Other Work Products and Controlled Documentation:
Figure 13. How [other] artifacts are captured in system event logs and software design templates?
Version Control versus VSS (Microsoft Visual SourceSafe)
When Do I Use VSS?
Software Development work products have particular control requirements that are satisfied through the use of VSS, (Visual SourceSafe). Where procedures for component level code movement are highly specialized, development documentation is maintained under a more stringent and restricted environment. Development documentation is maintained in VSS. VSS is used to ensure document or code approval, version control and ability for roll back. Where documentation and code require peer review and product management approval, VSS provides control over status and review notes. Additionally, where more than one person may be required to use or modify a same document, VSS provides a check in and check out process, further supporting evidence of valid authorization for release.
How are software development artifacts captured in system event logs and software design templates?
Test Scripts, Utilities and Event Tracking Systems
What Is a Test Script or Test Templates?
Programs, systems and releases have associated tests and test results. QA and Security maintain secure test plans and test results. Tests related to Software Quality are run from, and secured in, the [Name of Testing or Quality Assurance Application] Application.
Security scripts and networking utilities are maintained in secure location with the highest degree in limited access. These items are by design, neither visible or accessible to the general user.
Where Do I Find QA Test Templates?
Test templates are maintained in the QA Process directory
\\...\PAL\IT Process Asset Library\Quality Assurance\Template\
Security Program Test templates are maintained in the Security Management directory
\\...\PAL\IT Process Asset Library\Security Management\Program Test Plans\

Whether you're preparing for Cybersecurity certification, working with government standards, or simply starting your career in compliance, these are the NIST Federal Information Processing Standards (FIPS), Special Publication (SP), and Interagency Report (IR) topics