Systems Development Life Cycle

1. Planning

  • Define scope, objectives, and deliverables for Financial Reporting and Budgeting modules.
  • Conduct feasibility analysis and resource allocation.
  • Identify compliance requirements (FERPA, GLBA, etc.).
  • Establish timelines and assign roles.

2. Requirements Gathering

  • Collaborate with stakeholders to capture functional and non-functional needs.
  • Document business rules, user roles, and data flows.
  • Validate completeness and regulatory alignment.

3. Design

  • Develop system architecture and modular designs.
  • Create data models and UI mockups.
  • Apply secure design principles (least privilege, encrypted storage).
  • Review for scalability and compliance.

4. Development

  • Implement features using secure coding practices.
  • Use version control and peer code reviews.
  • Integrate Financial Reporting and Budgeting modules.
  • Maintain audit trails and access controls.

5. Testing

  • Perform unit, integration, system, and UAT testing.
  • Conduct security assessments (vulnerability scans, penetration testing).
  • Validate performance and data accuracy.
  • Document and resolve defects.

6. Deployment

  • Prepare deployment and rollback plans.
  • Deliver on-premise software with installation guides.
  • Verify environment compatibility and security configurations.
  • Train client IT staff and provide documentation.

7. Maintenance

  • Monitor performance and user feedback.
  • Release patches and updates for security and functionality.
  • Maintain support channels and issue tracking.
  • Conduct periodic compliance reviews and audits.

8. Security & Compliance

  • Adheres to NIST, ISO 27001, and Higher Ed regulations.
  • Implements encryption, access controls, and secure authentication.
  • Maintains audit-ready documentation for HECVAT.

9. Quality Assurance

  • QA integrated throughout all SDLC phases.
  • Automated and manual testing tools used.
  • Peer reviews and traceability from requirements to deployment.

10. Revision History

Version

Date

Changes

Author

1.0

September 29, 2025

Initial creation, tailored to Synoptix’s environment and industry best practices.

Synoptix Infrastructure / InfoSec Lead