Home > Services > Secure Development Lifecycle > Code Review, Testing & Release
Code Review, Testing & Release
Given the current threat landscape, it is imperative that organizations locate and prevent security bugs in the application before releasing it in the production environment.
Aujas’ Code Review service evaluates the source code of the applications for common programming errors that lead to security vulnerabilities. We combine automated and manual code reviews to identify vulnerabilities at the code level, trace them back to the architecture and design flaws, to address them properly and subsequently mitigate them.
Aujas’ testing service tests the application for security vulnerabilities and for the magnitude of the risk-exposure it is subject to.
Activities
- In-depth inspection(automated/manual) of source code
- White box testing
- Grey box testing
- Black Box testing
Secure Release
As the organization grows, new applications are deployed. Many organizations recognize the benefits that new applications provide, but forget the software risk associated with deploying them.
Organizations need to understand the fact that testing the requirements, analyzing the design, and performing code review are not sufficient to ensure a secure application. The application may still be susceptible to vulnerabilities if there is a configuration mismatch, or a default installation, or when it communicates with other applications.
Aujas offers secure release to ensure that the application infrastructure is deployed in a secure fashion, as well as to ensure secure communication among various entities within the computing environment.
Activities
- Field security evaluation
- Software patch management
- Secure configuration and deployment assessment
|