Information Assurance: Independent Verification and
Validation
Interhack's Independent Verification and Validation
(IV&V) service provides clients with the assurance
that they need that they're building the software
right, and that the right software is being built.
While computers and the software that runs them are
critical to virtually every business, few have the
capability to provide the kind of oversight needed to
ensure that their investment in software development
is being well-made. Particularly as software
development is increasingly done offshore, risks
present from software need to be managed.
Ongoing oversight is not just good policy anymore; an
IV&V program can be a critical component of an
effective information assurance program that also
addresses concerns raised by HIPAA, GLBA, COPPA, and
other regulation.
Downloads:
Independent Verification and Validation
Offered as a subscription service, Interhack's
IV&V works by first establishing a scope and
schedule for reviews. Any particular concerns of the
client are identified for special attention. As laid
out in the schedule, on a weekly, monthly, or
quarterly basis, a snapshot is made of the code in
use. Interhack's IV&V team tracks the changes,
providing recommendations for developers in addressing
management concerns. Summary reports are also
submitted for the sponsoring management, showing code
activity, summarizing recommendations, and providing a
risk analysis of the system's code.
Contact us to see how IV&V can be a valuable
component of your overall information assurance
program.