From the course: ISC2 Certified Information Systems Security Professional (CISSP) (2024) Cert Prep

Unlock this course with a free trial

Join today to access over 24,000 courses taught by industry experts.

Maturity models

Maturity models

- [Instructor] Every organization is at a different state in its maturity when it comes to software development. Some are just getting started, while others have very thorough processes in place that result in securely designed code. Maturity models provide a way for organizations to evaluate themselves against a standard benchmark, and identify the next steps in evolving their software development practices. Researchers at Carnegie Mellon University developed the capability maturity model integrated, or CMMI, to help organizations identify where they are in that maturation process. CMMI consists of five different levels, initial, managed, defined, quantitatively managed, and optimizing. Earlier versions of CMMI as well as its predecessor CMM, were focused only on software development. The current version of the CMMI is much broader, it's still used for software development, but it is now also used for product development, supply chain management, acquisition, and service delivery…

Contents