HOMEPAGE
HOT AUDIT TOPICS
 
TECHNOLOGY AUDITS
COMPUTER AUDITS
APPLICATION AUDITS
MANAGED AUDITS
ON-SITE AUDITS
REMOTE AUDITS
INTERNAL AUDITS
NETWORK AUDITS
WEB SITE AUDITS
ENCRYPTION AUDITS
PCI COMPLIANCE AUDITS
iLLICIT IMAGE AUDITS
 
AUDIT SOFTWARE
SHOP & PRICING FEES
 
FREE AUDIT REPORT
WHITEPAPERS
NEWSLETTER
REFER A FRIEND
DATASHEETS
FAQS
CONTACT US
 
 
 
 
 
 

 

Webcomz - Providing Onsite & Remote Computer Audit Services

APPLICATION SERVER AUDIT SERVICE

Webcomz applications audit services provides independent audit assessment of computer applications systems these applications can range from:

  • MS Access, MYSQL, MS SQL, Oracle, Sybase and DB2 Databases
  • Web Applications hosted on Internet, Intranet and Extranet.
  • CRM, HR Personnel Systems, ERP Accounting Applications and bespoke business database.
  1. Risk Based Audit Questionnaires
  2. Security Vulnerability Audit Scans
  3. Computer Audit Analyses & Reporting

>> 1. The Risk Based Questionnaire

This involves the creation of an application risk assessment matrices (RAM) which is used to interview managers, systems administrators to test the applications configurations against business security polices and best practise procedures.

The interview answers are then documented into working papers with supporting evidence.

>> 2. Security Vulnerability Audit Scans

  • Website Applications Audit Software
  • Database Application Audit Software
  • Patch Management Audit Software

Website Application Audit Software

An internet, intranet or extranet website can be secured by Auditing your enterprise systems and should be a priority in any organisation. Hackers are concentrating their efforts on web-based applications -

  • Shopping Carts
  • Web Forms
  • Login Pages
  • Dynamic Content

Web applications are accessible 24 hours a day, 7 days a week and control valuable data since they often have direct access to backend data such as customer databases.

The installation of firewalls, SSL and locked-down servers require additional examination to prevent against web application hacking

Any defense at network security level will provide no protection against web application attacks since they are launched on port 80 - which has to remain open. In addition, web applications are often tailor-made therefore tested less than off-the-shelf software and are more likely to have undiscovered vulnerabilities. On-line Free Audit Service automatically checks your web applications for SQL Injection, XSS & other web vulnerabilities.

Database Application Audit Software

The databse audit software checks your network for vulnerabilities for potential methods that a hacker might use to attack it, also the any vendor patch release which are not installed on customers servers will be identified.

Patch Management Audit Software

Network Security Scanner (N.S.S.) checks your network for vulnerabilities for potential methods that a hacker might use to attack it. By analyzing the operating system and the applications running on your network, Patch Management N.S.S. identifies possible security holes. In other words, it plays the devil's advocate and alerts you to weaknesses before a hacker can find them, enabling you to deal with these issues before a hacker can exploit them. The patch management and service pack management You can deploy missing service packs and patches can be deployed network-wide, without user intervention.


>> 3. Computer Audit Analyses & Reporting

This where the Webcomz Consulting team and auditors execute the formal process of analysing all fieldwork findings to compile the formal draft report.

FOR FURTHER INFORMATION:

We can provide a tailored service which is designed to your specification and bespoke requirements.

Call us to arrange an initial project teleconference or face to face consultation meeting

>> FREE CALL BACK SERVICE

>> DOWNLOAD DATASHEET

 
SOFTWARE NEWSLETTER ABOUT US CONTACT US