18F / s70-disa-eapp

Schedule 70 Solicitation for the eApp Platform
1 stars 2 forks source link

security/compliance stories #16

Open seamusbrugh opened 6 years ago

seamusbrugh commented 6 years ago

Question/Comment on National Background Investigation System (NBIS), eApp

Name and affiliation

Seamus Brugh, Capture Manager, Truss Works

Section of RFQ documents

2.3 OBJECTIVES > Product Requirements

Question/Comment

The RFQ mentions “The application integrates with DoD/DISA CI/CD, testing, and security tools in addition to GSA provided infrastructure” What sort of security/compliance stories will the vendor need to manage as part of their sprints?

18Facq commented 6 years ago

Security related "user stories" or issues identified in software development would be managed using the agile software development process during sprint planning and prioritization by the product owner.