learning objectives: * describe the relationships between software security, SDLC, and risk management. * identify and explain the components of a risk management framework * write and apply integration/acceptance tests to validate functional and security requirements activities: * read SSBSI 2: A Risk Management Framework * read RiskManagement.pptx slides * review Testing.pptx slides (from CSCE 315) * watch Risk Management in Software Projects [3:31] (https://www.youtube.com/watch?v=OlzMrXtgl1I) * watch Security Requirements Engineering [36:44] (https://www.youtube.com/watch?v=8gdOYK4GFBQ) * Applying the RMF: KillerAppCo's iWare 1.0 Server extra: * watch and review any risk management video - post title, link, review on Piazza assignments: * Quiz 2 (due 8am 3 Feb) - posted on eCampus at 12am 28 Sept * HW 1.2 due 8am 3 Feb