|
control enhancementSA-15(8)
Reuse of Threat and Vulnerability Information (SA-15(8))
Require the developer of the system, system component, or system service to use threat modeling and vulnerability analyses from similar systems, components, or services to inform the current development process.
acquisitionsdlcservicessupply-chainenhancement
Why These Connect
Maps To2
These are equivalent or closely aligned requirements in other frameworks.
Enhances1
These enhancements add specific capabilities or refinements to the base control.
Cross-Framework Mappings(2)
ID.RA-01ID.RA-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5
ID.RA-01ID.RA-01Final
NIST OLIR informative reference — Cybersecurity Framework v2.0 to SP 800-53 Rev 5