[Full-disclosure] Fw: [WEB SECURITY] Application Security Program
- From: "huan chen" <ktriv3di@xxxxxxx>
- Date: Thu, 29 Jun 2006 19:40:06 -0700
forwarding to this list for opinion...
----- Original Message ----- From: "huan chen" <ktriv3di@xxxxxxx>
To: "Web Security" <websecurity@xxxxxxxxxxxxx>
Sent: Thursday, June 29, 2006 3:51 PM
Subject: [WEB SECURITY] Application Security Program
List,
We are trying to design a big picture information security program for out organization. The goal is to concentrate on application security. Sub tasks should include stuff like policy gap analysis, pen test balc box and white box, etc. The goal is to do all the activities and measure progress on an yearly basis/
Are thier any existing frameworks? Anything that has worked / not worked for you guys?
Thanks
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
- Follow-Ups:
- Re: [Full-disclosure] Fw: [WEB SECURITY] Application Security Program
- From: c0redump
- [Full-disclosure] WIKI / Sharepoint managed service
- From: huan chen
- Re: [Full-disclosure] Fw: [WEB SECURITY] Application Security Program
- Prev by Date: Re: [Full-disclosure] FBI Says Data on VA Laptop Not Accessed
- Next by Date: [Full-disclosure] RFID Attack theory
- Previous by thread: [Full-disclosure] Browser bugs hit IE, Firefox today (SANS)
- Next by thread: [Full-disclosure] WIKI / Sharepoint managed service
- Index(es):