Page History
Building The New 8.24 Topic
To start with
...
| spacePermission | edit |
|---|
...
| borderColor | red |
|---|---|
| title | Visible to editors only |
...
- Needs more info in Legends Note regarding the meaning of the color codes and in particular, those cells that have percentages in them.
5/28/2025 - Tab 1 - All Risk titles moved out of first expand. First expand changed to "Definition".
This page may be deleted after 7/1/2025.
| Set Data | ||||
|---|---|---|---|---|
| ||||
2 |
...
| 0 | 1. Introduction and Chart |
|---|---|
| 1 | 2. Resources |
| 2 | 3. Lessons Learned |
...
| id | tabs-1 |
|---|
1. Introduction and Chart
| Excerpt |
|---|
This chart summarizes SA Risks by Risk Phases |
...
| title | Click here to see codes and their meaning used in the table below |
|---|
...
| title | Legends |
|---|
Phase / Area
- Prog - Programmatic
- Req - Requirements
- Design - Design
- Code
- Test - Testing
- Ops - Operations
Risk Levels
Risk levels are color coded for the reviews in which they are discussed.
Review Types
...
All data is also available in an Excel Spreadsheet: Software Assurance Risks v3.xlsx
1.1 Development Risks
Click on a header to sort.
...
Risk
...
Phase / Area
...
M
C
R
...
S
R
R
...
M
D
R
...
S
D
R
...
P
D
R
...
C
D
R
...
S
I
R
...
T
R
R
...
S
A
R
...
O
R
R
...
R001 - Incomplete code peer reviews
| Expand | |||||
|---|---|---|---|---|---|
| |||||
More than 20% of the code has not been through a code peer review.
|
...
R002 - Incomplete implementation of static code analysis results
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incomplete implementation of static code analysis results or missing static analysis testing by the development team. No or limited static analysis is being used in the development and testing of the software.
|
...
R003 - Software configuration management system
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software code is not in a configuration management system before the start of software testing.
|
...
...
...
...
...
...
R004 - Software audit findings
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Significant evidence and multiple findings from the software assurance audits that the software processes are not being followed by the software development team(s).
|
...
...
...
...
...
...
R005 - Use of a non-secure coding standard
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Not using a secure coding standard. The project risk is that the software has security vulnerabilities that could compromise software security and lead to project failure.
|
...
...
...
R006 - Lack of coding standards or insufficient coding
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Lack of coding standards or insufficient use of the coding standard for developing safety-critical software for use in critical, real-time operations; coding standards not enforced due to poor software development practices; and/or lack of code reviews or lack of static/dynamic code analysis tools to find code defects.
|
...
...
...
...
...
...
R008 - Existence of compiler warnings
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Existence of any compiler warnings.
|
...
...
...
...
...
...
R009 - Software common cause risk
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software common cause is not addressed in the software and avionics design.
|
...
...
...
...
...
...
R010 - Incomplete code test coverage
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software code/test coverage percentages for all identified safety-critical components is less than ( CDR 80%, SIR 90%. TRR 100%).
|
...
80%
...
90%
...
100%
...
...
...
R011 - Cybersecurity vulnerabilities
| Expand | |||||
|---|---|---|---|---|---|
| |||||
# of Cybersecurity vulnerabilities and weaknesses identified by the tool exceeds five vulnerabilities.
|
...
...
...
...
...
...
R012 - Use of different compilers for test code
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Use of different compilers for test code than for flight code. The project risk is that the test code may differ from the flight code. A test as you fly risk.
|
...
...
...
...
...
...
R013 - Coding standard violations
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Numerous coding standard violations were identified.
|
...
...
...
...
...
...
R014 - Excessive cyclomatic complexity on safety -critical software components
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Any safety-critical components that exceed the Software cyclomatic complexity of 15
|
...
...
...
...
...
...
R015 - Software Requirements Volatility
| Expand | |||||
|---|---|---|---|---|---|
| |||||
software volatility metric is greater than (at TRR 10%. at SIR 20%, at CDR 40%)
|
...
40%
...
20%
...
10%
...
...
...
