
Software Lifecycle
Management
For Management
Managing the security of a large portfolio of in-house applications is an ever growing challenge. With a multitude of development, QA, and information security professionals working together to secure your applications, how can you keep track? With the ever expanding need to assess more applications, how will you keep assessment costs under control and stay within budget?
Cenzic Hailstorm has been architected to address the security issues through the complete software development life cycle (SDLC). It provides a development environment for applications security architects to build policies that define how applications are to be tested. These policies can then be used to test the target applications by developers or QA engineers early on in the software development process or by Information Security group after the application has been put into production. Vulnerabilities found can be patched using Cenzic Hailstorm's remediation links and then fed back into the development process for a closed-loop approach. By allowing integration with QA tools, existing processes established as part of the performance and functional testing can be leveraged to perform security testing.
Among its other compelling features, Hailstorm®
provides rich management reporting and an executive dashboard. Want to
know how many security vulnerabilities have been discovered in the new
application that QA just received? How does it compare with last month's
release? What are the trends over time for each group? These questions
and more are easy to answer with Cenzic Hailstorm.
Learn more about Hailstorm >
|