Customers: Renaissance Credit Moscow; Financial Services, Investments and Auditing Contractors: Informzashita Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)Project date: 2014/09
|
The Informzashita company completed in the fall 2014 the complex project on audit of security of the updated system of the remote banking (RB) in Renaissance Credit bank.
In a project deliverable specialists of the company developed recommendations about increasing the level of security of Internet banking thanks to what the RBS system and its environment became steadier against different cyber attacks.
At the end of August, 2014 Renaissance of the Credit officially announced start of upgraded version of Internet bank. Before input in commercial operation access to all links of the RBS system of bank was provided to an expert command of Informzashita. In the course of tests a real hacker attack on server and user parts during which vulnerabilities of critical data assets were revealed was dramatized and damages from possible incidents of cybersecurity are assessed. Specialists tested resources of external network perimeter of a system which operation can lead to a non-authorized access to critical data (SQL injections, XSS, execution of any code, a business logic error, weak password policy and so on). Thus, the new version of Internet banking Renaissance of the Credit was completely prepared for operation in information security.
"The recommendations developed by experts of Informzashita company allowed us to minimize danger of emergence of incidents of cybersecurity in the new version of the RBS system, – Sturov Dmitry, the head of department of information security commented on Renaissance of the Credit. – We pay special attention to security issues of the user operations performed through Internet bank and our main objective – to provide to this service the maximum protection".