What are security bugs costing your organization? Security testing alone is not the most effective way of detecting flaws in your application. Analysis of documented security incidents and attack show that most vulnerabilities (95% according to one survey) originate from nonsecure development practices, both in standard off-the-shelf packages and in custom developed software
With over 25 years of experience, Comsec Consulting has developed a systematic approach based on best practice methodologies and frameworks, including OWASP, OSSTM, SANS, NIST, ISO 27001 and others. Our approach is tailored to the needs of your organization, systems, classifications and technologies in use. Our approach enalbles organizations to measure performance and identify potential improvements to the software security lifecycle process