views:

38

answers:

1

We are planning to buy a product that's developed on ASP.NET MVC, JQuery, SQL 2005. .basically latest MS stack. This product is going to store some of very highly sensitive data.

So, we need to evaluate that product in terms of security.

But I'm confused as in How can I certify that this product is secure and we can buy it.

I don't have the luxury to peep into source code unless I buy that product.

What are the options I have?

A: 

Not programming related, the only thing you can do is look at any available documentation. What type of software is it? Can you call the company and ask for literature?

JonH
Imagine it as something like probably a online banking? I mean as sensitive as it can be..
Broken Link
You will need to get some sort of eval or free copy to evaluate, you really do not have any other option. If the company does not want to let you use / eval it then that is a risk you take.You can also try to consult with past clients. See how happy they are with the SAME system...
JonH