Matomo

Product security for one of the biggest African banks | Cossack Labs

🇺🇦 We stand with Ukraine, and we stand for Ukraine. We offer free assessment and mitigation services to improve Ukrainian companies security resilience.

Case African bank Banking APR - JUL 2023

Product security for one of the biggest African banks

Overview

Industry

  • Banking

  • Financial Service Authority

Technology stack

  • iOS Swift

  • Android Kotlin

  • Windows-based backend

Regulations

  • Typical fintech security requirements, PCI DSS

  • Data privacy regulations

  • Encryption export regulations

Challenges

Technology requirements

Support old phones

Consistent security for iOS and Android

Device trust

Anti-fraud and anti-abuse system

Our approach

Mobile-specific expertise

Data lifecycle focus

Proactive security measures

Engineer-to-engineer collaboration

Solution

Initial risk assessment and rapid threat modelling

A fragment of data classification for assets appeared on the mobile application.

A fragment of data classification for assets appeared on the mobile application.

Mobile security validation, CL MSS

Mobile application security and platform trust assessment

crucial and high issues

API security

Protecting the application itself

Anti fraud system

Future product security work

The status of banking applications after security assessment and one month of issues fixing by the development team.

The status of banking applications after security assessment and one month of issues fixing by the development team.

Products and services involved

Security engineering and architecture

Security engineering and architecture

Read moreSecurity engineering and architecture
Mobile apps security

Mobile apps security

Read moreMobile apps security
API security

API security

Read moreAPI security
Fintech security solutions

Fintech security solutions

Read moreFintech security solutions

Results and outcomes

Why Cossack Labs?

Cossack Labs is a provider of data security and cryptographic tools, bespoke solutions and product security services. Our security engineers are contributors of industry security standards, hold cybersecurity certifications, having academic degrees in cryptography, software engineering, and information security. Cossack Labs has a decade of practical experience in the security field and a great number of successful collaborations with the biggest fintech players and governmental organisations.

Contact us

Get whitepaper

Apply for the position

Our team will review your resume and provide feedback
within 5 business days

Thank you!
We’ve received your request and will respond soon.
Your resume has been sent!
Our team will review your resume and provide feedback
within 5 business days