Application Security Testing
Polar Cove Application Security Testing
prevents loss, modification, or misuse of application systems. Specific
applications, such as e-commerce servers, on-line financial applications,
distributed applications, and Internet front ends to legacy programs,
are evaluated. Employing the results and recommendations of Polar Cove
Application Security Testing, clients are able to ensure appropriate security
controls in each application, thereby managing the risks of using the
Internet or other public networks for business communications. Application
Security Testing is appropriate for clients that have critical information
security issues at any level of the enterprise, from the Internet connection
to the desktop, wherever applications have an impact on highly sensitive,
valuable or critical organizational data.
Application Security Testing Includes:
- Conducting an application
security assessment to analyze the
security of an identified application (e.g. electronic commerce servers,
on-line financial applications, distributed applications, and Internet
front ends to legacy systems.)
- Defining security-critical areas and identifying
solutions to
enhance each application's security. Specific code flaws are identified
and fixes recommended.
- Evaluating the effectiveness of existing
controls by reviewing
the application's requirements, design, implementation, configuration
and documentation.
- Identifying the options for encryption, authentication,
access
controls and software security that best meet the uncovered security
threats and their possible business impacts.
Polar Cove's detailed Application Security
Testing reports describe:
- Risks uncovered in the application's security controls.
- A prioritized list of recommended improvements.

© 2006 Polar Cove
|