How should code audits of outsourced applications be conducted?
Organizations can ensure security of their outsourced applications by requiring a security audit of the source code as part of the outsourcing contract. Ounce Labs has published sample contract language for software development that sets specific security standards and ensures that outsourced code is developed with security from the ground up, and is validated prior to acceptance. To download a copy of this contract language and to learn more about outsourcing best practices, please visit http://www.ouncelabs.