The document provides security-focused stories and tasks for agile development teams to incorporate security into their processes. Section 2a lists 36 security stories with associated security tasks mapped to roles like architect, developer, and tester. The tasks are derived from common weaknesses and cover topics like input validation, output encoding, buffer management, and exception handling. Section 2b lists 17 ongoing operational security tasks classified by required/recommended. Section 3 lists 12 advanced tasks typically requiring security expert guidance.