MoE&IT issued the Guidelines for Secure Application Design, Development, Implementation & Operations

Feb 05, 2024 | by TeamLease RegTech Legal Research Team

Free Legal updates for the week 00


Industry Specific ComplianceThe Ministry of Electronics and Information Technology (MoE&IT) on February 02, 2024, issued the Guidelines for Secure Application Design, Development, Implementation & Operations.

The following provisions have been stated:

• Establish the Context of the Security in Designing of Application:

a. Security by Design Approach:

It refers to an approach of incorporating security measures and considerations into the design and architecture of a system or application from the early stages of the development process. It emphasizes the proactive integration of security controls, mechanisms, and safeguards at the foundational level of the system, rather than as an afterthought or add-on. The goal of security by design is to create systems that are inherently secure, resilient, and resistant to security threats, vulnerabilities, and attacks.

b. Engagement of security-trained designers and developers in the application development:

Designers and developers involved in application development must possess a comprehensive understanding of the cyber security fundamentals and should possess practical knowledge of the security principles governing secure application development. This involves identifying the underlying reasons for weaknesses & vulnerabilities in the application.


Bookmark

Related Updates



Alternate Text

Get updates on the go on RegUpdate Mobile App.

NEW  ·  AI ASSISTANT