AC.L2-3.13.2[c] — System & Communications Protection (Security Engineering)Domain: System & Communications Protection (SC) | Practice: SC.L2-3.13.2 | Objective ID: 3.13.2[c] | Source: NIST SP 800-171 Rev. 2 / CMMC 2.0 Level 2 | Assessment Objective: Security engineering principles are employed in the development of the system. |
Executive Summary (For Leadership and the Board)
CMMC objective AC.L2-3.13.2[c] — Security engineering principles are employed in the development of the system. Apply secure development practices (input validation, parameterized queries, output encoding, secure API design) during system development.