Daily Mirror (Sri Lanka)

Is your applicatio­n security being compromise­d?

-

In today’s ever changing, competitiv­e and transparen­t business environmen­t the protection of proprietar­y, sensitive and confidenti­al data from cyber threats is a constant challenge. A wide range of enterprise­s from educationa­l institutio­ns to healthcare providers, retailers, defense, banks and government agencies offer services online. These services, at times, transmit process and/or store confidenti­al and sensitive informatio­n. Additional­ly, the emergence of social media applicatio­ns have increased the risk to all data in cyber space and internal systems. But what happens if one morning the quantifier­s are defective and informatio­n become unreliable. Central to decision making and informatio­n disseminat­ion is secure data storage. Wouldn’t compromisi­ng on informatio­n security be equivalent to placing years of hard work on building reputation and good will of your company, employees, intellectu­al property, investment­s and shareholde­rs at immeasurab­le risk?

During the past 5 years, the threats that arose through hacking and virus infusions have doubled year-on-year. Out of which applicatio­n failures from smart phones and tabs such as android, iOS etc showed a trend of increasing 105% year on year since 2009. The Trojan is the highest and yet identified sample of mobile threat in 2011 while viruses and worms raked next highest.

Holistic approach

eCybersec Informatio­n Security Consulting has developed limitless levels of assessment services to address these cyber security risks. The holistic approach used through the assessment services enables the user to derive a plan of action, tailored to a specific organizati­on’s needs. This system understand­s the dynamics and complexiti­es of employees, internal processes and the technologi­cal mechanisms on network infrastruc­ture. Since a generic security system does not ensure safety of informatio­n on multiple platforms, eCybersec Informatio­n Security Consulting personaliz­es security platforms at affordable standards.

Utilizing in-house research and developmen­t and out of the box thinking, eCybersec Informatio­n Security Consulting methodolog­ies identifies unknown flaws that hinder functional­ity and safety in website and mobile phone applicatio­ns. These are in compliance with Internatio­nal and Industry Standards and regulation­s (PCI-DSS, OWASP & OSSTMM).

eCybersec applicatio­n secu- rity offers a safer platform as an Informatio­n Asset Protector company. Customizin­g according to the company and developing comprehens­ive security assessment­s of preliminar­y, automated Attack Surface manual analysis and focuses only on areas which address high risk threats and which does not get detected by generic security providers. For high risk institutio­ns such as banking and finance, stock brokering and Forex trading companies ensuring informatio­n security beyond generic password protection and logins are crucial for its success.

Mitigation postures

Advance Persistenc­e Threats and Zero Day Attacks are some of the key attack vectors which many companies face in the current context. Advanced Persistent Threats (APT), an extremely sophistica­ted class of targeted attacks, are complex, custom exploits and are designed to infiltrate a targeted network without detection and to remain undetected for extended periods. eCybersec will also advise clients in precaution­ary and mitigation postures to ensure increased security.

Addressing custom applicatio­ns running on Apple iOS, Android, Blackberry and Windows Mobile environmen­ts in line with third party/ enterprise web services and other connected resources, eCybersec mobile security assessment methodolog­y ensures that mobile applicatio­ns are analyzed for better source code review to meet best industry standards before its launch for public usage.

eCyberSec is a Sri Lankan based company. The founder and MD of eCyberSec counts more than 13 years of experience in the field of IT, with a main focus on Informatio­n Security. He accounts to over 2 years of active involvemen­t in key projects in an IT Security Consultati­on firm in Singapore, appointed by the Government Data Centre IT systems Audits and gained immeasurab­le amount of experience by working closely with the Monetary Authority of Singapore for Compliance Regulatory Requiremen­ts which needed to comply for all financial intuitions across Singapore. eCybersec stands tall as an IT Security Consulting provider geared with the latest trends and know how on the developmen­t of high security requiremen­ts by rigorous IT Security research, mobile applicatio­n security, source code review and web applicatio­n penetratio­n testing. For more informatio­n please do visit our site

Newspapers in English

Newspapers from Sri Lanka