Skip to content
Healthcare

Continuous Cybersecurity Assessment

In this project, the CodeBranch team conducted a final audit of the work of the core IT security team at Fluid Attacks, a company that helps organizations strengthen their security posture.

Quick Summary

  • In this project, the CodeBranch team conducted a final audit of the work of the core IT security team at Fluid Attacks, a company that helps organizations strengthen their security posture.
  • A significant improvement in the quality of security testing was achieved by adding an extra audit step to the assessment process.
  • CodeBranch was able to help security analysts identify issues that were not visible during their previous review rounds.
Tech Stack: SAST DAST MPT MAST SCA CSPM PTaaS RE ASPM SCR
Continuous Cybersecurity Assessment

Overview

Fluid Attacks is a cybersecurity company that focuses on identifying and remediating vulnerabilities in software and IT infrastructure. They provide a wide range of security services and aim to help companies strengthen their security posture by proactively identifying risks and helping them build secure software systems. In this project, the CodeBranch team conducted a final audit of the work of the core IT security team at Fluid Attacks. Based on a series of static and dynamic tests, CodeBranch checked for possible false negatives that may have been overlooked in the previous security phases — both the human testing team and the machine-based automated tests.

Industries

Services Provided

  • InfoSec
  • Dynamic Analysis
  • Static Analysis

Approach

The CodeBranch team employed a comprehensive set of security assessment methodologies: SAST (Static Application Security Testing), DAST (Dynamic Application Security Testing), MPT (Manual Pentesting), MAST (Mobile Application Security Testing), SCA (Software Composition Analysis), CSPM (Cloud Security Posture Management), PTaaS (Penetration Testing as a Service), RE (Reverse Engineering), ASPM (Application Security Posture Management), and SCR (Secure Code Review). This project lasted two years with two dedicated Cybersecurity Experts serving as an independent final audit layer on top of Fluid Attacks' existing assessment pipeline.

2x Cybersecurity Expert

Results

  • A significant improvement in the quality of security testing was achieved by adding an extra audit step to the assessment process.
  • CodeBranch was able to help security analysts identify issues that were not visible during their previous review rounds.

Frequently Asked Questions

What is a continuous cybersecurity assessment and why does it matter?
A continuous cybersecurity assessment involves ongoing, iterative security testing rather than one-time audits. It matters because threats evolve constantly, and maintaining a persistent audit layer — like the one CodeBranch provided for Fluid Attacks — catches false negatives and newly introduced vulnerabilities before they can be exploited.
What security testing methodologies did CodeBranch use in this project?
CodeBranch applied ten methodologies: SAST, DAST, Manual Pentesting (MPT), Mobile Application Security Testing (MAST), Software Composition Analysis (SCA), Cloud Security Posture Management (CSPM), Penetration Testing as a Service (PTaaS), Reverse Engineering (RE), Application Security Posture Management (ASPM), and Secure Code Review (SCR).
How did CodeBranch add value on top of an existing security team?
By acting as an independent final audit layer, CodeBranch identified false negatives — vulnerabilities that had been missed by both the human security analysts and the automated machine-based testing tools already in place at Fluid Attacks.
Which industries were covered during this cybersecurity assessment engagement?
The assessment covered client environments across Healthcare, Finance, Aeronautics, Telecom, Government, E-commerce, and Logistics — industries with high security and compliance requirements.
How long did this cybersecurity engagement last and what team size was involved?
The engagement lasted two years and was carried out by two dedicated Cybersecurity Experts from CodeBranch, providing consistent and thorough coverage throughout the project lifecycle.

Related Case Studies

Ready to Build Something Great?

Let's discuss your project and find the perfect solution for your business.