•  
      code_for_government #331606
    Security Bug Testing
    UMANG
    UMANG - Vulnerabilities, Risks & Mitigations
    Unit Testing
    Medium
    Campaign

    Conduct a comprehensive security assessment to detect potential vulnerabilities and privacy concerns within the UMANG application. Provide detailed reports on any identified issues, including risk assessments, recommendations for mitigation, and compliance with security best practices and privacy regulations.

    Empty

    A thorough documentation of any security weaknesses found across all layers of the application, including network, database, application, and third-party integrations. Privacy compliance checks will focus on data handling, storage practices, and access controls to address any concerns over unauthorized data sharing, retention, or access. The assessment will categorize vulnerabilities by risk level (low, medium, high), detailing their potential impacts on data integrity, application availability, and overall security. Each vulnerability will come with specific mitigation recommendations that include technical fixes, configuration adjustments, and policy updates, with a suggested implementation timeline and prioritization. The final outcome will include a comprehensive report with findings, recommendations, and follow-up actions, as well as updated security protocols for the UMANG development and operations teams. Ultimately, this will enhance UMANG’s security framework, mitigate risks, and strengthen user trust by demonstrating a commitment to robust security and privacy practices.

    May be submitted in excel sheet.

    Empty
    2024-11-07 15:59
    2024-12-20

    Organization Type : Goverment Publisher Name : UMANG, National eGovernance Division, NeGD

    Empty
    Empty
    #331606

    Follow-ups

    User avatar

    I am interested in contributing in this project as it perfectly aligns with my skills in Testing. I am well versed with the technologies and the risks. I have also completed courses such as Information Security and Audit, Information Security and Management and Cyber Security, which has helped me apply my skills in practice.

    User avatar
    • Mentor(s) changed from Shipra Saxena (Shipra14) to None
    • Mode of the task set to
    • Mode of the task set to