Is My App Security Testable?
Web app security is hard, and there are many, many aspects to it (see OWASP for more details).
When it comes to security testing the best way to test the security of a web app is via a pentest conducted by experts. However, such pentests are expensive, and I have not heard of any company that can afford to carry out regular pentests on all of their web apps.