R016 - Static analysis findings risk
| Expand | |||||
|---|---|---|---|---|---|
| |||||
A high # of static analysis code errors and warnings were identified as “positives”.
|
...
...
...
...
R017 - Unit test results are not repeatable.
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Unit test results should follow procedures and be repeatable.
|
...
...
...
...
R018 - Incomplete code peer reviews on safety or mission critical software
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Any % of the Safety/Mission Critical code that has not been through a peer review
|
...
...
...
...
R019 - Incomplete software peer reviews
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing hardware support at software peer reviews
|
...
...
...
...
R020 - Unvalidated software tools
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Flight software development tool(s) are not validated and accredited.
|
...
...
...
...
R021 - Data dictionary completeness
| Expand | |||||
|---|---|---|---|---|---|
| |||||
"Less than 95% of the Data dictionary data definitions are complete. The attributes shall include but not be limited to:
|
...
...
...
...
R022 - Missing software design analysis
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incomplete or missing software design analysis activity or Software Architecture Review Board (SARB) Analysis
|
...
...
...
...
R023 - Flawed system software or architecture
| Expand | |||||
|---|---|---|---|---|---|
| |||||
A flawed system architecture, flawed software implementation, or misconfigured software could cause loss of vehicle control and loss of crew as a result of Inadequate Software Development Process or Inadequate Guidelines and Best Practices. System/Software architecture contains assumptions that can lead to unnecessary or unacceptable levels of risk.
|
...
...
...
...
R024 - Unauthorized use of software applications, issuing of commands, and changes to the software configuration
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Inability of the software design to address or catch external acts that could bypass or contravene security policies, practices, or procedures, leading to unauthorized use of software applications, issuing of commands, and changes to the software configuration.
|
...
...
...
...
R025 - Data is incorrect or incomplete
| Expand | |||||
|---|---|---|---|---|---|
| |||||
"Data is incorrect or incomplete due to:
|
...
...
...
...
R026 - Detect and respond safely
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Flight software shall be designed to detect and respond safely to corrupted commands, data, or loads, and memory faults allocated to the software, such as stuck bits or single event effects (SEE).
|
...
...
...
...
R027 - Missing or incomplete software implementation
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software Implementations are incomplete or missing per flow down from Software Req/Design. (>=30%/20%/10%/Any%)
|
...
20%
...
10%
...
Any%
...
...
R028 - Missing Changes in Code
| Expand | |||||
|---|---|---|---|---|---|
| |||||
All expected/agreed changes of significant impact have not been reflected in the code
|
...
...
...
...
R029 - Missing software user guide
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing user guide for the code. A user guide is a key external user experience document to assist users in using a given product, service or application.
|
...
...
...
...
R030 - Missing software configuration management planning
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing or incomplete software configuration management plan
|
...
...
...
...
R031 - Unimplemented IV&V findings
| Expand | |||||
|---|---|---|---|---|---|
| |||||
IV&V findings are not being addressed by the project
|
...
...
...
...
R032 - Unimplemented process audit findings
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software process audit finding not being addressed
|
...
...
...
...
R033 - Missing software acceptance criteria
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing clear software acceptance criteria for all software products. Acceptance criteria (AC) are the conditions that a software product must meet to be accepted by a user, a customer, or other systems.
|
...
...
...
...
R034 - Missing software hazards
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing software hazard conditions. Hazard Analysis should consider software’s ability, by design, to cause or control a given hazard. It is a best practice to include the software within the system hazard analysis. The general hazard analysis should consider software common-mode failures that can occur in instances of redundant flight computers running the same software.
|
...
...
...
...
R035 - Insider threat activities
| Expand | |||||
|---|---|---|---|---|---|
| |||||
A cyber security risk that originates from within an organization. It typically occurs when a current or former employee, contractor, vendor or partner with legitimate user credentials misuses their access to the detriment of the organization's networks, systems and data. Missing build processes that take into account insider thread mitigation activities
|
...
...
...
R036 - Immature products at major milestone reviews
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Inability to access the software and software development status
|
...
...
...
...
R037 - Unrepaired defects for flight release
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Large number of critical software defects and operational workarounds in the flight release code
|
...
...
...
...
