




"AsTech has highly qualified application developers with a security mindset that bridges the IT-InfoSec gap for effective source code security assessments. They provide highly detailed resolution steps as part of their assessment. AsTech's knowledge of the financial services sector and associated vendors is invaluable."
Chris Shenefelt
Former EVP, Global Operations
Intersections Inc.
"The work that AsTech Consulting does allows ITAC member companies to have confidence that sensitive personal information is secure."
Anne Wallace
President
Identity Theft Assistance Center
"AsTech has always provided outstanding focused security services, from project management to software review. The company began with a deep commitment to integrity and effectiveness and that continues today."
Dr. Martin Carmichael
Former Chief Security Officer
TD Ameritrade
"The work that AsTech Consulting does allows ITAC member companies to have confidence that sensitive personal information is secure."
Anne Wallace
President
Identity Theft Assistance Center
"AsTech has people with a deep understanding of information security. They are committed to solving problems and are always flexible in how that gets done. I have worked with them since their beginning in 1997 and would not hesitate to call them."
David Hahn
Director of Information Security
Intuit
"AsTech's team are some of the most experienced and dedicated software security professionals I've ever come across. They are adept at quickly understanding the needs of the enterprise and producing results."
Jeremiah Grossman
CTO
WhiteHat Security
"AsTech knows application security. They bring a deep knowledge and expertise that is unsurpassed in the industry."
John Jack
Former Chief Executive Officer
Fortify Software
"AsTech provides us with peace of mind to sleep at night, knowing that our network is protected to the fullest extent of our resources."
Jennifer L. Bleess
Former Technical and Operations Manager
Smith and Hawken Ltd.
"We feel Eubel Brady and Suttman Asset Management got more than we expected, not only in in the penetration testing we contracted for but also in AsTech's open sharing of their expertise."
Kirby C. Leeper
Former Chief Information Officer
EBS Asset Management
Recent Posts from the AsTech Blog
Have you ever visited a Financial Planner? Inevitably, the first question they ask is: “Do you know what you have?” The next question is: “Do you know where you want to be in x years?” Software security management has a … Continue reading

We conclude this series with a discussion of “Session Fixation”. This was by far the easiest and most straightforward remediation we encountered on this project. This application vulnerability results from a lack of proper session invalidation. Pretty much everyone knows, … Continue reading
AsTech on Twitter
Find the source code and infrastructure vulnerabilities that put your critical applications at risk.
Prioritize, mitigate, and repair application vulnerabilities to secure your vital information assets.
Mitigate the risks of insecure code by teaching your team secure development best practices.
Create a strategy for continuous improvement to your organization's Secure Development Lifecycle.