STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← SA-11 (4) — Developer Testing and Evaluation

CCI-003187

Definition

Require the developer of the system, system component, or system service to perform a manual code review of organization-defined specific code using organization-defined processes, procedures, and/or techniques.

Parent Control

SA-11 (4)Developer Testing and EvaluationSystem and Services Acquisition

Linked STIG Checks (1)

V-222648CAT IIAn application code review must be performed on the application.Application Security and Development Security Technical Implementation Guide