Application security
The trend to make applications more accessible over private and public networks brings with it a host of security issues: the applications and the data they manipulate are vulnerable to increasing risk; attackers are becoming more sophisticated and they have automated tools to assist them. The increasing value of the information within these applications means that criminals are expending more resources to access, steal modify or destroy your sensitive data.
Application security is about choosing and implementing the software and hardware and the procedural methods to secure your applications data from these external and internal threats.
Application security is maximised when it is designed in as part of the system, rather than added as an afterthought. Risk management techniques can be used to identify your information assets and the threats, to identify vulnerabilities and to choose controls to be implemented.