Computer, Network and Information Security Consulting Services
› return to original page


Application Security Testing

Polar Cove Application Security Testing prevents loss, modification, or misuse of application systems. Specific applications, such as e-commerce servers, on-line financial applications, distributed applications, and Internet front ends to legacy programs, are evaluated. Employing the results and recommendations of Polar Cove Application Security Testing, clients are able to ensure appropriate security controls in each application, thereby managing the risks of using the Internet or other public networks for business communications. Application Security Testing is appropriate for clients that have critical information security issues at any level of the enterprise, from the Internet connection to the desktop, wherever applications have an impact on highly sensitive, valuable or critical organizational data.

Application Security Testing Includes:

  • Conducting an application security assessment to analyze the
    security of an identified application (e.g. electronic commerce servers, on-line financial applications, distributed applications, and Internet front ends to legacy systems.)


  • Defining security-critical areas and identifying solutions to
    enhance each application's security. Specific code flaws are identified and fixes recommended.


  • Evaluating the effectiveness of existing controls by reviewing
    the application's requirements, design, implementation, configuration and documentation.


  • Identifying the options for encryption, authentication, access
    controls and software security that best meet the uncovered security threats and their possible business impacts.

Polar Cove's detailed Application Security Testing reports describe:

  • Risks uncovered in the application's security controls.


  • A prioritized list of recommended improvements.

 

 


© 2006     Polar Cove