ustaxcourt / ef-cms

An Electronic Filing / Case Management System.
https://dawson.ustaxcourt.gov/
Other
84 stars 46 forks source link

Create a system security plan using documented security risks. #267

Closed adunkman closed 3 years ago

adunkman commented 4 years ago

As the Court, so that we can protect the public’s data while providing access to authorized users, we need to effectively balance security risks and controls.

Acceptance criteria:

Notes:

adunkman commented 4 years ago

There is prior documentation and discussion around acceptable risk, and that is documented in the user stories related to PDF uploads.

adunkman commented 4 years ago

What is acceptable risk for using exception tracking services like HoneyBadger?

adunkman commented 3 years ago

Mike meeting with Laura tomorrow evening to knock this out (at least for pre-MVP).

adunkman commented 3 years ago

Ongoing work is tracked in https://github.com/ustaxcourt/ato and #519.