Cybersecurity and Software Development
Security vendors and software houses, grouped by the Chamber & EDC as a single target sector, are judged on the controls around their own tools. For them, the review examines multi-factor authentication and session policies, connected apps and OAuth scopes, API-only users, event monitoring and data export controls, as well as test coverage on custom code. Findings are mapped to the controls your team already reports on, so remediation feeds directly into customer questionnaires and certification work.