March 21st, 2013 by Boy Baukema
Verifying our software with OWASP ASVS
“If a tree falls in a forest and no one is around to hear it, does it make a sound?“ Likewise if a software project is delivered and no one has looked at security, can it be said to be secure? If a tree falls… by Dunc(an) When a customer commissions Ibuildings for a new application, he [...]
“If a tree falls in a forest and no one is around to hear it, does it make a sound?“
Likewise if a software project is delivered and no one has looked at security, can it be said to be secure?
When a customer commissions Ibuildings for a new application, he usually has plenty of functional demands (I need it to do X and also Y and Z… oh and can I get A?).
And maybe some thoughts have been given to performance metrics, but security?
Well… it “needs to be secure”.
Read more