R038 - Inability to track safety critical tests
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Hazard requirement flow down tracing delivered very late thereby not available for identifying when verification tests were safety critical test cases of hazard controls.
|
...
...
...
...
R039 - Severity 1 or 2 IV&V findings
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Any Severity 1 or 2 IV&V findings are not being addressed by the project
|
...
...
...
...
R040 - Missing implementation of cybersecurity requirements from NASA-STD-1006
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing software requirement implementation for the requirements for NASA-STD-1006
|
...
...
...
...
R041 - Missing software requirements for encryption
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing software requirement for encryption on uplink and downlink
|
...
...
...
...
R042 - Missing cybersecurity software requirements from project protection plan assessment
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Space flight software development organizations work with the Project Protection Plan 362 to evaluate all software security risks identified in the Project Protection Plan. The project performs a software cybersecurity assessment on the software components per the Agency security policies and the project requirements, including risks posed by the use of COTS, GOTS, MOTS, OSS, or reused software components.
|
...
...
...
...
R043 - Inadequate software requirements quality
| Expand | |||||
|---|---|---|---|---|---|
| |||||
High software requirements quality risk score (software requirements quality score of 3 or higher). Less then 3 is a risk, fewer than 5% of the requirements have a fewer than 0% of the requirements high risk or very high risk score
|
...
...
...
...
R044 - Missing software and software assurance requirements tailoring approval
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing approvals for tailored significant and risky requirements in the requirement matrices (NPR 7150.2 and NASA-STD-8739.8) by both Engineering and SMA TAs
|
...
...
...
...
R045 - Incomplete, missing, or unclear Software Requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incomplete software requirements to code/design traceability, code or design functions without existing traceable software requirements. Software requirements not fully defined or incorrectly translated from requirement to design, caused by insufficient requirements or design reviews. Errors in software requirements include requirements that do not involve the necessary stakeholders in order to implement the desired functionality. Software requirements error resulting from invalid or insufficient data used in simulations and models developed for verification. Errors not detected and/or removed due to lack of design reviews or poor software development practices that do not include the necessary stakeholder participation on design review teams.
|
...
...
...
...
R046 - Late baselining of the software requirements (after CDR)
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software requirements are baselined late in the software development life cycle.
|
...
...
...
...
R047 - Missing software capability to detect adversarial actions
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing software requirements relating to the detection of adversarial actions
|
...
...
...
...
R048 - Undefined fault management system requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Unclear or undefined mission and fault management requirements for software implementation. Test/diagnostic code shall be designed and incorporated into the software early, and be accessible through flight interfaces, so that problem resolution can be done rapidly and easily at element and flight system level in development and during flight operations.
|
...
...
...
...
R049 - Missing software sensor range checking capabilities
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing Sensor range checking
|
...
...
...
...
R050 - Testing for OTS software
| Expand | |||||
|---|---|---|---|---|---|
| |||||
The OTS software component is not verified and validated to the same level required to accept a similar developed software component for its intended use
|
...
...
...
...
R051 - Missing Data Quality Indicators
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing data quality indicators. The semantics of data conveyed across public interfaces, whether inside an executable or as input to or output from an executable, shall be clearly specified and, if possible, verified in an automated way at build time. Data semantics may include range, precision, physical units of measure, and coordinate frames, as applicable. This principle applies primarily to public interfaces that cross system, subsystem, or component boundaries --- specifically, boundaries between software elements developed by different programmers. The importance of critical (formal) verification of these interfaces should be commensurate with the organizational separation between developers on each side of the interface.
|
...
...
...
...
R052 - Missing OTS software requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing detailed software requirements for all COTS, GOTS, MOTS, OSS, or reused software components
|
...
...
...
...
R053 - Traceability completion
| Expand | |||||
|---|---|---|---|---|---|
| |||||
less than (CDR 75%, SIR 90%, TRR 100%) complete on bi directional traceability for all detailed software requirements.
|
...
75%
...
90%
...
100%
...
...
...
R054 - Missing or incomplete software requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software Requirements are incomplete or missing per flow down from System Requirements. (>=30%/20%/10%/Any%)
|
...
