Tested by SI Program
Security Innovation helps software development companies
establish a security baseline for their products and provide their
customers with the confidence they need to deploy them. The
“Security Tested” logo from Security Innovation means that an
application has been developed in a secure manner and that it is
resistant to attack and exploit.
The Logo and Report
Applications that meet the “Tested by Security Innovation”
requirements for design, process and test coverage are awarded a
logo which may be included in
application packaging and displayed in
collateral and on web sites. The logo tells customers that the
application has been through a rigorous security testing process
that has isolated and mitigated high severity vulnerabilities and
that the vendor is serious about quality and security in their
products. As further evidence, logo recipients are provided with a
report that details the security testing that was executed, the
results and a statement regarding the overall hardness of the
application. This report may also be displayed in application
documentation or collateral.
Disclaimer
The “Security Tested” logo does not certify that an application is
“hacker-proof” or safe from all potential threats. The dynamic
nature of computer and software technology coupled with the rapid
evolution of hacking and attacking techniques means that no system,
regardless of how much security testing is performed, can be 100%
secure. The “Security Tested” logo is intended to provide an
indication that efforts have been taken on behalf of the vendor to
qualify security in that specific application. The logo and
associated report are valid for only the version of the application
tested, and that version is dually documented in the “Tested by
Security Innovation” report. Any changes to the applications
naturally require additional testing to maintain the use of the
logo.



