Validated Secure Software Lifecycles

secure-slc.jpg

The PCI Secure Software Lifecycle (SSLC) Standard is part of the PCI Software Security Framework (SSF) and helps software vendors to ensure that security is designed and integrated at each stage of the software lifecycle. Software vendors can engage a Secure SLC Assessor to have their SSLC assessed and validated in accordance with the PCI Secure SLC Standard. The assessment and validation are documented by the Secure SLC Assessor in a Report on Validation (ROV). Validated Secure SLCs are listed on PCI SSC's List of Validated Secure SLCs upon Acceptance.

Although PCI SSC reviews these reports for quality management purposes, PCI SSC does not independently confirm the reports or the data or information they contain, nor does the PCI SSC perform any testing or analysis of software lifecycles, products, functionality, performance, suitability, or compliance with the Standard.

Filter by