Any%
...
...
...
...
R055 - Missing or incomplete software design
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software Designs are incomplete or missing per flow down from Software Requirements. (>=30%/20%/10%/Any%)
|
...
10%
...
Any%
...
...
...
R074 - SLOC per requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
# of estimated SLOC to be developed by the project/ # of detailed software requirements is greater than 50
|
...
R075 - # of TBD/TBC/TBRs
| Expand | |||||
|---|---|---|---|---|---|
| |||||
The % of TBD/TBC/TBRs in the software requirements document exceeds 1%
|
...
R076 - Incomplete software regression testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software regression testing not identified
|
...
R077 - Incomplete cybersecurity assessment testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing or incomplete cybersecurity testing
|
...
R078 - Use of untested code on flight vehicle
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Use of uncertified Flight Software on flight vehicle during testing and launch preparation
|
...
R079 - Software test planning
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incomplete software test plans
|
...
R080 - Software test fidelity
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Insufficient fidelity in the software test environment or lack of test avionics hardware for software testing
|
...
R081 - Software test schedule does not have enough time to complete adequate software testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software test schedule does not have enough time to complete adequate software testing
|
...
R082 - Software test procedure maturity
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incomplete or inaccurate software test procedures, including missing or incomplete software test procedures and test scripts or large number of changes in the test procedures
|
...
R083 - Use of simulation test bed versus flight hardware
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Planned use of STB (Simulation Test Bed) instead of using flight hardware for flight certification
|
...
R084 - No independence for software testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
No independent software testing
|
...
R087 - EFT test results used for software certification
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Use of Engineering Flight Test (EFT) test results for REAL Flight vehicle flight certification
|
...
...
...
...
R088 - Missing software test reports
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing or incomplete software test reports, including Selective recording of software verification tests for credit only when no failures and Undefined software test procedure outputs and criteria, including all I/O definitions
|
...
...
...
...
R089 - Uncertified software test simulators
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Use of software simulations for formal software testing that have not been certified
|
...
...
...
...
R090 - Missing software test criteria
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing or incomplete software test criteria
|
...
...
...
...
R091 - Missing software test approaches
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software test approach not defined for arrays, commands, data, stored in contiguous memory locations, and Multi-Logic Testing approach
|
...
...
...
...
R092 - No Test Recording Procedure
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Less than (TRR 80%, SRR 90%, ORR 100%) test recording procedure are not defined
|
...
80%
...
90%
...
100%
...
R093 - Incomplete software command testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Less than 100% flight software commands have been tested
|
...
R094 - Incomplete flight software data input testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Less than 100% flight software data inputs have been tested including software data loads, data configuration loads, I-loads, flight software configuration files, missing or incomplete verification approaches for data-driven architectures
|
...
R095 - Incomplete testing of the software update capabilities
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software update capabilities have not been tested
|
...
R096 - Missing or undefined software stress testing
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing or undefined software stress testing approach. Software stress Testing is a software testing activity that determines the robustness of software by testing beyond the limits of normal operation. Stress testing is particularly important for "mission critical" software, but is used for all types of software.
|
...
R097 - Missing or incomplete software verification
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software Verifications are incomplete or missing per flow down from Software Req. (>=30% SIR/20% TRR/10% SAR/0% ORR)
|
...
1.2 Programmatic Risks
...
Risk
...
R057 - Software make/buy strategy
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software acquisition or make strategy has significant software risks due to capability maturity experience or processes of software development organization
|
...
R058 - Unrealistic software schedules
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Unrealistic software development or test schedules
|
...
R060 - Missing IV&V support
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing IV&V support or limited IV&V support. Objectives of performing IV&V include: Facilitate early detection and correction of cost and schedule variances. Enhance management insight into process and product risk. Support project life cycle processes to ensure compliance with regulatory, performance, schedule, and budget requirements.
|
...
R061 - Missing electronic access to all software products
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Lack of or delayed electronic access for IV&V to all software products, software data, software source code, and software metrics
|
...
R062 - Delayed start of IV&V and or software assurance support
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Delayed start to software assurance and or IV&V Activities
|
...
