180 likes | 309 Views
OWASP (Membership) and new OWASP Projects. Sebastien Deleersnyder CISSP Feb, 2006 sdl@ascure.com. Agenda. Introduction OWASP Belgium Chapter New OWASP Projects. Agenda. Introduction OWASP Belgium Chapter New OWASP Projects. Introduction. Sponsors this evening:
E N D
OWASP (Membership) and new OWASP Projects Sebastien Deleersnyder CISSP Feb, 2006 sdl@ascure.com
Agenda • Introduction • OWASP • Belgium Chapter • New OWASP Projects
Agenda • Introduction • OWASP • Belgium Chapter • New OWASP Projects
Introduction • Sponsors this evening: • K.U.Leuven sponsors venue • BeeWare sponsors Pizza & Drinks • Call for additional sponsors • Chapter meeting places & catering • Support for local projects • OWASP cannot recommend the use of products, services, or recommend specific companies
Introduction Program for this evening: • 18h20 - 18h40: Sebastien DeleersnyderOWASP (Membership) & new OWASP Projects • 18h40 - 19h30: Philippe BogaertsWebScarab demonstration • 19h30 - 20h45: Web Application Firewalls: Panel Discussion
Agenda • Introduction • OWASP • Belgium Chapter • New OWASP Projects
OWASP • Open Web Application Security Project • OWASP is dedicated to finding and fighting the causes of insecure software • Non-profit, volunteer driven organization • All members are volunteers • All work is donated by sponsors
OWASP? • Provide free resources to the community • Publications, Articles, Standards, e.g. • OWASP Top 10 • OWASP Guide • Testing Guide • Testing and Training Software, e.g. • WebGoat • WebScarab • .NET Projects • Local Chapters, Mailing Lists & Conferences • Dual license model: • Open Source Licenses • Commercial License for Members
OWASP Membership • Using OWASP material? • Join us and become member! • Enable OWASP to continue to provide unbiased: • Tools • Documentation • Conferences • Mailing Lists • … www.owasp.org/about/membership.html
Agenda • Introduction • OWASP • Belgium Chapter • New OWASP Projects
Belgium Chapter - What do we have to offer? • Quarterly Meetings • Mailing List • Presentations & Groups • Open forum for discussion • Meet fellow InfoSec professionals • Create (Web)AppSec awareness in Belgium • Local projects?
Belgium Chapter – House Rules • Free & open to everyone • Language • English preferred • Native language: no problem! • No vendor pitches or $ales presentations • Respect for different opinions • No flaming (including M$ bashing) • 1 CISSP CPE for each hour of OWASP chapter meeting • Sign Sheet & I’ll e-mail scan: you claim CPE credits
OWASP Local Chapter Meetings 2006 • Next Meetings: • Monday May 8th 2006 - Brussels • Thursday Sep 14th 2006 - Antwerp • Tuesday Nov 21 2006 - Brussels • Program: • Short OWASP intro • Presentation on introduction topic • Panel, workshop, round-table, … on more advanced topic • Topics: • Call for input!
Agenda • Introduction • OWASP • Belgium Chapter • New OWASP Projects
New OWASP Projects • OWASP Site Generator • http://owasp.net/forums/428/ShowPost.aspx • http://owasp.net/blogs/dinis_cruz/archive/2006/01/25/431.aspx • WASS, or Web Application Security Standards project • http://www.owasp.org/standards/wass.html • SEASA, Scoping and Evaluating Application Security Assessments • See Metrics Mailing List: http://lists.sourceforge.net/lists/listinfo/owasp-metrics • Terminology input needed • Metrics Project Reactivation? • Top10 2006? • Testing Project?
OWASP Conference • Europe OWASP conference in Belgium! • KUL • May 29: training course Web Application Security / Web Services Security • May 30-31: Conference – 2 tracks • Speaker, paper & sponsoring input appreciated!
That’s it… • Any Questions? http://www.owasp.org/local/belgium.html sdl@ascure.com Thank you!
Subscribe to BE Chapter mailing list • Keep up to date! • Post your (Web)AppSec questions • Contribute to discussions!