Over 400 organizations (including several Fortune Global 500 companies) in Europe and overseas and across all industries trust our vendor- and product-independent cyber security services.

For reasons of discretion, we do not list the names of our clients. However, we will be pleased to provide references and letters of recommendation following consultation with the organizations concerned.

Due to the increased sensitivity we do not state or list here any references of the 100+ projects in the fields of digital forensic examinations and expert’s reports.

The majority of our projects since 2003 is listed in the overview, which includes IT forensics projects in the context of company security trainings and concepts.

2007

Insurance Company

Security audit (penetration test of infrastructure components, application security audit of two applications, and coaching of the client's project team)

Switzerland

2006

Major Bank

Application security audit (holistic security audit of an intranet application)

Switzerland

Private Bank

Web application penetration test (technical security audit from the external perspective)

Switzerland

Pension Fund

DMZ/LAN security audit (penetration test of firewall and all systems in the DMZ and the LAN from the external and internal perspective, VPN deep inspection, war driving, digital penetration into the client's LAN, and coaching the client's project team)

Switzerland

Credit Card Company

PDF form security audit (application security audit of an interactive PDF form regarding security-related functionalities and its implementation)

Switzerland

Insurance Company

DMZ penetration test and LAN/WAN security scan (technical security audit of the firewall and all systems in the DMZ and in the LAN/WAN, digital penetration into the client's LAN using a test trojan, coaching the client's project team)

Switzerland

Insurance Company

Drawing up guidelines (including checklists for various client groups and project phases) on Security Requirements for Web Applications targeted at application officers and programmers

Switzerland

Cantonal Compensation Office

DMZ penetration test including ethical hacking (testing firewall and all systems accessible via the Internet, digital penetration into the client's LAN using a test trojan, coaching the client's project manager)

Switzerland

Insurance Company

DMZ penetration test including ethical hacking (testing firewall and all systems in the DMZs from the external and internal perspective, digital penetration into the client's LAN using a test trojan, specific system audits and coaching the client's project team)

Switzerland

Insurance Company

Application security audit (comprehensive technical, conceptual and organizational security audit of a multi-tier application, its components and the associated documentation from a technical, conceptual and organizational perspective, coaching the client's project team)

Switzerland

2005

Pension Fund

Application security coaching (coaching client's project and development team on a sector solution, drafting of associated security guidelines)

Switzerland

Insurance Company

DMZ security test including ethical hacking (testing firewall (including rule set audit) and all systems in the DMZ from the external perspective (DMZ penetration test), digital penetration into the client's LAN using a test trojan, coaching the client's project manager)

Switzerland

Major Bank

Evaluation of anti-virus solution for SharePoint (technical evaluation of client's favored solution, client coaching)

Switzerland

Reinsurance Company

Technical pre-audit (technical and conceptual security and configuration audit of domain and selected servers in the LAN/WAN (worldwide))

Switzerland

2004

Major Bank

Preliminary study, project concept and coaching of the client's project team in the area of BCP server housing

Switzerland

Private Bank

DMZ penetration test including ethical hacking (testing firewall and all systems in the DMZ from the external perspective, digital penetration into the client's LAN and coaching of the client's project team)

Switzerland

Private Bank

Application security audit (comprehensive security audit of a multi-tier application, its components and the associated documentation from a technical, conceptual and organizational perspective)

Liechtenstein

2003

Insurance Company

Penetration test (testing firewall, web server and selected systems in the DMZ and home office workstations from the external perspective). As follow-up: drawing up security guidelines for telecommuting

Switzerland

page  24  of  24