Personal tools
  • Monday, January 05, 2009  
You are here: Home Services Certification
Navigation
 
Document Actions

Security Certification

AppSec Consulting provides security certifications for Web-based applications. This includes hosted application infrastructure, as well as application coding. For software companies and application service providers, the “AppSec Certified” testing process provides a competitive advantage by allowing your sales and marketing teams to promote the security of your Web products.





AppSec CertifiedTM Certification
Applications and their components are reviewed to ensure they comply with various security parameters. The certification does not presume any specific vendor’s technology that may be included in the application architecture. The checks are universal and apply to any platform or language.

Certification Process
The certification process involves performing a thorough audit of the application to identify existing issues. To this end, AppSec Consulting has developed extensive checklists that comply with OWASP and NIST standards.

The identified issues are assigned threat ratings of Low, Medium or High. Issues with threat rating of Medium or above will require remediation to be certified. After the remediation has been applied, an additional audit will be performed to verify that the remediation was performed correctly.

Does AppSec Certified Mean Zero Risk?
In all cases, some level of risk must be accepted and managed. Zero risk can never be guaranteed as threats evolve continuously. The AppSec Certified seal provides an assurance that our clients are committed to security and have implemented a verified, proactive security program that is designed to minimize risk to critical data.


Send us an email to have someone contact you with more information on certification.
You can also use the feedback/enquiry form to get in touch with us.