The OWASP Foundation OWASP Global Update Seba Deleersnyder OWASP Foundation Board Member.

Slides:



Advertisements
Similar presentations
The OWASP Foundation OWASP Belgium Chapter OWASP Update 6-Jun-2013 Seba Deleersnyder BE Board
Advertisements

Summit 2011 Outcomes PRESENTED BY __________. About the Summit Over 180 application security experts from over 120 companies, 30 different countries,
The OWASP Foundation Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under.
2 whoami The OWASP Foundation Nahidul Kibria Co-Leader, OWASP Bangladesh, Senior Software Engineer, KAZ Software Ltd.
The OWASP Foundation ABC About me MOSHIUL ISLAM, CISA A: Information System Auditor B: Currently working for a Bank – EBL, IT Security.
1 Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation This work is available under the Creative Commons SA 3.0 license The OWASP Foundation OWASP
The OWASP Foundation OWASP Summit 2011 ¿A donde vamos…?
THE BASICS OF THE WEB Davison Web Design. Introduction to the Web Main Ideas The Internet is a worldwide network of hardware. The World Wide Web is part.
What is OWASP OWASP Live CD Live Demo Omar Sherin-OWASP Egypt.
This is a work of the U.S. Government and is not subject to copyright protection in the United States. The OWASP Foundation OWASP AppSec DC October 2005.
The OWASP Foundation Setting up a Secure Development Life Cycle with OWASP Seba Deleersnyder OWASP Foundation Board.
Copyright © The OWASP Foundation This work is available under the Creative Commons SA 2.5 license The OWASP Foundation OWASP BeNeLux 2010
10 Steps To Agile Development Without Compromising Enterprise Security
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Section 2.1 Compare the Internet and the Web Identify Web browser components Compare Web sites and Web pages Describe types of Web sites Section 2.2 Identify.
OWASP Intra- Governmental Affairs David Campbell Denver Chapter Puneet Mehta Delhi Chapter.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
The OWASP Foundation AppSecEU11 Where we are.. Where we are going Tom Brennan, Eoin Keary, Seba Deleersnyder, Dave Wichers, Jeff Williams,
Copyright 2008 © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
“Security is a process, not a product” -- Bruce Schneier.
1 Web Basics Section 1.1 Compare the Internet and the Web Compare Web sites and Web pages Identify Web browser components Describe types of Web sites Section.
The OWASP Foundation OWASP The Open Web Application Security Project Join the application security community for free, unbiased, open.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the Creative Commons Attribution-ShareAlike.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
OWASP Update Seba Deleersnyder BE Board OWASP Belgium Chapter Meeting 17-Dec-2013.
InWEnt | Qualified to shape the future1 Internet based Human Resource Development Management Platform Human Resource Development Programme in Natural Disaster.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the Creative Commons Attribution-ShareAlike.
The OWASP Foundation OWASP Belgium Chapter OWASP Update Sebastien Deleersnyder Foundation Board, Zenitel Belgium
The OWASP Foundation OWASP Belgium Chapter OWASP Update Sebastien Deleersnyder Foundation Board, Zenitel Belgium
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
The OWASP Foundation Where we are Where we are going Seba DeleersnyderEoin Keary OWASP Foundation Board.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
The OWASP Foundation OWASP Belgium Chapter OWASP Update 12-Sep-2012 Seba Deleersnyder Foundation / BE Board
OWASP ESAPI SwingSet An introduction by Fabio Cerullo.
Copyright © - The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
OWASP Update Seba Deleersnyder BE Board OWASP Belgium Chapter Meeting 12-Feb-2014.
Copyright © The OWASP Foundation This work is available under the Creative Commons SA 2.5 license The OWASP Foundation OWASP AppSec India Aug 2008.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the Creative Commons Attribution-ShareAlike.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the Creative Commons Attribution-ShareAlike.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Copyright 2007 © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
OWASP Foundation OWASP Where we are.. Where we are going.
Technology Plan SMITA PIMPLAPURE Final Project Technology and Educational Restructuring December 11, 2003.
introductionwhyexamples What is a Web site? A web site is: a presentation tool; a way to communicate; a learning tool; a teaching tool; a marketing important.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the OWASP License. The OWASP.
Foundation Board, SAIT Zenitel Belgium
OWASP Leeds OWASP Leeds Chapter OWASP Leeds
Finding and Fighting the Causes of Insecure Applications
Information Systems Audit and Control Association

