nerdexam
(ISC)2

SSCP · Question #314

Which of the following phases of a software development life cycle normally addresses Due Care and Due Diligence?

The correct answer is D. Software plans and requirements. The software plans and requirements phase addresses threats, vulnerabilities, security requirements, reasonable care, due diligence, legal liabilities, cost/benefit analysis, level of protection desired, test plans. Implementation is incorrect because it deals with Installing…

Submitted by tyler.j· Apr 18, 2026Systems and Application Security

Question

Which of the following phases of a software development life cycle normally addresses Due Care and Due Diligence?

Options

  • AImplementation
  • BSystem feasibility
  • CProduct design
  • DSoftware plans and requirements

How the community answered

(32 responses)
  • B
    3% (1)
  • C
    6% (2)
  • D
    91% (29)

Explanation

The software plans and requirements phase addresses threats, vulnerabilities, security requirements, reasonable care, due diligence, legal liabilities, cost/benefit analysis, level of protection desired, test plans. Implementation is incorrect because it deals with Installing security software, running the system, acceptance testing, security software testing, and complete documentation certification and accreditation (where necessary). System Feasibility is incorrect because it deals with information security policy, standards, legal issues, and the early validation of concepts. Product design is incorrect because it deals with incorporating security specifications, adjusting test plans and data, determining access controls, design documentation, evaluating encryption options, and

Topics

#SDLC#Due Care#Due Diligence#Security Requirements

Community Discussion

No community discussion yet for this question.

Full SSCP Practice