Application security testing procedure
Download this document free
Get this document with your free trial. Choose from the full Complyzard library.
Try 1 month free30 days free, then $19/month. Trial terms apply. Card required. Cancel anytime.Document information
For product, application-security and test owners to define test scope, criteria, safe execution, finding assessment, correction, retest and release consequences.
- Document type
- Procedure
- Format
- DOCX
- Pages
- 10
- Language
- English
- Version
- 1.0
- Updated
- 2026-09-15
- Category
- Information security
- Licence
- Internal use
Description
For product, application-security and test owners to define test scope, criteria, safe execution, finding assessment, correction, retest and release consequences.
Contents
- Document control
- Purpose of this procedure
- Define the release claim and test object
- Map reachable attack surface and trust changes
- Set an enforceable testing boundary
- Test recovery and administrative paths
- Define and challenge test coverage
- Define the tested population
- Approve the engagement charter
- Select and govern an external tester
- Testing readiness review
- Maintain the testing field log
- Create the finding record
- Stop and recover from unsafe testing
- Retest the release candidate
- Set the conclusion and its limits
Version history
- v1.015/09/2026