Test and Verification -> Consolidation: Reproducible defect tickets
Risk and Opportunity
Risk: Vulnerability descriptions are hard to understand by staff from operations and development.
Opportunity: Vulnerabilities include the test procedure to give the staff from operations and development the ability to reproduce vulnerabilities. This enhances the understanding of vulnerabilities and therefore the fix have a higher quality.
Required knowledge: Medium (two disciplines)
Required time: Low
Required resources (systems): Low
OWASP SAMM 2 Mapping: i-defect-management|B|2