70 likes | 181 Views
OWASP Global Education Committee (GEC). Committee Update Slides June 25, 2009. Global Education Committee.
E N D
OWASP Global EducationCommittee (GEC) Committee Update SlidesJune 25, 2009
Global Education Committee The primary purpose of the Global Education Committee is: to work with the OWASP Education Project to provide educational materials for both internal and external users, develop liaisons with educational institutions worldwide. Education Committee (Board Member Rep: Seba) Martin Knobloch (Netherlands),Mano Paul (U.S.), Eduardo Neves (Brazil), Kuai Hinjosa (U.S.), Cecil Su (Singapore), Fabio Cerullo (Ireland), Andrzej Targosz (Poland) Meeting monthly on last Thursday at 10 PM GMT 2
Meeting notes • Got support from • UCI, University of California Irvine • DSU Dakota State University • NKU Northern Kentucky University • Working on • Cornell • New York University • Columbia University • Syracuse University • First OWASP AppSec Symposium in the U.S. , sponsored by UCI participants • AppSecEU10 will have a Research track – strenghten ties with the academic world • Working with Cornell using the OWASP Open Fortify for static analysis code used by Universities • Creating a list of University conference or events such as Ja-Sig where GEC can present and promote OWASP 3
Meeting notes • Education Material Categorized (add link) • Modules to be added to test structure and identify gaps & overlap • OWASP T10 to be added • Train the trainers – first material has to be created – dependencies on portal / scoring – ‘accredited’ trainer list (what criteria are necessary) 4
Meeting notes • Assessment portal – SOC proposal to be created? Could try out something based on http://www.expresscertifications.com/ content remains cc – scope of SOC proposal – based on http://www.owasp.org/index.php/Category:OWASP_Certification_Requirements • Boot camp material – to be based on project leaders input (part of the v2 criteria) and possibly on Andrew’s donation https://www.owasp.org/index.php/Education_Donated:_OWASP_ASVS_1.0_~2_day_training_deck (seba to help Martin) 5
Meeting notes • CTF – OWASP project to be created? Several versions available. How to have ‘secret’ challenges? – CTF EU09 could be reused for US09 • Speakers Buro – rating system – see trainers – how to manage evaluations – basic requirements to be captured • Internationalization of Materials: OTGv3 to • Chinese (simplified) from China • Chinese (traditional) from Taiwan • Indonesian • Vietnamese • Thai 6
Meeting notes • Education Committee slide deck to be created (Kuai – Martin) 7