新しい IT システムの実装に関する情報セキュリティ要件は、システム開発ライフサイクル (SDLC) のどのフェーズで定義する必要がありますか?
正解:D
Information security requirements should be defined during theInitiationphase of the SDLC. This ensures that security is integrated into the design from the beginning, minimizing vulnerabilities and aligning security measures with business requirements. Early identification of security needs reduces rework and costs associated with later stages.