Skip to main content
Question

Do IFS have formal certification to Security Standards

  • July 3, 2020
  • 1 reply
  • 312 views

Forum|alt.badge.img+1

Have we gone through a process of certification of IFS Applications against some of the Security Standards like ISO/IEC 27034

1 reply

anbouk
Superhero
Forum|alt.badge.img+16
  • Superhero
  • 225 replies
  • July 8, 2020

Pieter,

IFS implements a product security program based on ISO 27034 principles. Security is part of our Software Development Lifecycle model AQUA. This is realized through Security Development Practices, Security Architecture, Base Security Controls and Incident Management and Vulnerability Disclosure processes. Our Base Security Controls follow OWASP Top 10 industry best-practice recommendations. Internal security testing is done both through automated tools, manual testing as well as through regular 3rd party audits (Penetration Tests). IFS monitors the process maturity and targeted level of trust through utilization of OWASP Software Assurance Maturity Model (SAMM).

 

Regards,
Antony


Cookie policy

We use cookies to enhance and personalize your experience. If you accept you agree to our full cookie policy. Learn more about our cookies.

 
Cookie settings