<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Brennan</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Brennan"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Brennan"/>
		<updated>2026-05-11T05:55:43Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=250891</id>
		<title>User:Brennan</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=250891"/>
				<updated>2019-05-01T14:30:46Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt; &lt;br /&gt;
[http://www.linkedin.com/in/tombrennan https://www.owasp.org/images/7/7f/Linkedin-button.png]&lt;br /&gt;
[[File:Brennan-press.jpg|left|thumb]]&lt;br /&gt;
Tom Brennan is Chief Technology Officer/Chief Information Officer for Mandelbaum Salsburg provides strategic guidance to the Firm in regards to its cybersecurity efforts and critical infrastructure   He is a an alumni of ProactiveRISK, IOActive, McAfee, Intel Security, SAFECode, Trustwave, WhiteHat, ADP, Datek Online and the United States Marines. &lt;br /&gt;
&lt;br /&gt;
Tom served the OWASP Foundation as an elected member of the Global Board of Directors for (10) years for OWASP Foundation and volunteers his time to the OWASP NYC/Manhatten and Northern New Jersey Chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Artifacts:'''&lt;br /&gt;
&lt;br /&gt;
- Written recommendations from 60+ industry leaders: [http://www.linkedin.com/in/tombrennan ONLINE]&lt;br /&gt;
&lt;br /&gt;
-OWASP interview at AppSecUSA 2013 - [http://www.youtube.com/watch?v=jU-QEUeh9-U Video]&lt;br /&gt;
&lt;br /&gt;
-Interview with [https://www.owasp.org/images/9/9f/WEB_APPC_PENTESTING_03_2012.pdf PenTest Magazine] about OWASP Foundation.&lt;br /&gt;
&lt;br /&gt;
- 2012 OWASP Board Candidate Interview: [https://www.owasp.org/download/2012-board-election/OWASP2012BoardInterviews_TomBrennan.mp3 Audio] / [https://www.owasp.org/images/e/e3/OWASP_2012_Board_Interviews_-_Tom_Brennan.pdf Transcript]&lt;br /&gt;
&lt;br /&gt;
- 2008 OWASP Board Candidate Interview  - [http://vimeo.com/23889097 Video 1], [https://www.owasp.org/index.php/OWASP_NYC_AppSec_2008_Conference Video 2]&lt;br /&gt;
&lt;br /&gt;
- Thousands of wiki commits to OWASP.ORG since 2004 see:  [https://www.owasp.org/index.php/Special:Contributions/Brennan Wiki Edits]&lt;br /&gt;
&lt;br /&gt;
Contributor and champion to many OWASP projects including:&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Incident_Response_Project OWASP Incident Response Top 10 Project]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php?title=OWASP_Virtual_Lab_Tool_Project OWASP Virtual Village]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_RFP-Criteria OWASP RFQ Criteria, Software Security]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_HTTP_Post_Tool OWASP Switchblade HTTP Post DoS Tool]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security Core Rule Set]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Cyber_Defense_Matrix OWASP Matrix Project]&lt;br /&gt;
&lt;br /&gt;
Additional Projects&lt;br /&gt;
&lt;br /&gt;
-- [http://www.penteston.com PENTESTON] a commercial vulnerability assessment platform utilizing the [http://www.proactiverisk.com CATSCAN] assessment methodology. &lt;br /&gt;
&lt;br /&gt;
-- [http://www.hacknyc.com HACKNYC Conference]&lt;br /&gt;
&lt;br /&gt;
-- [http://www.nymjcsc.org New York Metro Joint Cyber Security Conference] (NYMJCSC)&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=New_Jersey_North&amp;diff=246483</id>
		<title>New Jersey North</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=New_Jersey_North&amp;diff=246483"/>
				<updated>2019-01-09T22:22:17Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: updated url&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP New York City | Northern New Jersey ==&lt;br /&gt;
&lt;br /&gt;
Chapter Leaders&lt;br /&gt;
&lt;br /&gt;
Tom Brennan&lt;br /&gt;
&lt;br /&gt;
Evin Hernandez&lt;br /&gt;
&lt;br /&gt;
2017 Appointed Organizers - [https://www.meetup.com/owaspnycnj/members/?op=leaders Click Here]&lt;br /&gt;
&lt;br /&gt;
== Participation == &lt;br /&gt;
OWASP Foundation ([https://docs.google.com/a/owasp.org/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?usp=sharing Overview Slides]) is a professional association of [[Membership | global members]] and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the [[Chapter_Leader_Handbook]].  As a [[About_OWASP | 501(c)(3)]] non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button.  To be a &amp;lt;b&amp;gt;SPEAKER&amp;lt;/b&amp;gt; at ANY OWASP Chapter in the world simply review the [[Speaker_Agreement | speaker agreement]] and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
== Upcoming Events 2017 ==&lt;br /&gt;
&lt;br /&gt;
The local chapter hosts many meetings, events, seminars, training and virtual sessions. Click below to participate in the next one by RSVP'ing in advance of the event.&lt;br /&gt;
&amp;lt;h2&amp;gt;[https://www.meetup.com/owaspnycnj/ https://www.owasp.org/images/8/82/Meetup_logo3.jpg] [https://www.meetup.com/owaspnyc/ New York City | New Jersey Schedule of Events] - [https://www.meetup.com/nymjcsc/ Click Here More Info] &amp;lt;/h2&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Please note that venues typically have building security and may have several hundred people in attendance. Due to this fact, please ensure that you register with your first name and last name or you may be refused entry to the facility by the building. in NYC and New Jersey do require you to register with your first and last name or you may be refused entry to the building.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:United States]]&lt;br /&gt;
[[Category:New York]]&lt;br /&gt;
&lt;br /&gt;
Ready to become a member? [[Image:Join_Now_BlueIcon.JPG|75px|link=https://myowasp.force.com/]]  -- Local Sponsorship opportunities [https://www.owasp.org/images/b/ba/NYC_Chapter_Sponsorship.pdf Click Here]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=New_York_City&amp;diff=245558</id>
		<title>New York City</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=New_York_City&amp;diff=245558"/>
				<updated>2018-11-27T01:35:30Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Upcoming Events 2017 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP New York City | Northern New Jersey ==&lt;br /&gt;
&lt;br /&gt;
Chapter Leaders&lt;br /&gt;
&lt;br /&gt;
[mailto:tomb@owasp.org Tom Brennan] [mailto:evin.hernandez@owasp.org Evin Hernandez]&lt;br /&gt;
&lt;br /&gt;
OWASP Foundation is a 501(c)3 Not for Profit association with local and [[Membership |global members]] and is open to anyone interested in learning more about software security.  Local chapters are run independently and guided by the [[Chapter_Leader_Handbook]].  As a [[About_OWASP | 501(c)(3)]] non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button.  To be a &amp;lt;b&amp;gt;SPEAKER&amp;lt;/b&amp;gt; at ANY OWASP Chapter in the world simply review the [[Speaker_Agreement | speaker agreement]] and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
== Upcoming Events ==&lt;br /&gt;
&lt;br /&gt;
The local chapter currently uses a meet-up site for posting information about upcoming events etc.. click below to have a look of what is coming up when and where in the New York City / Northern New Jersey Metro region.&lt;br /&gt;
&amp;lt;h2&amp;gt;[https://www.meetup.com/owaspnycnj/ https://www.owasp.org/images/8/82/Meetup_logo3.jpg] [https://www.meetup.com/owaspnyc/ New York City | Northern New Jersey Schedule of Events] - [https://www.meetup.com/owaspnyc/ Click Here More Info] &amp;lt;/h2&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Please note that venues typically have building security and may have several hundred people in attendance. Due to this fact, please ensure that you register with your first name and last name or you may be refused entry to the facility by the building. in NYC and New Jersey do require you to register with your first and last name or you may be refused entry to the building.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:United States]]&lt;br /&gt;
[[Category:New York]]&lt;br /&gt;
&lt;br /&gt;
Ready to become a member? [[Image:Join_Now_BlueIcon.JPG|75px|link=https://myowasp.force.com/]]  -- Local Sponsorship opportunities [https://www.owasp.org/images/b/ba/NYC_Chapter_Sponsorship.pdf Click Here]&lt;br /&gt;
&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP NYC&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=New_York_City&amp;diff=245557</id>
		<title>New York City</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=New_York_City&amp;diff=245557"/>
				<updated>2018-11-27T01:35:17Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP New York City | Northern New Jersey ==&lt;br /&gt;
&lt;br /&gt;
Chapter Leaders&lt;br /&gt;
&lt;br /&gt;
[mailto:tomb@owasp.org Tom Brennan] [mailto:evin.hernandez@owasp.org Evin Hernandez]&lt;br /&gt;
&lt;br /&gt;
OWASP Foundation is a 501(c)3 Not for Profit association with local and [[Membership |global members]] and is open to anyone interested in learning more about software security.  Local chapters are run independently and guided by the [[Chapter_Leader_Handbook]].  As a [[About_OWASP | 501(c)(3)]] non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button.  To be a &amp;lt;b&amp;gt;SPEAKER&amp;lt;/b&amp;gt; at ANY OWASP Chapter in the world simply review the [[Speaker_Agreement | speaker agreement]] and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
== Upcoming Events 2017 ==&lt;br /&gt;
&lt;br /&gt;
The local chapter currently uses a meet-up site for posting information about upcoming events etc.. click below to have a look of what is coming up when and where in the New York City / Northern New Jersey Metro region.&lt;br /&gt;
&amp;lt;h2&amp;gt;[https://www.meetup.com/owaspnycnj/ https://www.owasp.org/images/8/82/Meetup_logo3.jpg] [https://www.meetup.com/owaspnyc/ New York City | Northern New Jersey Schedule of Events] - [https://www.meetup.com/owaspnyc/ Click Here More Info] &amp;lt;/h2&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Please note that venues typically have building security and may have several hundred people in attendance. Due to this fact, please ensure that you register with your first name and last name or you may be refused entry to the facility by the building. in NYC and New Jersey do require you to register with your first and last name or you may be refused entry to the building.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:United States]]&lt;br /&gt;
[[Category:New York]]&lt;br /&gt;
&lt;br /&gt;
Ready to become a member? [[Image:Join_Now_BlueIcon.JPG|75px|link=https://myowasp.force.com/]]  -- Local Sponsorship opportunities [https://www.owasp.org/images/b/ba/NYC_Chapter_Sponsorship.pdf Click Here]&lt;br /&gt;
&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP NYC&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Talk:New_York_City&amp;diff=245556</id>
		<title>Talk:New York City</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Talk:New_York_City&amp;diff=245556"/>
				<updated>2018-11-27T01:33:14Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: Created page with &amp;quot;What topics would you like to see the chapter focus on in FY19&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;What topics would you like to see the chapter focus on in FY19&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=New_York_City&amp;diff=245555</id>
		<title>New York City</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=New_York_City&amp;diff=245555"/>
