Educause Security Discussion mailing list archives

Re: Code Review


From: "Doty, Timothy T." <tdoty () MST EDU>
Date: Thu, 4 Nov 2010 08:50:43 -0500

For code review we use Crucible (www.atlassian.com/software/crucible/) which 
has worked really well for us.

Tim Doty

-----Original Message-----
From: The EDUCAUSE Security Constituent Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Joel Rosenblatt
Sent: Thursday, November 04, 2010 8:48 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: Re: [SECURITY] Code Review

Hi,

We use Fortify for code review.  Very nice product.

Our contact person is

Jill Elwert
District Manager - NY Region
(p) 914-248-5111
(c) 914-409-7298
(f) 650-358-4704
(e) jelwert () fortify com
www.fortify.com

but as your in NC, you will probably deal with someone else - I am sure
that Jill would be happy to refer you to the proper person.

Thanks,
Joel Rosenblatt

Joel Rosenblatt, Manager Network & Computer Security
Columbia Information Security Office (CISO)
Columbia University, 612 W 115th Street, NY, NY 10025 / 212 854 3033
http://www.columbia.edu/~joel
Public PGP key
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x90BD740BCC7326C3


--On Thursday, November 04, 2010 8:02 AM -0400 "Umphrey, Margaret"
<STREETERM () ECU EDU> wrote:

Good morning,

We are looking for recommendations for vendors to conduct source code
review and vulnerability tests. If you have a recommendation, please
provide their
contact information.

Thank you,

Margaret Streeter Umphrey, CISM, CISA
Director of IT Security
Information Security Officer
East Carolina University
Greenville, NC 27858
(252) 328-9187
streeterm () ecu edu
www.ecu.edu/itsecurity

NOTE: Don't be a Phishing Victim - ECU and other reputable
organizations will NEVER use email to request that you reply with your
password or other
confidential personal information. Just Delete Phishing emails.  For
more details visit http://www.ecu.edu/itsecurity/Scams.cfm

This email message and any attachments are solely for the use of the
intended recipient(s) and may contain confidential and/or privileged
information. Any
unauthorized use, review, disclosure or distribution is prohibited.
If you are not the intended recipient, please contact the sender by
reply email and
destroy all copies of the original message and attachments.




Joel Rosenblatt, Manager Network & Computer Security
Columbia Information Security Office (CISO)
Columbia University, 612 W 115th Street, NY, NY 10025 / 212 854 3033
http://www.columbia.edu/~joel
Public PGP key
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x90BD740BCC7326C3

Attachment: smime.p7s
Description:


Current thread: