Virtualization Technology News and Information
Cloud Security Alliance Mobile Working Group Releases Mobile Application Testing Initiative Report
The Cloud Security Alliance (CSA) today announced the release of a new whitepaper from the CSA Mobile Working Group on a new initiative to support the mobile application security testing community. The Mobile Application Security Testing Initiative report strives to lay out the roadmap for establishing a more secure cloud ecosystem to protect mobile applications.

Mobile applications have become an indispensable part of all organizations today. With the emergence of cloud computing technology, organizational reinforcement is needed to adapt to this fundamental change.  Cloud computing enables real-time use of applications and simultaneously provides the enterprise with enormous flexibility. Accompanied by the convenience and with the inclusion of applications, security problems result from the lack of transparency and present challenges to risk management.

"This is an important initiative for the cloud community as it strives to create a more secure cloud ecosystem to protect mobile applications," said Douglas Lee, co-Chair of the CSA Mobile Application Testing Initiative and Head, Solutions Architecture, Strategic ISV Partners at Amazon Web Services. "Beyond security testing and vetting, we will also look to develop processes and procedures for security incidence response so as to provide a holistic approach to mobile application security testing."

The report details the issues of mobile app vetting from a life-cycle perspective, mobile app development management, mobile app coding, and audit management security issues. The group then plans to create an assessment and certification scheme white paper based on NIST special publication 800­163: "Vetting the Security of Mobile Applications" and also set up a vetting plan for a mature model and mobile apps security.  Also planned is the establishment of a vetting plan for mobile apps and guidance to allocate resources to resolve potential security problems or certification-period incidents 

The CSA Mobile Application Testing Initiative is co-chaired by Eric Wang, Chief Advisor at Gapertise along with Douglas Lee and is responsible for providing fundamental research to help secure mobile endpoint computing from a cloud-centric vantage point. Individuals interested in volunteering to contribute to mobile application security testing project should contact the leadership team at

To access the full report visit:

Published Friday, July 29, 2016 1:36 PM by David Marshall
There are no comments for this post.
To post a comment, you must be a registered user. Registration is free and easy! Sign up now!
<July 2016>