				<updated>2018-11-27T01:32:44Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /*  OWASP New York City | Northern New Jersey */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP New York City | Northern New Jersey ==&lt;br /&gt;
&lt;br /&gt;
Chapter Leaders&lt;br /&gt;
&lt;br /&gt;
[mailto:tomb@owasp.org Tom Brennan] [mailto:evin.hernandez@owasp.org Evin Hernandez]&lt;br /&gt;
&lt;br /&gt;
OWASP Foundation ([https://docs.google.com/a/owasp.org/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?usp=sharing Overview Slides]) is a professional association of [[Membership | global members]] and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the [[Chapter_Leader_Handbook]].  As a [[About_OWASP | 501(c)(3)]] non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button.  To be a &amp;lt;b&amp;gt;SPEAKER&amp;lt;/b&amp;gt; at ANY OWASP Chapter in the world simply review the [[Speaker_Agreement | speaker agreement]] and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
== Upcoming Events 2017 ==&lt;br /&gt;
&lt;br /&gt;
The local chapter currently uses a meet-up site for posting information about upcoming events etc.. click below to have a look of what is coming up when and where in the New York City / Northern New Jersey Metro region.&lt;br /&gt;
&amp;lt;h2&amp;gt;[https://www.meetup.com/owaspnycnj/ https://www.owasp.org/images/8/82/Meetup_logo3.jpg] [https://www.meetup.com/owaspnyc/ New York City | Northern New Jersey Schedule of Events] - [https://www.meetup.com/owaspnyc/ Click Here More Info] &amp;lt;/h2&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Please note that venues typically have building security and may have several hundred people in attendance. Due to this fact, please ensure that you register with your first name and last name or you may be refused entry to the facility by the building. in NYC and New Jersey do require you to register with your first and last name or you may be refused entry to the building.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:United States]]&lt;br /&gt;
[[Category:New York]]&lt;br /&gt;
&lt;br /&gt;
Ready to become a member? [[Image:Join_Now_BlueIcon.JPG|75px|link=https://myowasp.force.com/]]  -- Local Sponsorship opportunities [https://www.owasp.org/images/b/ba/NYC_Chapter_Sponsorship.pdf Click Here]&lt;br /&gt;
&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP NYC&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=244429</id>
		<title>User:Brennan</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=244429"/>
				<updated>2018-10-22T17:30:25Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: tweak&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt; &lt;br /&gt;
[http://www.linkedin.com/in/tombrennan https://www.owasp.org/images/7/7f/Linkedin-button.png]&lt;br /&gt;
[[File:Brennan-press.jpg|left|thumb]]&lt;br /&gt;
Tom Brennan is a [https://ioactive.com/article/ioactive-engages-tom-brennan-to-accelerate-east-coast-client-operations/ Director at IOActive]. IOActive is the industry’s only research-driven, high-end information security services firm with a proven history of better securing our customers through real-world scenarios created by our security experts. Research teams deliver a portfolio of specialist security services ranging from security advising to penetration testing and application code assessment to chip reverse engineering across multiple industries.  Tom is also a member of  [http://www.proactiverisk.com Proactive Risk] and has two decades of hands on the keyboard building, breaking and defending data for clients worldwide. He is a an alumni of McAfee, Intel Security, [https://safecode.org/ SAFECode], Trustwave, WhiteHat, ADP, Datek Online and the United States Marines. &lt;br /&gt;
&lt;br /&gt;
Tom served the OWASP Foundation as an elected member of the Global Board of Directors for (10) years for OWASP Foundation. He also founded the New Jersey Chapter and grew the New York City as President for (13) Years.&lt;br /&gt;
&lt;br /&gt;
Today Tom is associated with [http://www.crest-approved.org/usa/crest-usa-chapter-board/index.html CREST International] as its elected Chairman of the Americas Board and participates as technical advisor for New Jersey Institute of Technology, County College of Morris, Morris County Economic Development Corporation, Rockaway Township Official and is a member of the CERT team.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Artifacts:'''&lt;br /&gt;
&lt;br /&gt;
- Written recommendations from 60+ industry leaders: [http://www.linkedin.com/in/tombrennan ONLINE]&lt;br /&gt;
&lt;br /&gt;
-OWASP interview at AppSecUSA 2013 - [http://www.youtube.com/watch?v=jU-QEUeh9-U Video]&lt;br /&gt;
&lt;br /&gt;
-Interview with [https://www.owasp.org/images/9/9f/WEB_APPC_PENTESTING_03_2012.pdf PenTest Magazine] about OWASP Foundation.&lt;br /&gt;
&lt;br /&gt;
- 2012 OWASP Board Candidate Interview: [https://www.owasp.org/download/2012-board-election/OWASP2012BoardInterviews_TomBrennan.mp3 Audio] / [https://www.owasp.org/images/e/e3/OWASP_2012_Board_Interviews_-_Tom_Brennan.pdf Transcript]&lt;br /&gt;
&lt;br /&gt;
- Video Interview about OWASP with Tom Brennan, 2008 - [http://vimeo.com/23889097 Video 1], [https://www.owasp.org/index.php/OWASP_NYC_AppSec_2008_Conference Video 2]&lt;br /&gt;
&lt;br /&gt;
- Thousands of wiki commits to OWASP.ORG since 2004 see:  [https://www.owasp.org/index.php/Special:Contributions/Brennan Wiki Edits]&lt;br /&gt;
&lt;br /&gt;
Contributor and champion to many OWASP projects including:&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Incident_Response_Project OWASP Incident Response Top 10 Project]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php?title=OWASP_Virtual_Lab_Tool_Project OWASP Virtual Village]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_RFP-Criteria OWASP RFQ Criteria, Software Security]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_HTTP_Post_Tool OWASP Switchblade HTTP Post DoS Tool]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security Core Rule Set]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Cyber_Defense_Matrix OWASP Matrix Project]&lt;br /&gt;
&lt;br /&gt;
Additional Projects&lt;br /&gt;
&lt;br /&gt;
-- [http://www.penteston.com PENTESTON] a commercial vulnerability assessment platform utilizing the [http://www.proactiverisk.com CATSCAN] assessment methodology. &lt;br /&gt;
&lt;br /&gt;
-- [http://www.hacknyc.com HACKNYC Conference]&lt;br /&gt;
&lt;br /&gt;
-- [http://www.nymjcsc.org New York Metro Joint Cyber Security Conference] (NYMJCSC)&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=244428</id>
		<title>User:Brennan</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=244428"/>
				<updated>2018-10-22T17:21:15Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt; &lt;br /&gt;
[http://www.linkedin.com/in/tombrennan https://www.owasp.org/images/7/7f/Linkedin-button.png]&lt;br /&gt;
[[File:Brennan-press.jpg|left|thumb]]&lt;br /&gt;
Tom Brennan is a [https://ioactive.com/article/ioactive-engages-tom-brennan-to-accelerate-east-coast-client-operations/ Director at IOActive]. IOActive is the industry’s only research-driven, high-end information security services firm with a proven history of better securing our customers through real-world scenarios created by our security experts. Our world-renowned consulting and research teams deliver a portfolio of specialist security services ranging from security advising to penetration testing and application code assessment to chip reverse engineering across multiple industries.  Tom is also a member of  [http://www.proactiverisk.com Proactive Risk] and has two decades of hands on the keyboard building, breaking and defending data for clients worldwide. He is a an alumni of McAfee, Intel Security, [https://safecode.org/ SAFECode], Trustwave, WhiteHat, ADP, Datek Online and the United States Marines. &lt;br /&gt;
&lt;br /&gt;
Tom served the OWASP Foundation as an elected member of the Global Board of Directors for (10) years for OWASP Foundation. He also founded the New Jersey Chapter and grew the New York City as President for (13) Years.&lt;br /&gt;
&lt;br /&gt;
Today Tom is associated with [http://www.crest-approved.org/usa/crest-usa-chapter-board/index.html CREST International] as its elected Chairman of the Americas Board and participates as technical advisor for New Jersey Institute of Technology, County College of Morris, Morris County Economic Development Corporation, Rockaway Township Official and is a member of the CERT team.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Artifacts:'''&lt;br /&gt;
&lt;br /&gt;
- Written recommendations from 60+ industry leaders: [http://www.linkedin.com/in/tombrennan ONLINE]&lt;br /&gt;
&lt;br /&gt;
-OWASP interview at AppSecUSA 2013 - [http://www.youtube.com/watch?v=jU-QEUeh9-U Video]&lt;br /&gt;
&lt;br /&gt;
-Interview with [https://www.owasp.org/images/9/9f/WEB_APPC_PENTESTING_03_2012.pdf PenTest Magazine] about OWASP Foundation.&lt;br /&gt;
&lt;br /&gt;
- 2012 OWASP Board Candidate Interview: [https://www.owasp.org/download/2012-board-election/OWASP2012BoardInterviews_TomBrennan.mp3 Audio] / [https://www.owasp.org/images/e/e3/OWASP_2012_Board_Interviews_-_Tom_Brennan.pdf Transcript]&lt;br /&gt;
&lt;br /&gt;
- Video Interview about OWASP with Tom Brennan, 2008 - [http://vimeo.com/23889097 Video 1], [https://www.owasp.org/index.php/OWASP_NYC_AppSec_2008_Conference Video 2]&lt;br /&gt;
&lt;br /&gt;
- Thousands of wiki commits to OWASP.ORG since 2004 see:  [https://www.owasp.org/index.php/Special:Contributions/Brennan Wiki Edits]&lt;br /&gt;
&lt;br /&gt;
Contributor and champion to many OWASP projects including:&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Incident_Response_Project OWASP Incident Response Top 10 Project]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php?title=OWASP_Virtual_Lab_Tool_Project OWASP Virtual Village]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_RFP-Criteria OWASP RFQ Criteria, Software Security]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_HTTP_Post_Tool OWASP Switchblade HTTP Post DoS Tool]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security Core Rule Set]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Cyber_Defense_Matrix OWASP Matrix Project]&lt;br /&gt;
&lt;br /&gt;
Additional Projects&lt;br /&gt;
&lt;br /&gt;
-- [http://www.penteston.com PENTESTON] a commercial vulnerability assessment platform utilizing the [http://www.proactiverisk.com CATSCAN] assessment methodology. &lt;br /&gt;
&lt;br /&gt;
-- [http://www.hacknyc.com HACKNYC Conference]&lt;br /&gt;
&lt;br /&gt;
-- [http://www.nymjcsc.org New York Metro Joint Cyber Security Conference] (NYMJCSC)&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_HTTP_Post_Tool&amp;diff=242324</id>
		<title>OWASP HTTP Post Tool</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_HTTP_Post_Tool&amp;diff=242324"/>
				<updated>2018-08-07T11:41:02Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* News and Events */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__&lt;br /&gt;
&lt;br /&gt;
=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=Switch_Blade&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Switchblade 4.0 ==&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
OWASP Switchblade is a denial of service tool used for testing the availability, performance and capacity planning of a web application to be proactive about this type of risk condition&lt;br /&gt;
&lt;br /&gt;
==Description==&lt;br /&gt;
&lt;br /&gt;
