none
Applicability of SDLTM RRS feed

  • Question

  • Hi:
    As well as writing our own s/w we have a role of integrating a large number of applications from other vendors into our production environment.
    Just wondering about the applicability of the SDLTM for these situations as opposed to when we have full access to the source code.  Is the SDLTM still useful for these situations, or is it too detailed or is there any difference in the way it should be used?

    TIA
    • Moved by Hengzhe Li Tuesday, June 21, 2011 12:08 PM Forum Consolidate (From:Microsoft Security Development Lifecycle (SDL) - Threat Modeling)
    Wednesday, March 17, 2010 3:15 PM

Answers

  • The SDL TM tool is still useful for these situations.  There's some guidance on how to approach it in http://technet.microsoft.com/en-us/library/dd941826.aspx
    Monday, March 22, 2010 4:47 PM