ServicesApplication Security

 

Application Penetration Testing

Stach & Liu’s application penetration testing service simulates a real-world attack against your application to identify security vulnerabilities. Our application penetration testing methodology leverages the speed of dynamic application testing with the thoroughness provided by a manual review.
Download brochure (PDF)

Application Source Code Review

Stach & Liu’s source code review service combines automated and manual code analysis techniques to thoroughly identify security vulnerabilities. In addition, the team performs a targeted review of the application architecture and business logic to locate any design level issues.
Download brochure (PDF)

Application Hybrid Security Assessment

Stach & Liu’s hybrid security assessment service identifies application security vulnerabilities by leveraging the real-world attack techniques of application penetration testing in combination with source code review. In addition, the team performs a targeted review of the application architecture and business logic to locate design level issues.

Facebook Partner Application Security Review

Stach & Liu's Facebook application security review is designed to help Instant Personalization partners satisfy the requirement for 3rd party security audits.  Our methodology evaluates the security of your application against industry best practices with a particular focus on cross-site scripting (XSS) issues.  In addition, the team provides detailed remediation guidance and re-testing to assist in fixing identified issues.

Microsoft SDL Services

The SDL Pro Network is a group of security consultants, training companies, and tool providers that specialize in application security and have substantial experience and expertise with the methodology and technologies of the Security Development Lifecycle, the industry-leading software security assurance process created by Microsoft and proven effective since 2004.  As a member of the Microsoft SDL Pro Network, Stach & Liu provides a range of services designed to span the entire software development lifecycle and make security and privacy an integral part of how software is developed. 

Secure Development Lifecycle Program Consulting

Stach & Liu's secure development lifecycle program consulting helps improve the security around the people, process, and technology aspects of your software development organization.  Our practical and straightforward approach to secure development consulting is drawn from over 20 combined years of designing and implementing software security programs for organizations throughout the Fortune 1000.