The projected started in early 2000 as a way to test the capacity of simultaneous users connected to a web application and was not  public tool. In 2010 the tool was created by [http://www.proactiverisk.com ProactiveRISK] to educate the OWASP Community about the Denial of Service conditions that can exist with Layer7&lt;br /&gt;
&lt;br /&gt;
Watch the [https://youtu.be/lYQFF4Ki8_s LIVE DEMO] Video&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
OWASP Switchblade is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== What is Switchblade ==&lt;br /&gt;
&lt;br /&gt;
OWASP Switchblade  provides (3) different types of denial of service conditions that can be tested from a single machine&lt;br /&gt;
&lt;br /&gt;
* SSL Half Connect&lt;br /&gt;
* HTTP Post Attack&lt;br /&gt;
* Slowloris&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
Link to [http://www.owasp.org/images/4/43/Layer_7_DDOS.pdf presentation]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[http://www.proactiverisk.com Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Quick Download ==&lt;br /&gt;
&lt;br /&gt;
* [https://drive.google.com/file/d/0B2KpD4S8_DdReFJCUVJpaXhKSUU/view?usp=sharing Windows Installer] &amp;lt;br&amp;gt;&lt;br /&gt;
* [https://github.com/proactiveRISK/ddos-toolbox GITHUB]&lt;br /&gt;
&lt;br /&gt;
== Email List ==&lt;br /&gt;
&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* 7-Aug-2018 Blackhat/Defcon&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:New projects.png|100px|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_CODE.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_HTTP_Post_Tool&amp;diff=242323</id>
		<title>OWASP HTTP Post Tool</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_HTTP_Post_Tool&amp;diff=242323"/>
				<updated>2018-08-07T11:40:11Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__&lt;br /&gt;
&lt;br /&gt;
=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=Switch_Blade&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Switchblade 4.0 ==&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
OWASP Switchblade is a denial of service tool used for testing the availability, performance and capacity planning of a web application to be proactive about this type of risk condition&lt;br /&gt;
&lt;br /&gt;
==Description==&lt;br /&gt;
&lt;br /&gt;
The projected started in early 2000 as a way to test the capacity of simultaneous users connected to a web application and was not  public tool. In 2010 the tool was created by [http://www.proactiverisk.com ProactiveRISK] to educate the OWASP Community about the Denial of Service conditions that can exist with Layer7&lt;br /&gt;
&lt;br /&gt;
Watch the [https://youtu.be/lYQFF4Ki8_s LIVE DEMO] Video&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
OWASP Switchblade is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== What is Switchblade ==&lt;br /&gt;
&lt;br /&gt;
OWASP Switchblade  provides (3) different types of denial of service conditions that can be tested from a single machine&lt;br /&gt;
&lt;br /&gt;
* SSL Half Connect&lt;br /&gt;
* HTTP Post Attack&lt;br /&gt;
* Slowloris&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
Link to [http://www.owasp.org/images/4/43/Layer_7_DDOS.pdf presentation]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[http://www.proactiverisk.com Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Quick Download ==&lt;br /&gt;
&lt;br /&gt;
* [https://drive.google.com/file/d/0B2KpD4S8_DdReFJCUVJpaXhKSUU/view?usp=sharing Windows Installer] &amp;lt;br&amp;gt;&lt;br /&gt;
* [https://github.com/proactiveRISK/ddos-toolbox GITHUB]&lt;br /&gt;
&lt;br /&gt;
== Email List ==&lt;br /&gt;
&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* March 27th 2017 added .ZIP file&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:New projects.png|100px|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_CODE.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Roberts_Rules_Handout.pdf&amp;diff=237582</id>
		<title>File:Roberts Rules Handout.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Roberts_Rules_Handout.pdf&amp;diff=237582"/>
				<updated>2018-02-15T14:11:36Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: Brennan uploaded a new version of File:Roberts Rules Handout.pdf&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Roberts Rules for Meetings&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=236990</id>
		<title>OWASP Incident Response Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=236990"/>
				<updated>2018-01-23T01:54:38Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Related Projects */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP_Incident_Response_Project&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Top 10 Guidance for Incident Response==&lt;br /&gt;
&lt;br /&gt;
==Audience==&lt;br /&gt;
&lt;br /&gt;
Breaches happen every day as you learn about them in the news. Is your business prepared? This project provides a proactive approach to Incident Response planning. The intended audience of this document includes business owners to security engineers, developers, audit, program managers, law enforcement &amp;amp; legal council. This guidance should be considered when building a comprehensive approach. This guidance intends to guide the reader on topics that need to be part of the plan in your organization, this includes those responsible for managing the business and technical risk of the entire organization.&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
&lt;br /&gt;
Creative Commons Attribution-NonCommercial-ShareAlike&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
OWASP Top 10 Guidance for Incident Response project is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/92/Top10ConsiderationsForIncidentResponse.pdf Version 1.0 .PDF Version]&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/b/bd/IR_Top_10_Considerations_-_Slides-v2.pdf Slides]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/User:Brennan Tom Brennan] [http://www.twitter.com/brennantom @brennantom]&lt;br /&gt;
&lt;br /&gt;
== Version 2.0 ==&lt;br /&gt;
Want to help out and make this project BETTER?  Add your comments here&lt;br /&gt;
[https://docs.google.com/document/d/1TbIwFW_Z1d7jhnQL9vkdBzFtRC1lmHp9JpTXYXyN58A/edit?usp=sharing Version 2.0 GoogleDocs - Add Comments]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Anti-Ransomware_Guide_Project OWASP Randsomware]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top 10]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Cheat_Sheet_Series OWASP Cheat Sheets]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security CRS]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project Web Hacking Incident Database]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* Release date 12/7/2015&lt;br /&gt;
* 01/13/2018 NYC Chapter Meeting V2.0&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_DOC.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Volunteers==&lt;br /&gt;
Incident Response Project is developed by a worldwide team of volunteers. The primary contributors to date have been:&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan], [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jason Jolo, [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jordan Lewis&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Want to help? Get in touch with us&lt;br /&gt;
&lt;br /&gt;
==Others==&lt;br /&gt;
* OWASP NYC Metro Chapter&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
Involvement in the development and promotion of OWASP Incident Response Project is actively encouraged!&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
* Proof Reading&lt;br /&gt;
* Graphic Design&lt;br /&gt;
* Conduct Industry Survey&lt;br /&gt;
* Educate local communities&lt;br /&gt;
*  list of open-source IR tools&lt;br /&gt;
* &amp;lt;insert your idea&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Project About=&lt;br /&gt;
{{:Projects/OWASP_Incident_Response_Project}}  &lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Document]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=236989</id>
		<title>OWASP Incident Response Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=236989"/>
				<updated>2018-01-23T01:53:56Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* OWASP Top 10 Guidance for Incident Response */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP_Incident_Response_Project&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Top 10 Guidance for Incident Response==&lt;br /&gt;
&lt;br /&gt;
==Audience==&lt;br /&gt;
&lt;br /&gt;
Breaches happen every day as you learn about them in the news. Is your business prepared? This project provides a proactive approach to Incident Response planning. The intended audience of this document includes business owners to security engineers, developers, audit, program managers, law enforcement &amp;amp; legal council. This guidance should be considered when building a comprehensive approach. This guidance intends to guide the reader on topics that need to be part of the plan in your organization, this includes those responsible for managing the business and technical risk of the entire organization.&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
&lt;br /&gt;
Creative Commons Attribution-NonCommercial-ShareAlike&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
OWASP Top 10 Guidance for Incident Response project is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/92/Top10ConsiderationsForIncidentResponse.pdf Version 1.0 .PDF Version]&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/b/bd/IR_Top_10_Considerations_-_Slides-v2.pdf Slides]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/User:Brennan Tom Brennan] [http://www.twitter.com/brennantom @brennantom]&lt;br /&gt;
&lt;br /&gt;
== Version 2.0 ==&lt;br /&gt;
Want to help out and make this project BETTER?  Add your comments here&lt;br /&gt;
[https://docs.google.com/document/d/1TbIwFW_Z1d7jhnQL9vkdBzFtRC1lmHp9JpTXYXyN58A/edit?usp=sharing Version 2.0 GoogleDocs - Add Comments]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Anti-Ransomware_Guide_Project OWASP Randsomware]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top 10]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Cheat_Sheet_Series OWASP Cheat Sheets]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security CRS]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project Web Hacking Incident Database]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* Release date 12/7/2015 NYC Chapter Meeting&lt;br /&gt;
* Malware&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_DOC.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Volunteers==&lt;br /&gt;
Incident Response Project is developed by a worldwide team of volunteers. The primary contributors to date have been:&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan], [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jason Jolo, [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jordan Lewis&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Want to help? Get in touch with us&lt;br /&gt;
&lt;br /&gt;
==Others==&lt;br /&gt;
* OWASP NYC Metro Chapter&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
Involvement in the development and promotion of OWASP Incident Response Project is actively encouraged!&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
* Proof Reading&lt;br /&gt;
* Graphic Design&lt;br /&gt;
* Conduct Industry Survey&lt;br /&gt;
* Educate local communities&lt;br /&gt;
*  list of open-source IR tools&lt;br /&gt;
