Cybersecurity
Work-in-progress: This content is incomplete; you can help by expanding it
The Statewide Information Security Manual (SISM) is available for statewide security practices
The System Architecture Review (SAR) process, such as filling out a Technology Initiation Proposal (TIP), may be required for projects that handle sensitive data (such as PII).
See here for a TIP/SAR reference doc.
The NJIA repository template has an example of a SECURITY.md file containing information on listing supported versions of a project and directions for responsible disclosure of vulnerabilities.
Questions can be asked to #engineering-all and/or #tech-ops-questions - many in NJIA have gone through past security-related processes and provide that insight