Crypteron is a Developer-Friendly Data Breach Solution that Allows Organizations to Secure Applications on Microsoft Azure in Just Minutes MICROSOFT AZURE.
Canberra OWASP Chapter meeting
OWASP Charlotte What, Why, Where and How
Finding and Fighting the Causes of Insecure Applications
WELCOME Welcome to NYC Welcome to OWASP Welcome to AppSec USA 2013!
OWASP Update 26-Sep-2012 OWASP Belgium Chapter David Mathy
Presentation transcript:

The OWASP Foundation OWASP Global Update Seba Deleersnyder OWASP Foundation Board Member

OWASP The Open Web Application Security Project (OWASP) is a not-for-profit worldwide organization focused on improving the security of application software. Our mission is to make application security visible, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.

Celebrating 10 years 3

Our Successes OWASP Tools and Documentation: ~15,000 downloads (per month) ~30,000 unique visitors (per month) ~2 million website hits (per month) OWASP Chapters are blossoming worldwide OWASP Members in active chapters worldwide 20,000+ participants OWASP AppSec Conferences: Chicago, New York, London, Washington D.C, Brazil, China, Germany, more… Distributed content portal 100+ authors for tools, projects, and chapters OWASP and its materials are used, recommended and referenced by many government, standards and industry organizations. 4

~140 Projects PROTECT - These are tools and documents that can be used to guard against security- related design and implementation flaws. DETECT - These are tools and documents that can be used to find security-related design and implementation flaws. LIFE CYCLE - These are tools and documents that can be used to add security- related activities into the Software Development Life Cycle (SDLC).

The OWASP Foundation New projects - last 6 months Common Numbering Project HTTP Post Tool Forward Exploit Tool Project Java XML Templates Project ASIDE Project Secure Password Project Secure the Flag Competition Project Security Baseline Project ESAPI Objective – C Project Academy Portal Project Exams Project Portuguese Language Project Browser Security ACID Tests Project Web Browser Testing System Project Java Project Myth Breakers Project LAPSE Project Software Security Assurance Process Enhancing Security Options Framework German Language Project Mantra – Security Framework Java HTML Sanitizer Java Encoder Project WebScarab NG Project Threat Modelling Project Application Security Assessment Standards Project Hackademic Challenges Project Hatkit Proxy Project Hatkit Datafiddler Project ESAPI Swingset Interactive Project ESAPI Swingset Demo Project Web Application Security Accessibility Project Cloud ‐ 10 Project Web Testing Environment Project iGoat Project Opa Mobile Security Project – Mobile Threat Model Codes of Conduct

220 Chapters 7

Conferences 8

“I saw the ‘blossoming’ of OWASP in Portugal’s Spring. From an external viewpoint, OWASP has moved from niche to widely relevant, from localized to global, from pen testing to SDLC, from server to every component of the application’s delivery and use, from InfoSec to business process relevance.” – Colin Watson

Massive Outreach OWASP-Portugal Partnership OWASP Outreach to Educational Institutions OWASP Industry Outreach OWASP Browser Security Project OWASP-Apache Partnership OWASP Mobile Security Initiative OWASP Governance Expansion International Focus Application Security Programs Application Security Certification

Board Election OWASP Governance maturing – OWASP updated its Bylaws and worked out procedures for the Board elections. These governance updates support the dynamic and growing OWASP community. Currently (5) board members are elected.

Global Committees

OWASP Members

16 Application Security Is Just Getting Started You can’t improve what you can’t measure We need to… Experiment Share what works Combine our efforts Expect another 10 years!

Call for action Start or join your OWASP chapter Start or join OWASP projects Translate material (documents, tool interfaces) Join as member Become active in OWASP organisation (committees, board election 2013) Together we will achieve our mission! 17

The OWASP Foundation Thank you & enjoy AppSec Asia 2011! 18