* &amp;lt;insert your idea&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Project About=&lt;br /&gt;
{{:Projects/OWASP_Incident_Response_Project}}  &lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Document]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=236988</id>
		<title>OWASP Incident Response Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=236988"/>
				<updated>2018-01-23T01:51:50Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* OWASP Top 10 Guidance for Incident Response */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP_Incident_Response_Project&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Top 10 Guidance for Incident Response==&lt;br /&gt;
&lt;br /&gt;
==Audience==&lt;br /&gt;
&lt;br /&gt;
Breaches happen every day as you learn about them in the news. Is your business prepared? This project provides a proactive approach to Incident Response planning. The intended audience of this document includes business owners to security engineers, developers, audit, program managers, law enforcement &amp;amp; legal council. This guidance should be considered when building a comprehensive approach. This guidance is intends to guide the reader on topics that need to be part of the plan in your organization, this includes those responsible for managing the business and technical risk of the entire organization.&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
&lt;br /&gt;
Creative Commons Attribution-NonCommercial-ShareAlike&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
OWASP Top 10 Guidance for Incident Response project is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/92/Top10ConsiderationsForIncidentResponse.pdf Version 1.0 .PDF Version]&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/b/bd/IR_Top_10_Considerations_-_Slides-v2.pdf Slides]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/User:Brennan Tom Brennan] [http://www.twitter.com/brennantom @brennantom]&lt;br /&gt;
&lt;br /&gt;
== Version 2.0 ==&lt;br /&gt;
Want to help out and make this project BETTER?  Add your comments here&lt;br /&gt;
[https://docs.google.com/document/d/1TbIwFW_Z1d7jhnQL9vkdBzFtRC1lmHp9JpTXYXyN58A/edit?usp=sharing Version 2.0 GoogleDocs - Add Comments]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Anti-Ransomware_Guide_Project OWASP Randsomware]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top 10]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Cheat_Sheet_Series OWASP Cheat Sheets]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security CRS]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project Web Hacking Incident Database]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* Release date 12/7/2015 NYC Chapter Meeting&lt;br /&gt;
* Malware&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_DOC.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Volunteers==&lt;br /&gt;
Incident Response Project is developed by a worldwide team of volunteers. The primary contributors to date have been:&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan], [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jason Jolo, [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jordan Lewis&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Want to help? Get in touch with us&lt;br /&gt;
&lt;br /&gt;
==Others==&lt;br /&gt;
* OWASP NYC Metro Chapter&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
Involvement in the development and promotion of OWASP Incident Response Project is actively encouraged!&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
* Proof Reading&lt;br /&gt;
* Graphic Design&lt;br /&gt;
* Conduct Industry Survey&lt;br /&gt;
* Educate local communities&lt;br /&gt;
*  list of open-source IR tools&lt;br /&gt;
* &amp;lt;insert your idea&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Project About=&lt;br /&gt;
{{:Projects/OWASP_Incident_Response_Project}}  &lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Document]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=236259</id>
		<title>User:Brennan</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Brennan&amp;diff=236259"/>
				<updated>2017-12-13T18:33:07Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt; &lt;br /&gt;
[http://www.linkedin.com/in/tombrennan https://www.owasp.org/images/7/7f/Linkedin-button.png]&lt;br /&gt;
[[File:Brennan-press.jpg|left|thumb]]&lt;br /&gt;
Tom Brennan is the Founder of [http://www.proactiverisk.com Proactive Risk] with two decades of hands on the keyboard building, breaking and defending data for clients worldwide. He is a an alumni of McAfee, Intel Security, SafeCode, Trustwave, WhiteHat, ADP, Datek Online and the United States Marines.  Tom served the OWASP Foundation as an elected member of the Global Board of Directors for (10) years for OWASP Foundation. He also founded the New Jersey Chapter and grew the New York City as President for (13) Years.&lt;br /&gt;
&lt;br /&gt;
Today Tom is associated with [http://www.crest-approved.org/usa/crest-usa-chapter-board/index.html CREST International] as its elected Chairman of the Americas Board and participates as technical advisor for New Jersey Institute of Technology, County College of Morris, Morris County Economic Development Corporation, Rockaway Township Official and is a member of the CERT team.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Artifacts:'''&lt;br /&gt;
&lt;br /&gt;
- Written recommendations from 60+ industry leaders: [http://www.linkedin.com/in/tombrennan ONLINE]&lt;br /&gt;
&lt;br /&gt;
-OWASP interview at AppSecUSA 2013 - [http://www.youtube.com/watch?v=jU-QEUeh9-U Video]&lt;br /&gt;
&lt;br /&gt;
-Interview with [https://www.owasp.org/images/9/9f/WEB_APPC_PENTESTING_03_2012.pdf PenTest Magazine] about OWASP Foundation.&lt;br /&gt;
&lt;br /&gt;
- 2012 OWASP Board Candidate Interview: [https://www.owasp.org/download/2012-board-election/OWASP2012BoardInterviews_TomBrennan.mp3 Audio] / [https://www.owasp.org/images/e/e3/OWASP_2012_Board_Interviews_-_Tom_Brennan.pdf Transcript]&lt;br /&gt;
&lt;br /&gt;
- Video Interview about OWASP with Tom Brennan, 2008 - [http://vimeo.com/23889097 Video 1], [https://www.owasp.org/index.php/OWASP_NYC_AppSec_2008_Conference Video 2]&lt;br /&gt;
&lt;br /&gt;
- Thousands of wiki commits to OWASP.ORG since 2004 see:  [https://www.owasp.org/index.php/Special:Contributions/Brennan Wiki Edits]&lt;br /&gt;
&lt;br /&gt;
Contributor and champion to many OWASP projects including:&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Incident_Response_Project OWASP Incident Response Top 10 Project]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php?title=OWASP_Virtual_Lab_Tool_Project OWASP Virtual Village]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_RFP-Criteria OWASP RFQ Criteria, Software Security]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_HTTP_Post_Tool OWASP Switchblade HTTP Post DoS Tool]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security Core Rule Set]&lt;br /&gt;
&lt;br /&gt;
-- [https://www.owasp.org/index.php/OWASP_Cyber_Defense_Matrix OWASP Matrix Project]&lt;br /&gt;
&lt;br /&gt;
Additional Projects&lt;br /&gt;
&lt;br /&gt;
-- [http://www.penteston.com PENTESTON] a commercial vulnerability assessment platform utilizing the [http://www.proactiverisk.com CATSCAN] assessment methodology. &lt;br /&gt;
&lt;br /&gt;
-- [http://www.hacknyc.com HACKNYC Conference]&lt;br /&gt;
&lt;br /&gt;
-- [http://www.nymjcsc.org New York Metro Joint Cyber Security Conference] (NYMJCSC)&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235966</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235966"/>
				<updated>2017-12-02T14:39:22Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017. [https://www.owasp.org/index.php/Board#tab=How_Meetings_Operate Click here for a summary of how meetings operate]&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
1) Mission / Purpose &lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
1) Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
1) Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
1) OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director. - Karen &lt;br /&gt;
 OLD BUSINESS&lt;br /&gt;
1) OWASP, BACKLOG, DOING, DONE.... What happened to TRELLO?  https://trello.com/owaspfoundation - Brennan&lt;br /&gt;
&lt;br /&gt;
2) Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
3) Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
4) Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
5) Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
6) Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
7) [https://www.owasp.org/index.php/OWASP_Strategic_Goals Strategic Goals] reflection on (6) Years @ OWASP - Team&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
1) Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
2) [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors Current organization chart] - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
3) Installation of 2018 Officers / Nominations and Vote, Roles and Responsibilities effective 01/01/2018 - Brennan&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Chairperson]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Vice Chairperson]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Secretary]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Treasurer]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
4) [https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
1) 2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
1) Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235965</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235965"/>
				<updated>2017-12-02T14:00:03Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017. [https://www.owasp.org/index.php/Board#tab=How_Meetings_Operate Click here for a summary of how meetings operate]&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
1) Mission / Purpose &lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
1) Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
1) Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
1) OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director. - Karen &lt;br /&gt;
 OLD BUSINESS&lt;br /&gt;
1) OWASP, BACKLOG, DOING, DONE.... What happened to TRELLO?  https://trello.com/owaspfoundation - Brennan&lt;br /&gt;
&lt;br /&gt;
2) Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
3) Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
4) Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
4) Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
5) Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
6) [https://www.owasp.org/index.php/OWASP_Strategic_Goals Strategic Goals] reflection on (6) Years @ OWASP - Team&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
1) Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
2) [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors Current organization chart] - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
3) Installation of 2018 Officers / Nominations and Vote, Roles and Responsibilities effective 01/01/2018 - Brennan&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Chairperson]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Vice Chairperson]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Secretary]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Treasurer]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
4) [https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
1) 2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
1) Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235964</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235964"/>
				<updated>2017-12-02T13:54:53Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017. [https://www.owasp.org/index.php/Board#tab=How_Meetings_Operate Click here for a summary of how meetings operate]&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director &lt;br /&gt;
&lt;br /&gt;
OLD BUSINESS, OWASP, BACKLOG, DOING, DONE.... What happened to TRELLO?  https://trello.com/owaspfoundation - Brennan&lt;br /&gt;
&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors Current organization chart] - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Installation of 2018 Officers / Nominations and Vote, Roles and Responsibilities effective 01/01/2018 - Brennan&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Chairperson]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Vice Chairperson]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Secretary]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Treasurer]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#2017_Elected_by_Membership.2C_Global_Board_Members -- Board Member at Large]&lt;br /&gt;
&lt;br /&gt;
[https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235963</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235963"/>
				<updated>2017-12-02T13:51:15Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director &lt;br /&gt;
&lt;br /&gt;
OLD BUSINESS, OWASP, BACKLOG, DOING, DONE.... What happened to TRELLO?  https://trello.com/owaspfoundation - Brennan&lt;br /&gt;
&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Members and related actions paperwork/term of office/how the roles are picked for 2018 - Historian&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
[https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
Nominations and Vote for 2018 Roles and Responsibilities effective 01/01/2018 - Brennan&lt;br /&gt;
&lt;br /&gt;
-- Chairperson&lt;br /&gt;
&lt;br /&gt;
-- Vice Chairperson&lt;br /&gt;
&lt;br /&gt;
-- Secretary&lt;br /&gt;
&lt;br /&gt;
-- Treasurer&lt;br /&gt;
&lt;br /&gt;
-- Board Member at Large&lt;br /&gt;
&lt;br /&gt;
-- Board Member at Large&lt;br /&gt;
&lt;br /&gt;
-- Board Member at Large&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235962</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235962"/>
				<updated>2017-12-02T13:50:39Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director &lt;br /&gt;
&lt;br /&gt;
OLD BUSINESS, OWASP, BACKLOG, DOING, DONE.... What happened to TRELLO?  https://trello.com/owaspfoundation - Brennan&lt;br /&gt;
&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Members and related actions paperwork/term of office/how the roles are picked for 2018 - Historian&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
[https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
Nominations and Vote for 2018 Roles and Responsibilities - Brennan&lt;br /&gt;
&lt;br /&gt;
- Chairperson&lt;br /&gt;
&lt;br /&gt;
- Vice Chairperson&lt;br /&gt;
&lt;br /&gt;
- Secretary&lt;br /&gt;
&lt;br /&gt;
- Treasurer&lt;br /&gt;
&lt;br /&gt;
- Board Member at Large&lt;br /&gt;
&lt;br /&gt;
- Board Member at Large&lt;br /&gt;
&lt;br /&gt;
- Board Member at Large&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235961</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235961"/>
				<updated>2017-12-02T13:48:22Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt; &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director &lt;br /&gt;
&lt;br /&gt;
OLD BUSINESS, OWASP, BACKLOG, DOING, DONE.... What happened to TRELLO?  https://trello.com/owaspfoundation - Brennan&lt;br /&gt;
&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Members and related actions paperwork/term of office/how the roles are picked for 2018 - Historian&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
[https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;$insert topic + who&amp;gt;&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235873</id>
		<title>About The Open Web Application Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235873"/>
				<updated>2017-11-30T03:26:54Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' &lt;br /&gt;
&lt;br /&gt;
__TOC__&lt;br /&gt;
&lt;br /&gt;
==The OWASP Foundation==&lt;br /&gt;
The OWASP Foundation came online on [http://wayback.archive.org/web/*/http://www.owasp.org December 1st 2001] it was established as a not-for-profit charitable organization in the United States on April 21, 2004 to ensure the ongoing availability and support for our work at [[Main Page|OWASP]]. OWASP is an international organization and the OWASP Foundation supports OWASP efforts around the world. OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [[Main Page|www.owasp.org]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative and open way. The [[OWASP Foundation]] is a not-for-profit entity that ensures the project's long-term success.&lt;br /&gt;
&lt;br /&gt;
[http://www.linkedin.com/companies/owasp https://www.owasp.org/images/9/98/Btn_cofollow_badge.png]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===OWASP Foundation Bylaws===&lt;br /&gt;
&lt;br /&gt;
The business of the OWASP Foundation Inc. is outlined in the organizational [http://en.wikipedia.org/wiki/By-law by-laws]. These by-laws govern the organization worldwide and allow the participants to understand the established process for doing so. &lt;br /&gt;
&lt;br /&gt;
[[OWASP Foundation ByLaws]]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/90/126741_OWASP_vzw_modelstatuten_v0.9_EN_REV.pdf OWASP EU Foundation ByLaws (English Translation)]&lt;br /&gt;
&lt;br /&gt;
[[Local Chapter ByLaws]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Values ==&lt;br /&gt;
&amp;lt;b&amp;gt;OPEN&amp;lt;/b&amp;gt;&lt;br /&gt;
Everything at OWASP is radically transparent from our finances to our code.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INNOVATION&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP encourages and supports innovation and experiments for solutions to software security challenges.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;GLOBAL&amp;lt;/b&amp;gt;&lt;br /&gt;
Anyone around the world is encouraged to participate in the OWASP community.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INTEGRITY&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP is an honest and truthful, vendor neutral, global community.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Purpose ==&lt;br /&gt;
Be the thriving global community that drives visibility and evolution in the safety and security of the world’s software. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Code of Ethics ==&lt;br /&gt;
Each of us is expected to behave according to the principles contained in the following Code of Ethics. Breaches of the Code of Ethics may result in the foundation taking disciplinary action.&lt;br /&gt;
[https://www.owasp.org/index.php/Membership_Revocation Membership Revocation]&lt;br /&gt;
&lt;br /&gt;
* Perform all professional activities and duties in accordance with all applicable laws and the highest ethical principles;&lt;br /&gt;
* Promote the implementation of and promote compliance with standards, procedures, controls for application security;&lt;br /&gt;
* Maintain appropriate confidentiality of proprietary or otherwise sensitive information encountered in the course of professional activities;&lt;br /&gt;
* Discharge professional responsibilities with diligence and honesty;&lt;br /&gt;
* To communicate openly and honestly;&lt;br /&gt;
* Refrain from any activities which might constitute a conflict of interest or otherwise damage the reputation of employers, the information security profession, or the Association;&lt;br /&gt;
* To maintain and affirm our objectivity and independence;&lt;br /&gt;
* To reject inappropriate pressure from industry or others;&lt;br /&gt;
* Not intentionally injure or impugn the professional reputation of practice of colleagues, clients, or employers;&lt;br /&gt;
* Treat everyone with respect and dignity; and&lt;br /&gt;
* To avoid relationships that impair — or may appear to impair — OWASP's objectivity and independence.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Principles ==&lt;br /&gt;
&lt;br /&gt;
* Free &amp;amp; Open&lt;br /&gt;
* Governed by rough consensus &amp;amp; running code&lt;br /&gt;
* Abide by a code of ethics (see ethics)&lt;br /&gt;
* Not-for-profit&lt;br /&gt;
* Not driven by commercial interests&lt;br /&gt;
* Risk based approach&lt;br /&gt;
&lt;br /&gt;
==2017 Elected by Membership, Global Board Members==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Board_History OWASP Board History]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:Matt_Konda |Matt Konda]]:  Chair====&lt;br /&gt;
The Chairman of the Board shall serve as the principal executive officer of the&lt;br /&gt;
Foundation.&lt;br /&gt;
• Fiduciary responsibilities: He/She shall, in general, supervise and control all of the business&lt;br /&gt;
and affairs of the Foundation. He/She will monitor financial planning and financial reports&lt;br /&gt;
He/She or he may sign, with the Secretary or any other proper officer of the Foundation&lt;br /&gt;
thereunto authorized by the Board of Directors, any deeds, mortgages, bonds, contracts, or&lt;br /&gt;
other instruments which the Board of Directors has authorized to be executed, except in cases&lt;br /&gt;
where the signing and execution thereof shall be expressly delegated by the Board of&lt;br /&gt;
Directors or by these Bylaws to some other officer or agent of the Foundation, or shall be&lt;br /&gt;
required by law to be otherwise signed or executed;&lt;br /&gt;
• Leadership and Direction: provides leadership to the Board of Directors with regards to&lt;br /&gt;
policy setting and strategic planning. He/She helps guide and mediate board actions with&lt;br /&gt;
respect to organizational priorities and governance concerns, and in general shall perform all&lt;br /&gt;
duties incident to the office of Chairman of the Board subject to the control of the Board of&lt;br /&gt;
Directors. &lt;br /&gt;
• Organizational Responsibilities: He/She plays a leading role in fundraising activities,&lt;br /&gt;
formally evaluate the performance of the Foundation Director and informally evaluate the&lt;br /&gt;
effectiveness of the board members. An annual, overall evaluation of the performance of the&lt;br /&gt;
organization in achieving its mission will be accomplished. He or she shall, when present,&lt;br /&gt;
preside at all meetings of the Board of Directors, unless otherwise delegated, and such other&lt;br /&gt;
duties as may be prescribed by the Board of Directors from time to time&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Josh Sokol, Vice Chair====&lt;br /&gt;
­performs Chair responsibilities when the Chair cannot be available, works closely with Chair and other Board Members, participates closely with Chair to develop and implement officer transition plans, performs other responsibilities as assigned by the Board.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
==== [[User:brennan|Tom Brennan]]:  Secretary/Historian====&lt;br /&gt;
maintains records of the board and ensures effective management of organization’s&lt;br /&gt;
records, manages minutes of board meetings, ensures minutes are distributed shortly after each&lt;br /&gt;
meeting, is sufficiently familiar with legal documents (articles, by­laws, IRS letters, etc.) to note&lt;br /&gt;
