
228 ◾ Information Security Fundamentals
Knowledgeable representatives from each of these groups identify the needs. is
approach allows for budgets to be aligned and resources to be allocated at the task
level, a technique that produces much more accurate estimations if done correctly.
roughout the process, experienced resources are encouraged to provide system-
atic evaluation of risks and options to mitigate those risks. Finally, using an agreed
upon framework allows for a shared vocabulary that is useful both within the team
and in discussions with management and external groups.
SDLC Models
ere are many well-respected SDLC models. Some of ...