metaschema-framework / oscal-server

Other
1 stars 2 forks source link

Document secure development practices as OSCAL component #18

Open aj-stein-gsa opened 4 weeks ago

aj-stein-gsa commented 4 weeks ago

User Story

As a software developer, system engineer, or architect that will want to use this library and its dependencies for integration into a part of my system, I want clear documentation about the security process and characteristics of the development software and development process. Ideally, we want to see this in the form of an OSCAL component so we can use documentation and evidence to also integrate into our own security documentation.

Goals

Dependencies

We probably need to threat model this system after considering the other components: metaschema-java, liboscal-java, and their combination with the oscal-cli as we use it today.

Acceptance Criteria

Revisions

No response

wandmagic commented 2 weeks ago

see #23