applicability during meetings; is the custodian of the corporate records and of the seal of the&lt;br /&gt;
Foundation and see that the seal of the Foundation is affixed to all documents, the execution of which&lt;br /&gt;
on behalf of the Foundation under its seal is duly authorized; keeps a register of the post office&lt;br /&gt;
address of each Director which shall be furnished to the Secretary by such Director; and, in general&lt;br /&gt;
perform all duties incident to the office of the Secretary and such other duties as from time to time&lt;br /&gt;
may be assigned to him by the Chairman of the Board or by the Board. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:vanderaj |Andrew van der Stock]]:  Treasurer====&lt;br /&gt;
Treasurer ­manages finances of the organization, administers fiscal matters of the organization,&lt;br /&gt;
provides annual budget to the board for member’s approval, ensures development and board review&lt;br /&gt;
of financial policies and procedures. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:MichaelCoates|Michael Coates]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====[[User:tgondrom|Tobias Gondrom]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [https://www.owasp.org/index.php/User:Knoblochmartin Martin Knobloch]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Employees and Contractors==&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/HR}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* Additional [https://www.owasp.org/index.php/About_OWASP/HR staff and HR info]&lt;br /&gt;
&lt;br /&gt;
==Meeting Minutes==&lt;br /&gt;
The OWASP Foundation Board meets monthly.&lt;br /&gt;
&lt;br /&gt;
[[OWASP_Board_Meetings | Board meeting minutes for the record.]]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/folder/d/0B5Z9zE0hx0LNZ0pqZC1QWWRTM28/edit Global Initiatives Meetings]&lt;br /&gt;
&lt;br /&gt;
== Operational Procedures ==&lt;br /&gt;
[https://www.owasp.org/index.php/About_OWASP/Operational-Procedures Standard Operations Procedures (SOP)]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
All OWASP materials are available under an approved [[OWASP Licenses|FLOSS license]]. For more information, please see the '''[[OWASP Licenses]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Participation and Membership==&lt;br /&gt;
Everyone is welcome to participate in our [https://lists.owasp.org/mailman/listinfo forums], [[projects]], [[chapters]], and [[conferences]]. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For more information, please see the '''[[Membership]]''' page.&lt;br /&gt;
&lt;br /&gt;
==Projects==&lt;br /&gt;
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Privacy Policy==&lt;br /&gt;
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:&lt;br /&gt;
* Communicating urgent fixes in the OWASP Materials&lt;br /&gt;
* Seeking advice and feedback about OWASP Materials&lt;br /&gt;
* Inviting participation in OWASP’s consensus process and AppSec conferences&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and &amp;quot;opt-in.&amp;quot; Listed members can request not to be listed at any time.&lt;br /&gt;
&lt;br /&gt;
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [http://sl.owasp.org/contactus Submit a Inquiry]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Membership or Donations==&lt;br /&gt;
If you are interested in joining OWASP as a member, or donating funds for OWASP's efforts, please check out the [[Membership|OWASP Membership Page]].&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/Financial_Transparency}}&lt;br /&gt;
&lt;br /&gt;
[[:File:OWASP Annual Report 2015.pdf|2015 Annual Report]]&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Contacting OWASP==&lt;br /&gt;
The easiest way to contact the [[OWASP Foundation]] is via e-mail. If you have a question concerning a particular project, we &amp;lt;b&amp;gt;strongly&amp;lt;/b&amp;gt; recommend using the [https://lists.owasp.org/mailman/listinfo mailing list] for that project. Many questions can also be answered by [https://www.owasp.org/google/results.html searching] the [[Main Page|OWASP]] web site, so please check there first.&lt;br /&gt;
&lt;br /&gt;
Our global address for general correspondence and faxes can be sent to our physical office address, at: &lt;br /&gt;
&lt;br /&gt;
  OWASP Foundation&lt;br /&gt;
  1200-C Agora Drive, #232&lt;br /&gt;
  Bel Air, MD 21014&lt;br /&gt;
  US&lt;br /&gt;
 +1 443-283-4021(fax)&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
The European correspondence address is below.&lt;br /&gt;
More information is available on the OWASP [[Europe]] page.&lt;br /&gt;
&lt;br /&gt;
  OWASP Europe VZW&lt;br /&gt;
  Leinstraat 104A&lt;br /&gt;
  B-9660 Opbrakel&lt;br /&gt;
  Belgium&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
  OWASP Norway Chapter&lt;br /&gt;
  [http://w2.brreg.no/enhet/sok/detalj.jsp?orgnr=994253085 Entity Record]&lt;br /&gt;
  v/Kåre Presttun&lt;br /&gt;
  c/o Mnemonic as&lt;br /&gt;
  Wergelandsveien 25&lt;br /&gt;
  0167 OSLO&lt;br /&gt;
	&lt;br /&gt;
&lt;br /&gt;
Want to chat on IRC?&lt;br /&gt;
The official #owasp channel is now live on http://irc.freenode.net ! Come on in and chat with us!&lt;br /&gt;
&lt;br /&gt;
For more information, please see the pages listed below:&lt;br /&gt;
&lt;br /&gt;
* [[Contributions]] for details about how to make contributions&lt;br /&gt;
* [[Advertising]] if you're interested in advertising on the OWASP site&lt;br /&gt;
* [[How OWASP Works]] for more information about projects and governance&lt;br /&gt;
* [[OWASP brand usage rules]] for information about using the OWASP brand&lt;br /&gt;
* [https://docs.google.com/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?pref=2&amp;amp;pli=1#slide=id.p4 About OWASP Presentation (Google Docs)]&lt;br /&gt;
&lt;br /&gt;
[[Category:Popular]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235872</id>
		<title>About The Open Web Application Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235872"/>
				<updated>2017-11-30T03:25:50Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Tom Brennan:  Secretary/Historian */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' &lt;br /&gt;
&lt;br /&gt;
__TOC__&lt;br /&gt;
&lt;br /&gt;
==The OWASP Foundation==&lt;br /&gt;
The OWASP Foundation came online on [http://wayback.archive.org/web/*/http://www.owasp.org December 1st 2001] it was established as a not-for-profit charitable organization in the United States on April 21, 2004 to ensure the ongoing availability and support for our work at [[Main Page|OWASP]]. OWASP is an international organization and the OWASP Foundation supports OWASP efforts around the world. OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [[Main Page|www.owasp.org]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative and open way. The [[OWASP Foundation]] is a not-for-profit entity that ensures the project's long-term success.&lt;br /&gt;
&lt;br /&gt;
[http://www.linkedin.com/companies/owasp https://www.owasp.org/images/9/98/Btn_cofollow_badge.png]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===OWASP Foundation Bylaws===&lt;br /&gt;
&lt;br /&gt;
The business of the OWASP Foundation Inc. is outlined in the organizational [http://en.wikipedia.org/wiki/By-law by-laws]. These by-laws govern the organization worldwide and allow the participants to understand the established process for doing so. &lt;br /&gt;
&lt;br /&gt;
[[OWASP Foundation ByLaws]]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/90/126741_OWASP_vzw_modelstatuten_v0.9_EN_REV.pdf OWASP EU Foundation ByLaws (English Translation)]&lt;br /&gt;
&lt;br /&gt;
[[Local Chapter ByLaws]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Values ==&lt;br /&gt;
&amp;lt;b&amp;gt;OPEN&amp;lt;/b&amp;gt;&lt;br /&gt;
Everything at OWASP is radically transparent from our finances to our code.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INNOVATION&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP encourages and supports innovation and experiments for solutions to software security challenges.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;GLOBAL&amp;lt;/b&amp;gt;&lt;br /&gt;
Anyone around the world is encouraged to participate in the OWASP community.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INTEGRITY&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP is an honest and truthful, vendor neutral, global community.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Purpose ==&lt;br /&gt;
Be the thriving global community that drives visibility and evolution in the safety and security of the world’s software. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Code of Ethics ==&lt;br /&gt;
Each of us is expected to behave according to the principles contained in the following Code of Ethics. Breaches of the Code of Ethics may result in the foundation taking disciplinary action.&lt;br /&gt;
[https://www.owasp.org/index.php/Membership_Revocation Membership Revocation]&lt;br /&gt;
&lt;br /&gt;
* Perform all professional activities and duties in accordance with all applicable laws and the highest ethical principles;&lt;br /&gt;
* Promote the implementation of and promote compliance with standards, procedures, controls for application security;&lt;br /&gt;
* Maintain appropriate confidentiality of proprietary or otherwise sensitive information encountered in the course of professional activities;&lt;br /&gt;
* Discharge professional responsibilities with diligence and honesty;&lt;br /&gt;
* To communicate openly and honestly;&lt;br /&gt;
* Refrain from any activities which might constitute a conflict of interest or otherwise damage the reputation of employers, the information security profession, or the Association;&lt;br /&gt;
* To maintain and affirm our objectivity and independence;&lt;br /&gt;
* To reject inappropriate pressure from industry or others;&lt;br /&gt;
* Not intentionally injure or impugn the professional reputation of practice of colleagues, clients, or employers;&lt;br /&gt;
* Treat everyone with respect and dignity; and&lt;br /&gt;
* To avoid relationships that impair — or may appear to impair — OWASP's objectivity and independence.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Principles ==&lt;br /&gt;
&lt;br /&gt;
* Free &amp;amp; Open&lt;br /&gt;
* Governed by rough consensus &amp;amp; running code&lt;br /&gt;
* Abide by a code of ethics (see ethics)&lt;br /&gt;
* Not-for-profit&lt;br /&gt;
* Not driven by commercial interests&lt;br /&gt;
* Risk based approach&lt;br /&gt;
&lt;br /&gt;
==2017 Elected by Membership, Global Board Members==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Board_History OWASP Board History]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:Matt_Konda |Matt Konda]]:  Chair====&lt;br /&gt;
The Chairman of the Board shall serve as the principal executive officer of the&lt;br /&gt;
Foundation.&lt;br /&gt;
• Fiduciary responsibilities: He/She shall, in general, supervise and control all of the business&lt;br /&gt;
and affairs of the Foundation. He/She will monitor financial planning and financial reports&lt;br /&gt;
He/She or he may sign, with the Secretary or any other proper officer of the Foundation&lt;br /&gt;
thereunto authorized by the Board of Directors, any deeds, mortgages, bonds, contracts, or&lt;br /&gt;
other instruments which the Board of Directors has authorized to be executed, except in cases&lt;br /&gt;
where the signing and execution thereof shall be expressly delegated by the Board of&lt;br /&gt;
Directors or by these Bylaws to some other officer or agent of the Foundation, or shall be&lt;br /&gt;
