Business applications today require a higher degree of
security than ever.
Their interconnectedness, and the broad availability of tools on the Internet
to execute a range of attacks, mean that security must be
a central tenet in the design and maintenance of important business
applications.
WolfeReiter provides a range of security services for business applications and
software. Our approach to security is based on the idea of Defense-in-Depth
-- that security must be addressed at every level of the system to eliminate
single points of failure.
Security audits of existing systems
Start with an audit of your applications -- especially those which are
home-grown and/or have been in place for several years or more. Contact
us about a security audit.
Remediation of vulnerabilities
Most applications we see suffer from SQL injection vulnerabilities, cross-site
scripting vulnerabilities, and authentication vulnerabilities. Addressing
this "low-lying fruit" eliminates the vulnerabilities that hackers most
commonly exploit.
Understandably, the emhasis in the development of business applications has been
on achieving functionality. Many businesses only test "front-end"
features to vet a new system, leaving security vulnerabilities unexercised
until they are found by an attacker.