Microsoft Security Development Lifecycle (SDL)

10 Jan 2023

← Home
5 min. read

Provide training

Define security requirements

Define metrics and compliance reporting

Perform threat modeling

Establish design requirements

Define and use cryptography standards

Manage security risks from using third-party components

Use approved tools

Perform Static Analysis Security Testing (SAST)

Perform Dynamic Analysis Security Testing

Perform penetration testing

Establish a standard incident response process