
Software Lifecycle
Quality Assurance
For the Quality Assurance Professional
Cenzic Hailstorm is the first security solution
designed with the QA professional in-mind as one of the principal users.
Hailstorm® separates the task of setting up for security testing from the
actual running of security tests. This allows QA professionals to focus
on the difficult task of running high-volume testing while incorporating
assistance from InfoSec experts that provide security expertise.
Security experts draw on Cenzic's powerful fault-injection technology and policy modeling to stress-test specific areas of a web application or to run broad policy-compliance tests across an entire application. These policies can then be used to test the target applications by QA professionals early on in the software development process.
After developers have finished coding applications, quality assurance professionals prepare them for the real world. Quality Assurance has always tested for functionality and performance in enterprise level applications. Now Hailstorm enables Quality Assurance to test for the critical third element: security. By employing Cenzic's integration with Mercury Interactive and other leading QA tools, QA groups can now test for security from a common interface and leverage their existing test scripts.
Once Quality Assurance has tested the web applications and certified them to be free of security vulnerabilities, they are deployed into production. At that point, the applications become the responsibility of the company's security professional and security auditors, who test the applications on a continuous basis for new vulnerabilities.
Learn more about Hailstorm >
|