Testing Methodology Policy and Procedure (individual
submission)
Research and document preferred testing methodologies for:
EMR, Mobile Apps, Patient Care devices, External websites,
SDLC (hint: vulnerability scanning, penetration testing, medical
device scanning, static code analysis, dynamic code analysis,
etc.).
Research and document preferred remediation cycles for the in
scope systems (hint: HIPAA, PCI, FERPA)
Research and document preferred reporting cycles / methods for
the in scope systems (hint: vulnerability metrics, such as CVSS,
NVD). Note: Still follow APA for this assignment, which may
not be appropriate in an organization.

Testing Methodology Policy and Procedure (individual submission).docx

  • 1.
    Testing Methodology Policyand Procedure (individual submission) Research and document preferred testing methodologies for: EMR, Mobile Apps, Patient Care devices, External websites, SDLC (hint: vulnerability scanning, penetration testing, medical device scanning, static code analysis, dynamic code analysis, etc.). Research and document preferred remediation cycles for the in scope systems (hint: HIPAA, PCI, FERPA) Research and document preferred reporting cycles / methods for the in scope systems (hint: vulnerability metrics, such as CVSS, NVD). Note: Still follow APA for this assignment, which may not be appropriate in an organization.