SciELO - Scientific Electronic Library Online

 
vol.9 número2Consumo de combustible frente a la eco conducción y tráfico en una ruta mixta en la ciudad de QuitoEl cadmio y su efecto en el crecimiento de la caña deazúcar(Saccharum officinarum L.) índice de autoresíndice de assuntospesquisa de artigos
Home Pagelista alfabética de periódicos  

Serviços Personalizados

Journal

Artigo

Indicadores

Links relacionados

Compartilhar


Revista Científica y Tecnológica UPSE (RCTU)

versão On-line ISSN 1390-7697versão impressa ISSN 1390-7638

Resumo

CORONEL SUAREZ, Iván Alberto  e  QUIRUMBAY YAGUAL, Daniel Ivan. Computer security, methodologies, standards, and management framework in an approach to web applications. RCTU [online]. 2022, vol.9, n.2, pp.97-109. ISSN 1390-7697.  https://doi.org/https://doi.org/10.26423/rctu.v9i2.672.

There are various methods for evaluating the security of Web applications, most of which rely on automated scanning technicians. The goal of this research is to address the fundamental concepts required to understand computer security issues in information systems and services, with a focus on penetration tests in web applications. Methodologies that can be applied and reference frameworks that must be taken into account in the application development life cycle are addressed; additionally, descriptive tables of the methodologies used in pen-testing tests are provided, finally reaching the ISO/IEC 27000 family, leaving a brief description of the same and the use it gives in ISMS implementations, information security evaluations and audits.

Palavras-chave : cybersecurity; ISSAF; OWASP; OSSTMM.

        · resumo em Espanhol     · texto em Espanhol     · Espanhol ( pdf )