required by law to be otherwise signed or executed;&lt;br /&gt;
• Leadership and Direction: provides leadership to the Board of Directors with regards to&lt;br /&gt;
policy setting and strategic planning. He/She helps guide and mediate board actions with&lt;br /&gt;
respect to organizational priorities and governance concerns, and in general shall perform all&lt;br /&gt;
duties incident to the office of Chairman of the Board subject to the control of the Board of&lt;br /&gt;
Directors. &lt;br /&gt;
• Organizational Responsibilities: He/She plays a leading role in fundraising activities,&lt;br /&gt;
formally evaluate the performance of the Foundation Director and informally evaluate the&lt;br /&gt;
effectiveness of the board members. An annual, overall evaluation of the performance of the&lt;br /&gt;
organization in achieving its mission will be accomplished. He or she shall, when present,&lt;br /&gt;
preside at all meetings of the Board of Directors, unless otherwise delegated, and such other&lt;br /&gt;
duties as may be prescribed by the Board of Directors from time to time&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Josh Sokol, Vice Chair====&lt;br /&gt;
­performs Chair responsibilities when the Chair cannot be available, works closely with Chair and other Board Members, participates closely with Chair to develop and implement officer transition plans, performs other responsibilities as assigned by the Board.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
==== [[User:brennan|'''Tom Brennan''']]''':  Secretary/Historian''' ====&lt;br /&gt;
maintains records of the board and ensures effective management of organization’s&lt;br /&gt;
records, manages minutes of board meetings, ensures minutes are distributed shortly after each&lt;br /&gt;
meeting, is sufficiently familiar with legal documents (articles, by­laws, IRS letters, etc.) to note&lt;br /&gt;
applicability during meetings; is the custodian of the corporate records and of the seal of the&lt;br /&gt;
Foundation and see that the seal of the Foundation is affixed to all documents, the execution of which&lt;br /&gt;
on behalf of the Foundation under its seal is duly authorized; keeps a register of the post office&lt;br /&gt;
address of each Director which shall be furnished to the Secretary by such Director; and, in general&lt;br /&gt;
perform all duties incident to the office of the Secretary and such other duties as from time to time&lt;br /&gt;
may be assigned to him by the Chairman of the Board or by the Board. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:vanderaj |Andrew van der Stock]]:  Treasurer====&lt;br /&gt;
Treasurer ­manages finances of the organization, administers fiscal matters of the organization,&lt;br /&gt;
provides annual budget to the board for member’s approval, ensures development and board review&lt;br /&gt;
of financial policies and procedures. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:MichaelCoates|Michael Coates]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====[[User:tgondrom|Tobias Gondrom]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [https://www.owasp.org/index.php/User:Knoblochmartin Martin Knobloch]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Employees and Contractors==&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/HR}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* Additional [https://www.owasp.org/index.php/About_OWASP/HR staff and HR info]&lt;br /&gt;
&lt;br /&gt;
==Meeting Minutes==&lt;br /&gt;
The OWASP Foundation Board meets monthly.&lt;br /&gt;
&lt;br /&gt;
[[OWASP_Board_Meetings | Board meeting minutes for the record.]]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/folder/d/0B5Z9zE0hx0LNZ0pqZC1QWWRTM28/edit Global Initiatives Meetings]&lt;br /&gt;
&lt;br /&gt;
== Operational Procedures ==&lt;br /&gt;
[https://www.owasp.org/index.php/About_OWASP/Operational-Procedures Standard Operations Procedures (SOP)]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
All OWASP materials are available under an approved [[OWASP Licenses|FLOSS license]]. For more information, please see the '''[[OWASP Licenses]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Participation and Membership==&lt;br /&gt;
Everyone is welcome to participate in our [https://lists.owasp.org/mailman/listinfo forums], [[projects]], [[chapters]], and [[conferences]]. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For more information, please see the '''[[Membership]]''' page.&lt;br /&gt;
&lt;br /&gt;
==Projects==&lt;br /&gt;
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Privacy Policy==&lt;br /&gt;
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:&lt;br /&gt;
* Communicating urgent fixes in the OWASP Materials&lt;br /&gt;
* Seeking advice and feedback about OWASP Materials&lt;br /&gt;
* Inviting participation in OWASP’s consensus process and AppSec conferences&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and &amp;quot;opt-in.&amp;quot; Listed members can request not to be listed at any time.&lt;br /&gt;
&lt;br /&gt;
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [http://sl.owasp.org/contactus Submit a Inquiry]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Membership or Donations==&lt;br /&gt;
If you are interested in joining OWASP as a member, or donating funds for OWASP's efforts, please check out the [[Membership|OWASP Membership Page]].&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/Financial_Transparency}}&lt;br /&gt;
&lt;br /&gt;
[[:File:OWASP Annual Report 2015.pdf|2015 Annual Report]]&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Contacting OWASP==&lt;br /&gt;
The easiest way to contact the [[OWASP Foundation]] is via e-mail. If you have a question concerning a particular project, we &amp;lt;b&amp;gt;strongly&amp;lt;/b&amp;gt; recommend using the [https://lists.owasp.org/mailman/listinfo mailing list] for that project. Many questions can also be answered by [https://www.owasp.org/google/results.html searching] the [[Main Page|OWASP]] web site, so please check there first.&lt;br /&gt;
&lt;br /&gt;
Our global address for general correspondence and faxes can be sent to our physical office address, at: &lt;br /&gt;
&lt;br /&gt;
  OWASP Foundation&lt;br /&gt;
  1200-C Agora Drive, #232&lt;br /&gt;
  Bel Air, MD 21014&lt;br /&gt;
  US&lt;br /&gt;
 +1 443-283-4021(fax)&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
The European correspondence address is below.&lt;br /&gt;
More information is available on the OWASP [[Europe]] page.&lt;br /&gt;
&lt;br /&gt;
  OWASP Europe VZW&lt;br /&gt;
  Leinstraat 104A&lt;br /&gt;
  B-9660 Opbrakel&lt;br /&gt;
  Belgium&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
  OWASP Norway Chapter&lt;br /&gt;
  [http://w2.brreg.no/enhet/sok/detalj.jsp?orgnr=994253085 Entity Record]&lt;br /&gt;
  v/Kåre Presttun&lt;br /&gt;
  c/o Mnemonic as&lt;br /&gt;
  Wergelandsveien 25&lt;br /&gt;
  0167 OSLO&lt;br /&gt;
	&lt;br /&gt;
&lt;br /&gt;
Want to chat on IRC?&lt;br /&gt;
The official #owasp channel is now live on http://irc.freenode.net ! Come on in and chat with us!&lt;br /&gt;
&lt;br /&gt;
For more information, please see the pages listed below:&lt;br /&gt;
&lt;br /&gt;
* [[Contributions]] for details about how to make contributions&lt;br /&gt;
* [[Advertising]] if you're interested in advertising on the OWASP site&lt;br /&gt;
* [[How OWASP Works]] for more information about projects and governance&lt;br /&gt;
* [[OWASP brand usage rules]] for information about using the OWASP brand&lt;br /&gt;
* [https://docs.google.com/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?pref=2&amp;amp;pli=1#slide=id.p4 About OWASP Presentation (Google Docs)]&lt;br /&gt;
&lt;br /&gt;
[[Category:Popular]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235871</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235871"/>
				<updated>2017-11-30T03:24:41Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: updates&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]====&lt;br /&gt;
The '''Executive Director''' is ultimately '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&amp;lt;br&amp;gt;&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Finance and Administration [https://www.linkedin.com/in/thomas-pappas-a938667/ Tom Papas] (Contractor)====&lt;br /&gt;
* Services Provided by: [http://virtualmgmt.com/ Virtual Management Inc.] &lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====AR/AP Bookkeeping/Payroll (Contractors)====&lt;br /&gt;
Services Provided by: [http://virtualmgmt.com/ Virtual Management Inc.]&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.linkedin.com/in/hugo75costa/ Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====IT Contractor: VACANT (Contractor)====&lt;br /&gt;
* IT Support (Website, Wiki, Mailing Lists, Employee Desktops, Related System Administration &lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235869</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235869"/>
				<updated>2017-11-30T03:21:20Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: Updates&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]====&lt;br /&gt;
The '''Executive Director''' is ultimately '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Controller [https://www.linkedin.com/in/thomas-pappas-a938667/ Tom Papas] (Contractor)====&lt;br /&gt;
* [http://virtualmgmt.com/ Virtual Management Inc.] &lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====AR/AP Bookkeeping/Payroll (Contractors)====&lt;br /&gt;
* [http://virtualmgmt.com/ Virtual Management Inc.] &lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====IT Contractor: VACANT (Contractor)====&lt;br /&gt;
* IT Support (Website, Wiki, Mailing Lists, Employee Desktops, Related System Administration &lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235868</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235868"/>
				<updated>2017-11-30T03:11:36Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Employees and Contractors of the OWASP Foundation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]====&lt;br /&gt;
The '''Executive Director''' is ultimately '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235867</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235867"/>
				<updated>2017-11-30T03:11:23Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]====&lt;br /&gt;
The '''Executive Director''' is ultimately '''responsible''' for overseeing the administration, programs and strategic plan of the organization[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235865</id>
		<title>About The Open Web Application Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235865"/>
				<updated>2017-11-30T03:07:03Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* 2017 Elected by Membership, Global Board Members */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' &lt;br /&gt;
&lt;br /&gt;
__TOC__&lt;br /&gt;
&lt;br /&gt;
==The OWASP Foundation==&lt;br /&gt;
The OWASP Foundation came online on [http://wayback.archive.org/web/*/http://www.owasp.org December 1st 2001] it was established as a not-for-profit charitable organization in the United States on April 21, 2004 to ensure the ongoing availability and support for our work at [[Main Page|OWASP]]. OWASP is an international organization and the OWASP Foundation supports OWASP efforts around the world. OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [[Main Page|www.owasp.org]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative and open way. The [[OWASP Foundation]] is a not-for-profit entity that ensures the project's long-term success.&lt;br /&gt;
