Subscribe | About Us | Feedback
Today in Manufacturing.Net

Resources
Bookstore
Career Center
Events Calendar
Links
White Papers

Free White Papers

News
Featured Articles
Financial News
Global Manufacturing
Government News
Mergers & Acquisitions
News Archive
People in the News

Amazon

Market Sectors
Aerospace
Automotive/Transportation
Chemical/Petroleum
Food/Beverage
Medical
Metals
Pharmaceuticals/Biotech
Plastics/Rubber
Other Manufacturing

Industry Focus
Design & Development
Electrical & Electronics
Energy
Environmental
Facilities & Operations
Labor Relations
Manufacturing Technology
Materials
Quality
Safety
Supply Chain

Career Center
CareerBuilder.com


About Us
Editorial Contacts
Advertise with Us

Our Partner Sites
Chem.Info
ECN
Food Manufacturing
IMPO (Industrial Maintenance & Plant Operation)
Medical Design Technology
Pharmaceutical Processing
Product Design & Development
R & D Magazine
Wireless Design & Development
Wireless Week




Search the Library
 
Home>

Trust, But Verify: How to Manage Risk in Outsourced Applications

Ounce Labs
By : Ounce Labs
INFORMATION
Published : Sep 11, 2007
Length : 15
Type : White Paper
 
Download Now
Save for Later
  Email This Page
Overview :

When considering outsourcing all or part of the development process, there are several overriding security issues that arise. All of these concerns require careful planning, execution and monitoring to verify that they are addressed prior to acceptance of the software from the outsourcer. With growing emphasis on the need for application security, organizations are beginning to explicitly identify the security requirements of an outsourced project up front, and setting acceptance criteria within the contract itself to ensure the security of the source code delivered. By requiring proof that outsourced software has undergone a rigorous code review, organizations can reduce their liability, prove compliance with reporting and audit requirements, demonstrate data integrity, and improve the availability and stability of operations.

This paper will discuss the need for addressing security concerns in outsourced applications, outline a framework for addressing those concerns, explore the role of source code review to assess and certify outsourced applications, and provide a sample contract addendum for including secure code requirements in RFP's and outsourcing contracts.

View All Items By This Company
Browse Related Categories :
Application Security , Policy Based Management , Risk Management , Security , Security Policies
Search the Library
This Weeks Most Popular Reports Most Popular Topics Vendor Directory
White Papers
   Learn about White Paper Lead Generation opportunities