Home > Services > IT Security > Application Security
- solutions
- vertical solutions
- takeaway pdfs
Take them, share them...
Business Continuity and Disaster Recovery P... (936KB)
Emergency Management for Higher Education (297KB)
Emergency Management for Schools (325KB)
Emergency Management Services (PDF, 322KB)
Information Security Outsourcing (PDF, 364KB)
Information Security Services (PDF, 313KB)
IT Security for State & Local Government (PDF, 286KB)
IT Security in Higher Education (PDF, 176KB)
Security Assessment (PDF, 281KB)
Third Party Risk Management Services (PDF, 318KB)
- white papers
- webinars
- articles
- news
Managing Third Party Risk
Some sources of risk that may not be top-of-mind include your service providers,
web hosting services, contractors, outsourcers, supply-chain nodes, consulting
services, and travel services—any number of outside entities having custody
of or access to your sensitive information. If your extended enterprise includes
these third parties, you need a way to manage this risk.
Take the white paper (4.5MB)
Business Impact Analysis: Foundation For Operational Risk Management
This white paper explains the relationship of BIA to each of the elements of
operational risk management (ORM). It describes the components and process of BIA, and demonstrates how
BIA can be leveraged to drive ORM programs and expenditures. The intended
audience includes organizational senior managers, operational risk managers,
and functional managers.
Take the white paper (992KB)
Securing Your Constituents and Institutional Information
In this presentation of Security by Example by Carolyn Ryll, you will shake your heads at common mistakes, but learn how not to make them yourself.
Third Party Risk Management: Do your vendors protect your sensitive data as you would?
Join CIBER for a complimentary webinar that will illustrate ways in which your organization can identify and mitigate risks posed by those third party vendors who have access to your sensitive and mission-critical data as a normal course of doing business with you.
IT Security Operational Maturity: Imaginary Superheroes or Sound Solutions?
If your organization is relying on individual point solutions, personal heroism, or other “silver bullets” to secure its IT assets, it may be time to face the kryptonite.
Business Impact Analysis: Foundation for Operational Risk Management
This webinar will teach you ways in which your organization’s risk management activities can be enhanced by applying Business Impact Analysis (BIA) methodologies.
IT Security Maturity in Higher Education
Learn how to transform your institution’s security program into an operationally mature program that permanently reduces risk.
Local Government Emergency Services: Setting
Yourself Up for Success
This article, by CIBER’s A.J. Briding first appeared in IAEM Bulletin in
October 2007
Local
Government Emergency Services: Partnering With Your IT Department
This article, by CIBER’s A.J. Briding first appeared in IAEM Bulletin in August 2007
Local Government Emergency Services: The Necessity for Thoroughness
This article, by CIBER’s A.J. Briding and Jerry Sneed, Director, Office of Emergency Preparedness, City of New Orleans, first appeared in IAEM Bulletin in February 2007
14 Apr 2010
CIBER Successfully Completes Upgrade to Hillsborough County Public School’s Lawson Applications
Read the press release |
Take the PDF (25KB)
14 Apr 2010
CIBER Schedules First Quarter 2010 Earnings Release and Conference Call
Read the press release
22 Mar 2010
CIBER’s Principle Express Pack (PEP) Named an Oracle Accelerate Solution
Read the press release |
Take the PDF (25KB)
04 Mar 2010
CIBER, Inc. Files 2009 Form 10-K
Read the press release |
Take the PDF (25KB)
04 Mar 2010
CIBER Develops Air Pollution Data Collection System For Connecticut Department of Environmental Protection
Read the press release |
Take the PDF (25KB)
02 Mar 2010
CIBER to Present at The ROTH Capital Partners 22nd Annual Growth Stock Conference
Read the press release |
Take the PDF (25KB)
01 Mar 2010
CIBER Strategic Partnership with CNL Software Enhances CIBERSecure
Read the press release |
Take the PDF (25KB)
26 Feb 2010
CIBER Introduces Solution For Sophisticated Manufacturing Industry
Read the press release |
Take the PDF (25KB)
23 Feb 2010
CIBER Launches Flex: Subscription-Based Offer for SAP® Business All-In-One Solutions
Read the press release |
Take the PDF (25KB)
16 Feb 2010
CIBER Selected for Integrated Port Security Project at Georgia Port Authority
Read the press release |
Take the PDF (25KB)
04 Feb 2010
CIBER Wins Engineering and Integration Contract with Administrative Office of U.S. Courts
Read the press release
01 Feb 2010
CIBER Awarded GSA Financial And Business Services (FABS) Contract
Read the press release |
Take the PDF (25KB)
- client quote
“CIBER demonstrated outstanding experience working with other major cities, like the City of San Francisco, in creating strong e-Gov offerings that resulted in high citizen satisfaction. Based on their hands-on experience, 30-year history of successfully working with local governments and their commitment to creating a strong local presence, we selected CIBER as our strategic web management partner. We are confident CIBER has the expertise to help us develop a site and service offering that will benefit our citizens now and for years to come and place our City in the top tier of ‘best practices for City e-government web services’.”
Dr. Melodie Mayberry-Stewart — Chief Technology Officer, City of Cleveland
For more information about our Application Security services & solutions, please contact:
bbird@ciber.com
Bonnie Bird
Manager, Marketing
Application Security
Do your customers apply for loans online, order products online, check their account information online, or input personal information in order to access services online? The data they provide is most likely not only passing through the application they originally accessed, but it is also passing through other “back end” applications that process it in some fashion. Web-enabled businesses and service providers need to know that their Web applications, and even the Web applications used by their business partners, are potential targets for malicious users looking to compromise sensitive business and personal data. All applications that support any business process must be designed and tested to ensure that they protect the information they handle and/or store.
Wide-Ranging Strategy
Every time an organization adds new vendors, creates a new sales promotion site, or deploys a new Web application, the Web developers must know what kinds of security questions to have in mind during the development process. Because Web sites are in a state of constant flux, organizations cannot be content with a one-time Web application assessment. Rather, organizations must develop and follow a strategy in Web application design, testing, and development that maintains a security posture that is tailored to their specific needs. This focus on security must also be extended to the network infrastructure that supports the application once it is deployed. An application that has been designed securely must also be hosted in a secure and monitored network environment to prevent an attacker from using a network vulnerability to compromise data that has been processed by the application.
Software Code and Design Review
In addition to assessing Internet-facing applications, CIBER Global Security also assesses vulnerabilities in internal applications, including automated and manual testing for both the technical and nontechnical controls, as well as code review and application design. Do your employees process personal information using HR software, track project progress and artifacts, process payroll checks, use EDI or EFT to process receipts and payments from vendors or clients, or manage repositories of client information? How do organizations ensure that the information remains confidential, maintain the integrity of the information, and at the same time make certain the information is available to those who need it (CIA)?
Comprehensive Assessment
CIBER's Global Security Practice provides security assessments that can be used to help organizations develop strategic plans to keep data that is processed by applications secure. CIBER will take a comprehensive view of the application and can provide not only an Application Security Assessment, but can also conduct an External Control Assessment, Internal Network Assessment, Host Assessment or a Program and Practices Assessment to ensure that the application and its associated data reside in a secure environment.