Explains how testing fits into a cybersecurity management system (CSMS), as described by ISO / SAE 21434. The lesson covers the different types of testing that can be performed, as well as the different stages of the development lifecycle at which testing should occur. The lesson also discusses the importance of having a clear and well-defined testing strategy, as well as the need to continuously monitor and improve the CSMS.