  |
In addition to addressing the security and controls in any business solution he has implemented, David has performed dedicated security reviews of banking systems (both in the USA and
abroad), database systems, and transactional systems for Salomon Brothers, Bank of Tokyo-Mitsubishi, and
Coopers & Lybrand. David has written and implemented new and updated policies for security, appropriate use,
and systems of internal controls; he is familiar with both internal audit and information security requirements, as
well as the technologies to secure networks and applications.

An application or infrastructure
security review involves checking the controls built in to the system
apart from operating system and network security. An important aspect of ensuring
compliance with all security, integrity, and confidentiality requirements, a review is best done on a working system, but can also be done as part of the architecture and design of a new system.

Aspects of security reviews that
David has conducted include network security, operating system security,
secure development methodologies, and detailed configuration reviews.

David has hands-on experience
configuring firewalls from many vendors.
|
 |