The following security activities are integrated into development processes:
- Security unit tests where possible
- Security code reviews if applicable
- Static code analysis
- Dynamic application security testing (DAST)
- Source composition analysis (SCA)
- Continuous monitoring and updating of open-source software components
- Security hardening following the best practices