developing evaluation criteria take place?

Show Suggested Answer Hide Answer
Suggested Answer: B

The software acquisition process is the process of acquiring software from external sources, such as vendors or contractors. It involves several phases, such as planning, contracting, monitoring and acceptance, and follow-on. Developing evaluation criteria is part of the planning phase, where the organization defines the requirements, objectives, and constraints of the software acquisition project. Evaluation criteria are the standards or measures that are used to assess the quality, suitability, and value of the software products or services offered by the potential suppliers. Developing evaluation criteria in the planning phase helps the organization to select the best software solution for its needs and goals.Reference:CISSP - Certified Information Systems Security Professional, Domain 8. Software Development Security, 8.4 Assess the security impact of acquired software, 8.4.1 Define and apply security requirements in the acquisition process;CISSP Exam Outline, Domain 8. Software Development Security, 8.4 Assess the security impact of acquired software, 8.4.1 Define and apply security requirements in the acquisition process


Contribute your Thoughts:

0/2000 characters
Elliott
16 days ago
I think developing evaluation criteria is part of the Planning phase, but I'm not entirely sure. It feels like something we discussed in class.
upvoted 0 times
...

Save Cancel