I don't think that Counterpane does this sort of work. They specialize
in managed security. SANS, I know, does not do this. SANS is an
educational and reaserch organization. They may be able to point you in
the right direction. 

Eeye-Digital Security does penetration testing and some code review.
Personally, as an ISS certified something-or-other (I forget what class
I took with them), I would avoid ISS at all costs. There tools really
aren't that good, and there people rely solely on the tools rather than
common sense.

Kenny
 
On Tue, 2002-07-09 at 10:07, Ben Boulanger wrote:
> Counterpane provides this service.  They're about the best in my opinion, 
> but I believe SANS does it too?  I'd have to look that one up.  If you 
> want the best, Counterpane... If cost is a big factor, you can usually 
> find people around who do this type of thing as a consultant.
> 
> I -believe- Belsarius (sp?) used to do this and was based out of this 
> area, but it's been awhile since I've checked on them.
> 
> Ben
> 
> 
> On Tue, 9 Jul 2002 [EMAIL PROTECTED] wrote:
> 
> > 
> > Hi all,
> > 
> > Does anyone have any experience working with companies who do 
> > penetration testing, code review, and general security audits for 
> > products?
> > 
> > At my current place of employment we have a product which we would 
> > like to have reviewed and tested by an outside party.  However, the 
> > only company mentioned was ISS, who, if you remember were the folks 
> > responsible for the Apache fiasco a month or so back.
> > 
> > If anyone has any recommendations, please let me know.
> > 
> > Thanks
> > 
> > 
> > 
> 
> -- 
> 
> Like playing a harp before a cow...
> 
> 
> *****************************************************************
> To unsubscribe from this list, send mail to [EMAIL PROTECTED]
> with the text 'unsubscribe gnhlug' in the message body.
> *****************************************************************
-- 
----------------------------------------------------------------------------
"Tact is just *not* saying true stuff" -- Cordelia Chase

Kenneth E. Lussier
Sr. Systems Administrator
Zuken, USA
PGP KeyID CB254DD0 
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xCB254DD0



*****************************************************************
To unsubscribe from this list, send mail to [EMAIL PROTECTED]
with the text 'unsubscribe gnhlug' in the message body.
*****************************************************************

Reply via email to