CIO Insider

CIOInsider India Magazine

Separator

Ownux Infosec: Orchestrating Leading-edge Vulnerability Assessment and Penetration Testing Services at its Best

Separator
Bhashit Pandya,   Founder & CTO

Bhashit Pandya

Founder & CTO

The global Vulnerability Assessment and Penetration Testing market is forecasted to grow at a rate of 7.5% from USD 13.34 billion in 2019 to USD 23.56 billion in 2027. The services offers several benefits such as enhanced situational awareness, real time response and control of autonomous systems. The testing is necessary for enterprises that are aiming at a large scale digital alteration of their business operations. The industry is expanding due to the growing evolution of smart cities and rising ICT spending across industries, the development of new applications in the field of wireless connectivity innovations as well as AI based protection of devices, data and systems.

The vulnerability assessment is used in several system, including banking, manufacture, communication, information technology, water supply energy supply, and transportation. With the growing level of cyber threats, market technology has become essential. The market procedure helps organizations to analyze their assets, risk, and security flaws and reduce the chance of intruders through cyber attacks. Furthermore, the growing trend of mobile application, block chain and cloud penetration testing services could lead to increase development of applications, crypto and the number of such networks that are highly vulnerable to threats.

Ownux is one such player in this space, established in 2020 with the intent of rendering top-notch Vulnerability Assessment and Penetration Testing services. Ownux is an Information Security Consulting firm, laying its expertise in the realm of Penetration

Testing of every channel which classifies various security areas of interest within an organization. Bhashit Pandya, Founder & CTO adds “We understand that identifying vulnerabilities and exploits within a professional engagement is not enough. We strive to diligently follow the process in order to ensure desired quality and efficiency.”

We are pleased and take pride in serving amazing customers around the world and creating a significant impact


In an exclusive interview with CIO Insider Magazine Bhashit Pandya enlightens us more about Ownux Infosec.

Tell us about the inception story of Ownux Infosec and the benchmarks it has set in the industry thus far
Ownux Infosec was founded in May 2020 with the goal of providing best-in-class Vulner ability Assessment and Penetration Testing services. Ownux is an Information Security consultancy firm that specializes in Penetration Testing of all channels that classify various security areas of concern within an enterprise. We are focused on Application Security, but it does not stop there. We also analyze the configurations of applications, servers, network and security appliances. We have a strong process that adheres to the latest industry standards.

Could you give a brief account of the company's Web Application Penetration Testing engagements?
Ownux delivers all penetration testing engagements following a tried-and-true process. To standardize management practices, we employ a simplified version of the PMBOK concept. We comprehend the entire application, do threat modeling of the application, complete the assessment, conduct 2 reviews and then the reports are delivered. Further to conduct threat modeling we use a mindmap that give the analyst clear idea about the application flow and where majority risk is.

Could you elaborate on the latest technologies adopted by the company that helps in delivering penetration testing engagements?
We leverage defect dojo to manage our engagements, as well as an inhouse report generating tool with 4000+ Vulnerability database, which enables Ownux to deliver reports 20% faster and with quality, allowing our analysts to focus more on the assessment. We employ a combination of commercial and open source software to automate the assessment. With right process, we are able to achieve 47% efficiency and quality than the traditional pentest.

Tell us about a recent challenging case study that demonstrates the success of the company's solutions that were deployed to draw positive outcomes.
We worked for a Denmark based FinTech company, where we conducted pentesting on one of their web applications and discovered critical severity issues that their other vendor failed to discover. This application eventually got deployed on the American Stock exchange. We also worked for one of the largest banks in America and they recently developed an application on Firebase. According to our findings, they were leaking their entire database, and an attacker could take control of their entire database. These organizations were able to avoid real-world threats and successfully deploy their applications. We are pleased and take pride in serving amazing customers around the world and creating a significant impact.

What are the future plans of Ownux Infosec?How does it plan to execute them?
We want to make the entire pentesting process seamless,cost-effective and simple to implement in any industry. To accomplish this, we are continuously learning and improvising our process.

Current Issue
Ownux Infosec: Orchestrating Leading-edge Vulnerability Assessment and Penetration Testing Services at its Best