ICT-Governance-Framework-Application

Security Testing Guidelines

Version: 0.1 (Draft) Date: 2025-08-08 Owner: Security Engineering

Scope

Security testing activities across SDLC: SAST, DAST, SCA, secrets scanning, IaC scans, penetration testing, threat modeling, and validation of zero-trust controls.

Controls & Activities

Reporting & Remediation

References