The Microsoft SDL Process Template for Visual Studio Team System
Automatically integrate the Microsoft SDL with the SDL Process Template for VSTS
The SDL Process Template is a downloadable template that leverages the technology of Visual Studio Team System (VSTS) and Team Foundation Server (TFS) to automatically integrate the policy, process and tools associated with the Security Development Lifecycle v4.1 into your software development environment.
- Installs SDL requirements as work items
- Includes SDL-based check-in policies
- Customizes security bugs and queries
- Includes extensive SDL how-to and guidance documentation
| - Generates auditable Final Security Review report
- Accommodates third-party tool integration, e.g. the SDL Threat Modeling Tool
- Includes project plans and security risk assessment templates
|
The SDL Process Template for VSTS makes writing secure code a lot easier
Eases the adoption of the SDL
The SDL Process Template automates the creation of SDL requirements and enables development teams to begin adopting the SDL process without having to be fully trained on the SDL. It integrates the SDL into every-day tasks by leveraging the existing development environment (Visual Studio) and the project-wide framework (Visual Studio Team System) in a way that is familiar to program managers and testers, as well as developers.
Provides auditable security requirements and status
The SDL Process Template generates a detailed Final Security Review report that provides an up-to-the- minute overview of security issues, testing results, and status for all security requirements associated with a project. This report allows management to document and verify that SDL requirements were met prior to a product’s release.
.jpg)
Demonstrates security return on investment
The SDL Process Template allows for the integration of third-party tools that work with Team Foundation Server (TFS). Through reporting, the template provides data that allows you to assess the effectiveness of your security tools. In addition, the template enables you to experience the benefits of the SDL by discovering security issues early in your development lifecycle, reducing the total cost of development.
.jpg)
Watch the following guidance videos to get started with the SDL Process Template for VSTS