R063 - Missing software measurement data
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Missing or incomplete software measurement program
|
...
R064 - Incomplete flowdown of Agency software requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incomplete flow down of NPR 7150.2 and NASA-STD-8739.8 requirements
|
...
R065 - Incorrect software classification
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Incorrect software classifications
|
...
R066 - Lack of certifiable software development practices
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Lack of verifiable or certifiable software development practices by the organizations developing the critical software components
|
...
R085 - Software re-use feasibility incompatible
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software assigned or assumed to be re-used is either not a good match for the proposed mission or it is not fully understood through missing or incomplete feasibility studies.
|
...
R086 - Operational scenarios
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Operational scenarios are not defined enough to support the definition and allocation of system and software requirements
|
...
1.3 Resource Risks
...
Risk
...
R056 - Project cost allocation for software assurance resources
| Expand | |||||
|---|---|---|---|---|---|
| |||||
The project cost allocation or software assurance resources unavailable for the project’s Software Assurance support to meet the requirements
|
...
R059 - Insufficient software workforce skills
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Insufficient software workforce or software skillsets
|
...
R072 - Underperforming on allocated software resources
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software development activities are behind schedule due to underperforming resources, missing resources, medical related issues, or personnel priorities
|
...
R073 - High turnover of software engineering or software assurance personnel on the project
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software development activities are behind schedule due to high turnover of software engineering or software assurance personnel on the project
|
...
1.4 Technological Risks
...
Risk
...
R007 - Violations of margin for CPU utilization
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Violations of Margin for CPU Utilization. CPU Utilization: This is a key metrics which measures the percentage of time CPU spends in handling a process. High CPU utilization by any task is red flagged to check any performance issues. Timely detection and planned response to oversubscriptions can preserve critical system capabilities. There are several common methods for tolerating these situations, most of which relate to reducing demand from non-essential items, especially if they are the source of over subscription. Software development is complicated by inadequate or impractical timing allocations or margins associated with selected CPU. The software design should contain a robust response to situations where computer resources are oversubscribed. The action to be taken in such situations shall be specified as part of the requirements on the design.
|
...
...
...
...
...
...
R067 - Programming language selection or insufficient software tools and training
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Poor Software programing language selection by the project, insufficient software analysis and development tools, and the software development organization is not trained in the use of the software language
|
...
R068 - Inadequate training
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Personnel supporting the project do not have adequate experience or training to perform the processes
|
...
R069 - Concurrent avionics hardware development or changing or undefined hardware interface requirements
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Risk associated with developing software at the same time as the hardware is being developed, risk of misunderstanding the software hardware interfaces and not having the hardware available to use in the software development
|
...
R070 - Inadequate data throughput margins
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software development is complicated by inadequate or impractical data throughput allocations or margins associated requirements and bus selections
|
...
R071 - Software processes
| Expand | |||||
|---|---|---|---|---|---|
| |||||
Software development is complicated by undefined software processes or misunderstood processes
|
...
See also 7.19 - Software Risk Management Checklists, SWE-086 - Continuous Risk Management
1.1 Additional Guidance
Links to Additional Guidance materials for this subject have been compiled in the Related Links table. Click here to see the in the Resources tab.
...
| id | tabs-2 |
|---|
2. Resources
2.1 References
| refstable-topic |
|---|
...
| group | confluence-users |
|---|
...
| titleColor | red |
|---|---|
| title | Instructions for Editors |
...
Enter the necessary modifications to be made in the table below:
...
SWEREFs called out in text:
SWEREFs NOT called out in text but listed as germane:
Related Links Pages
Children Display
2.2 Tools
...
2.3 Additional Guidance
...
Additional guidance related to this requirement may be found in the following materials in this Handbook:
...
2.4 Center Process Asset Libraries
...
See the following link(s) in SPAN for process assets from contributing Centers (NASA Only).
...
| label | activity |
|---|
2.5 Related Activities
This Topic is related to the following Life Cycle Activities:
...
| id | tabs-3 |
|---|
3. Lessons Learned
3.1 NASA Lessons Learned
No Lessons Learned have currently been identified for this requirement.
3.2 Other Lessons Learned
...


