18F / before-you-ship

merged into the TTS Handbook
https://handbook.tts.gsa.gov/#launching-software
Other
40 stars 28 forks source link

Add section on Rule of Engagement (ROE) process and differences between for each of the ATO processes #230

Closed JJediny closed 3 years ago

JJediny commented 8 years ago

Add section on the Penetration Testing Rules of Engagement (ROE) and document the different content requirements for:

As much of the information in the ROE is redundant with content within the System Security Plan cover what information is unique to the ROE that is not otherwise available and that if redundant - for whats reasons would it be appropriate to copy over because it would add value/context/perspective:

Examples of what should/could be referenced from other documentation:

Examples of what is additional or unique for ROE:

afeld commented 7 years ago

Part of #303.

afeld commented 3 years ago

Maybe something we can cover via https://github.com/18F/tts-tech-portfolio/issues/797.