Web Application Assessments
Without a doubt, web-based applications and services are the fastest growing and most security-plagued method of client interaction today. As Web Application service delivery replaces the old OSI-way of thinking all traditional methods of IT Security go out the door.
As the past few years of highly-visible data breaches has tought us, these web applications are extremely vulnerable if not coded securely (and with method) from the onset of any project. Add to this the fact that there are no real coding standards, hundreds of languages and thousands of unique coding styles and trends to add to the risk.
As part of the Security LifeCycle Management of web-based applications, WireHead will perform a web application assessment against your critical applications. We adhere to the OWASP principles of coding, and are extremely well-versed in finding flaws and recommending action to correct them.
As part of our Web Application Assessment, WireHead will analyze your web based applications against the following areas of concern:
Competitive Intelligence Scouting
Environmental and Architectural Vulnerability Analysis
Application Information Gathering and Documentation
Business Logic Testing and Documentation
Authentication and Authorization Testing
Session Handling and Management Testing
Data and User Input Validation Testing
Denial of Service/Resource Exhaustion Testing
Additionally, WireHead can perform a source code review of your applications to identify possible insecure coding practices that may lead to new vulnerabilities down the road.