Quality assurance at CoCoNet
July 28, 2008 - CoCoNet provides banks and corporate customers with market leading e-banking software solutions. These products are meeting the high quality requirements of the financial services industry.
The CoCoNet software development process assures the functional integrity and focuses on non-functional requirements such as performance, robustness, efficiency, ergonomics of user interfaces, maintainability as well as security.
In recent years the Open Web Application Security Project (OWASP) developed to become an industry standard. The OWASP is a worldwide free and open community, focused on improving the security of web application software. This community creates freely-available articles, methodologies, documentation, tools and technologies.
To guarantee a high software quality CoCoNet has defined a Secure Development Framework (SDF) based on OWASP bearing the major benefits in terms of quality assurance and security.
CoCoNet’s documented secure software development process now reflects the important aspects of ISO 17799/27002 (Information Security). As the process is based on OWASP, many aspects of other security-related industry standards like COBIT (Control Objectives for Information and related Technology) and SAS70 (Statement on Auditing Standards No. 70: Service Organisations) are covered.
The Secure Development Framework (SDF) is integrated in all phases of CoCoNet’s Software Development Lifecycle.
This approach guarantees that security is an integral part in all stages of a development project – from analysis of the business objectives through design and implementation to the deployment in production environments. Secure development involves the integration of phased security workshops, reviews and assessments during the development process. Subsequent testing phases involve technical security reviews and assessments of the developed software components and the entire system.
Always focusing on highest software quality and state-of-the-art standards, by successfully integrating OWASP into its processes CoCoNet has further improved the level of quality in software development.
