Skip to content
CSA Store
  • CSA Group
  • CSA OnDemandâ„¢
  • CSA Communities
  • Contact Us
  • Catalogue
    • Browse By Subject Area

      • Electrical
      • Fuels & Transportation
      • Petroleum & Natural Gas
      • Environment & Natural Resources
      • Construction & Infrastructure
      • Mechanical & Industrial Equipment
      • Nuclear
      • Health Care and Well-being
      • Worker & Public Safety
      • Management Systems
    • Browse By Publisher

      • ASME
      • ASTM
      • CSA Group
      • ESA
      • IEC
      • ISO
      • NRC
      • ORNAC
      • TSSA
    • ICS Catalogue

      • Browse by International Classification of Standards (ICS Codes)
  • Subscription
    • Browse By Subject Area

      • Electrical
      • Fuels & Transportation
      • Petroleum & Natural Gas
      • Environment & Natural Resources
      • Construction & Infrastructure
      • Mechanical & Industrial Equipment
      • Nuclear
      • Health Care and Well-being
      • Worker & Public Safety
      • Management Systems
    • CSA Subscriptions

      • Overview
      • Collections
    • ICS Catalogue

      • Browse by International Classification of Standards (ICS Codes)
  • Services
Cart Icon0
×
Login / Register
English / CAD

Language

en

fr

Currency

CAD

USD

  • CSA Group
  • CSA OnDemandâ„¢
  • CSA Communities
  • Contact Us
Wishlist

Catalogue

  • Browse By Subject Area

    • Electrical
    • Fuels & Transportation
    • Petroleum & Natural Gas
    • Environment & Natural Resources
    • Construction & Infrastructure
    • Mechanical & Industrial Equipment
    • Nuclear
    • Health Care and Well-being
    • Worker & Public Safety
    • Management Systems
  • Browse By Publisher

    • ASME
    • ASTM
    • CSA Group
    • ESA
    • IEC
    • ISO
    • NRC
    • ORNAC
    • TSSA
  • ICS Catalogue

    • Browse by International Classification of Standards (ICS Codes)

Subscription

  • Browse By Subject Area

    • Electrical
    • Fuels & Transportation
    • Petroleum & Natural Gas
    • Environment & Natural Resources
    • Construction & Infrastructure
    • Mechanical & Industrial Equipment
    • Nuclear
    • Health Care and Well-being
    • Worker & Public Safety
    • Management Systems
  • CSA Subscriptions

    • Overview
    • Collections
  • ICS Catalogue

    • Browse by International Classification of Standards (ICS Codes)

Services

Menu toggle Icon
Login / Register
English / CAD

Language

en

fr

Currency

CAD

USD

Wishlist Cart (
)

Search Section

    • Home
    • CSA EXP200:19

    Codes & Standards - Purchase

    CSA EXP200:19

    Evaluation of software development and cybersecurity programs

    SKU: 2427640 Published by CSA Group Publication Year 2019 29 pages Withdrawn

    Product Details

    • Preface/Scope

    Preface


    This is the first edition of CSA EXP 200, Evaluation of software development and cybersecurity programs. This Express Document is not a consensus product; that is, it is not a standard, and it has not been formally reviewed or approved by a CSA Technical Committee.


    The purpose of this Express Document is to provide guidance on the development of a method to evaluate the software development practices and the related cybersecurity practices of an organization that is producing products for the Internet of Things (IoT) product space.


    Governments, businesses, and consumers are looking to the rapid adoption of IoT products and services to automate tasks and provide efficiencies in many market areas. While these technologies can dramatically advance the capabilities of those users and businesses, they pose a potential cyber and privacy risk to the end user. The end user is typically under the assumption that these products have undergone some level of security testing and evaluation. This includes these products pose no direct risk to them nor their businesses. However, given the significant increase in purpose-built malware for IoT and related products including the sizable increase of botnet activity of weaponized devices, many products/services would indicate that many of these products have not been designed or tested for security.


    Scope


    1.1

    This Document describes a methodology for assessing the product software and cybersecurity maturity of an organization. It provides the evaluators and vendors a means to determine the maturity of the organization and products/solutions being developed regardless of business sector. It covers the entire product system life cycle from conception to full commissioning and on to end of life. Its premise is an effective executive business decision to establish a comprehensive maturity model approach to cybersecurity


    This Document applies to all IoT and related products/solutions.


    1.2

    In this Document, shall is used to express a requirement, i.e., a provision that the user is obliged to satisfy in order to comply with the document; should is used to express a recommendation or that which is advised but not required; and may is used to express an option or that which is permissible within the limits of the Document.


    Notes accompanying clauses do not include requirements or alternative requirements; the purpose a note accompanying a clause is to separate from the text explanatory or informative material.


    Notes to tables and figures are considered part of the table or figure and may be written as requirements.


    Annexes are designated normative (mandatory) or informative (non-mandatory) to define their application.

    copyright imgRequest Copyright Permissions

    Buy

    Quantity
    -
    +
    • FAQs
    • Contact Us
    • Email Product

    GST REG No R119441681
    QST REG No R1006017360

    Compare Formats

    Determine the subscription format that is right for you.

    Features CSA AdvantageTM CSA OnDemandTM
    Offline accessSelectedSelected
    Full-text searchSelectedSelected
    Create highlights and personal notesSelectedSelected
    Newest editions added automaticallySelectedSelected
    Includes all supported languages and archive versionsSelected
    My Files - create customized files by adding multiple clauses, tables or figures from the standard into your own personal File for quick referenceSelected
    Toggle between your files and the full standard to maintain contextSelected
    Instantly preview cross referenced material within the bookSelected
    Export personal notes to ExcelSelected
    Transfer notes and highlights when updates are availableSelected
    Adobe Reader PDF and browser compatible for iOS and AndroidSelected
    Web, Android, iOS CompatibleSelected

    Follow Us On Social Media

    Get Our Newsletter

    Get CSA Newsletter

    • About CSA Store
    • Subscription
    • Services
    • Catalogue
    • FAQ
    • Return Policy
    • FULFILLMENT DETAILS
    • EBOOK SUPPORT
    • Product Updates
    • Contact Us
    • CSA GROUP
    • CSA COMMUNITIES
    • CSA Update Service
    • About CSA Store
    • Subscription
    • Services
    • Catalogue
    • FAQ
    • Return Policy
    • FULFILLMENT DETAILS
    • EBOOK SUPPORT
    • Product Updates
    • Contact Us
    • CSA GROUP
    • CSA COMMUNITIES
    • CSA Update Service

    • General Terms and Conditions
    • Privacy Policy
    • Accessibility
    © 2022 Canadian Standards Association. All rights reserved
    logo close
    Privacy Preference Centre

    Please manage your cookie choices by switching the consent toggles on or off under the Purposes below.

    You may change your preference at any time as described in our Cookie Policy

    • Cookie Settings
    • List of Cookies
    close
      Cookies on CSA Group

      We use Cookies to create a secure and effective website experience for our customers. For more information about Cookies and how you can disable Cookies, visit our privacy policy page. Learn More

      Free Login/Registration Required

      View Access for this document is only available for viewers in Canada.

      A free user account is required to view this document.

      Login or Register