&lt;br /&gt;
[http://www.linkedin.com/companies/owasp https://www.owasp.org/images/9/98/Btn_cofollow_badge.png]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===OWASP Foundation Bylaws===&lt;br /&gt;
&lt;br /&gt;
The business of the OWASP Foundation Inc. is outlined in the organizational [http://en.wikipedia.org/wiki/By-law by-laws]. These by-laws govern the organization worldwide and allow the participants to understand the established process for doing so. &lt;br /&gt;
&lt;br /&gt;
[[OWASP Foundation ByLaws]]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/90/126741_OWASP_vzw_modelstatuten_v0.9_EN_REV.pdf OWASP EU Foundation ByLaws (English Translation)]&lt;br /&gt;
&lt;br /&gt;
[[Local Chapter ByLaws]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Values ==&lt;br /&gt;
&amp;lt;b&amp;gt;OPEN&amp;lt;/b&amp;gt;&lt;br /&gt;
Everything at OWASP is radically transparent from our finances to our code.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INNOVATION&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP encourages and supports innovation and experiments for solutions to software security challenges.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;GLOBAL&amp;lt;/b&amp;gt;&lt;br /&gt;
Anyone around the world is encouraged to participate in the OWASP community.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INTEGRITY&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP is an honest and truthful, vendor neutral, global community.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Purpose ==&lt;br /&gt;
Be the thriving global community that drives visibility and evolution in the safety and security of the world’s software. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Code of Ethics ==&lt;br /&gt;
Each of us is expected to behave according to the principles contained in the following Code of Ethics. Breaches of the Code of Ethics may result in the foundation taking disciplinary action.&lt;br /&gt;
[https://www.owasp.org/index.php/Membership_Revocation Membership Revocation]&lt;br /&gt;
&lt;br /&gt;
* Perform all professional activities and duties in accordance with all applicable laws and the highest ethical principles;&lt;br /&gt;
* Promote the implementation of and promote compliance with standards, procedures, controls for application security;&lt;br /&gt;
* Maintain appropriate confidentiality of proprietary or otherwise sensitive information encountered in the course of professional activities;&lt;br /&gt;
* Discharge professional responsibilities with diligence and honesty;&lt;br /&gt;
* To communicate openly and honestly;&lt;br /&gt;
* Refrain from any activities which might constitute a conflict of interest or otherwise damage the reputation of employers, the information security profession, or the Association;&lt;br /&gt;
* To maintain and affirm our objectivity and independence;&lt;br /&gt;
* To reject inappropriate pressure from industry or others;&lt;br /&gt;
* Not intentionally injure or impugn the professional reputation of practice of colleagues, clients, or employers;&lt;br /&gt;
* Treat everyone with respect and dignity; and&lt;br /&gt;
* To avoid relationships that impair — or may appear to impair — OWASP's objectivity and independence.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Principles ==&lt;br /&gt;
&lt;br /&gt;
* Free &amp;amp; Open&lt;br /&gt;
* Governed by rough consensus &amp;amp; running code&lt;br /&gt;
* Abide by a code of ethics (see ethics)&lt;br /&gt;
* Not-for-profit&lt;br /&gt;
* Not driven by commercial interests&lt;br /&gt;
* Risk based approach&lt;br /&gt;
&lt;br /&gt;
==2017 Elected by Membership, Global Board Members==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Board_History OWASP Board History]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:Matt_Konda |Matt Konda]]:  Chair====&lt;br /&gt;
The Chairman of the Board shall serve as the principal executive officer of the&lt;br /&gt;
Foundation.&lt;br /&gt;
• Fiduciary responsibilities: He/She shall, in general, supervise and control all of the business&lt;br /&gt;
and affairs of the Foundation. He/She will monitor financial planning and financial reports&lt;br /&gt;
He/She or he may sign, with the Secretary or any other proper officer of the Foundation&lt;br /&gt;
thereunto authorized by the Board of Directors, any deeds, mortgages, bonds, contracts, or&lt;br /&gt;
other instruments which the Board of Directors has authorized to be executed, except in cases&lt;br /&gt;
where the signing and execution thereof shall be expressly delegated by the Board of&lt;br /&gt;
Directors or by these Bylaws to some other officer or agent of the Foundation, or shall be&lt;br /&gt;
required by law to be otherwise signed or executed;&lt;br /&gt;
• Leadership and Direction: provides leadership to the Board of Directors with regards to&lt;br /&gt;
policy setting and strategic planning. He/She helps guide and mediate board actions with&lt;br /&gt;
respect to organizational priorities and governance concerns, and in general shall perform all&lt;br /&gt;
duties incident to the office of Chairman of the Board subject to the control of the Board of&lt;br /&gt;
Directors. &lt;br /&gt;
• Organizational Responsibilities: He/She plays a leading role in fundraising activities,&lt;br /&gt;
formally evaluate the performance of the Foundation Director and informally evaluate the&lt;br /&gt;
effectiveness of the board members. An annual, overall evaluation of the performance of the&lt;br /&gt;
organization in achieving its mission will be accomplished. He or she shall, when present,&lt;br /&gt;
preside at all meetings of the Board of Directors, unless otherwise delegated, and such other&lt;br /&gt;
duties as may be prescribed by the Board of Directors from time to time&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Josh Sokol, Vice Chair====&lt;br /&gt;
­performs Chair responsibilities when the Chair cannot be available, works closely with Chair and other Board Members, participates closely with Chair to develop and implement officer transition plans, performs other responsibilities as assigned by the Board.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
==== [[User:brennan|'''Tom Brennan''']]:  '''Secretary/Historian''' ====&lt;br /&gt;
maintains records of the board and ensures effective management of organization’s&lt;br /&gt;
records, manages minutes of board meetings, ensures minutes are distributed shortly after each&lt;br /&gt;
meeting, is sufficiently familiar with legal documents (articles, by­laws, IRS letters, etc.) to note&lt;br /&gt;
applicability during meetings; is the custodian of the corporate records and of the seal of the&lt;br /&gt;
Foundation and see that the seal of the Foundation is affixed to all documents, the execution of which&lt;br /&gt;
on behalf of the Foundation under its seal is duly authorized; keeps a register of the post office&lt;br /&gt;
address of each Director which shall be furnished to the Secretary by such Director; and, in general&lt;br /&gt;
perform all duties incident to the office of the Secretary and such other duties as from time to time&lt;br /&gt;
may be assigned to him by the Chairman of the Board or by the Board. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:vanderaj |Andrew van der Stock]]:  Treasurer====&lt;br /&gt;
Treasurer ­manages finances of the organization, administers fiscal matters of the organization,&lt;br /&gt;
provides annual budget to the board for member’s approval, ensures development and board review&lt;br /&gt;
of financial policies and procedures. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:MichaelCoates|Michael Coates]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====[[User:tgondrom|Tobias Gondrom]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [https://www.owasp.org/index.php/User:Knoblochmartin Martin Knobloch]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Employees and Contractors==&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/HR}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* Additional [https://www.owasp.org/index.php/About_OWASP/HR staff and HR info]&lt;br /&gt;
&lt;br /&gt;
==Meeting Minutes==&lt;br /&gt;
The OWASP Foundation Board meets monthly.&lt;br /&gt;
&lt;br /&gt;
[[OWASP_Board_Meetings | Board meeting minutes for the record.]]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/folder/d/0B5Z9zE0hx0LNZ0pqZC1QWWRTM28/edit Global Initiatives Meetings]&lt;br /&gt;
&lt;br /&gt;
== Operational Procedures ==&lt;br /&gt;
[https://www.owasp.org/index.php/About_OWASP/Operational-Procedures Standard Operations Procedures (SOP)]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
All OWASP materials are available under an approved [[OWASP Licenses|FLOSS license]]. For more information, please see the '''[[OWASP Licenses]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Participation and Membership==&lt;br /&gt;
Everyone is welcome to participate in our [https://lists.owasp.org/mailman/listinfo forums], [[projects]], [[chapters]], and [[conferences]]. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For more information, please see the '''[[Membership]]''' page.&lt;br /&gt;
&lt;br /&gt;
==Projects==&lt;br /&gt;
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Privacy Policy==&lt;br /&gt;
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:&lt;br /&gt;
* Communicating urgent fixes in the OWASP Materials&lt;br /&gt;
* Seeking advice and feedback about OWASP Materials&lt;br /&gt;
* Inviting participation in OWASP’s consensus process and AppSec conferences&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and &amp;quot;opt-in.&amp;quot; Listed members can request not to be listed at any time.&lt;br /&gt;
&lt;br /&gt;
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [http://sl.owasp.org/contactus Submit a Inquiry]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Membership or Donations==&lt;br /&gt;
If you are interested in joining OWASP as a member, or donating funds for OWASP's efforts, please check out the [[Membership|OWASP Membership Page]].&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/Financial_Transparency}}&lt;br /&gt;
&lt;br /&gt;
[[:File:OWASP Annual Report 2015.pdf|2015 Annual Report]]&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Contacting OWASP==&lt;br /&gt;
The easiest way to contact the [[OWASP Foundation]] is via e-mail. If you have a question concerning a particular project, we &amp;lt;b&amp;gt;strongly&amp;lt;/b&amp;gt; recommend using the [https://lists.owasp.org/mailman/listinfo mailing list] for that project. Many questions can also be answered by [https://www.owasp.org/google/results.html searching] the [[Main Page|OWASP]] web site, so please check there first.&lt;br /&gt;
&lt;br /&gt;
Our global address for general correspondence and faxes can be sent to our physical office address, at: &lt;br /&gt;
&lt;br /&gt;
  OWASP Foundation&lt;br /&gt;
  1200-C Agora Drive, #232&lt;br /&gt;
  Bel Air, MD 21014&lt;br /&gt;
  US&lt;br /&gt;
 +1 443-283-4021(fax)&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
The European correspondence address is below.&lt;br /&gt;
More information is available on the OWASP [[Europe]] page.&lt;br /&gt;
&lt;br /&gt;
  OWASP Europe VZW&lt;br /&gt;
  Leinstraat 104A&lt;br /&gt;
  B-9660 Opbrakel&lt;br /&gt;
  Belgium&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
  OWASP Norway Chapter&lt;br /&gt;
  [http://w2.brreg.no/enhet/sok/detalj.jsp?orgnr=994253085 Entity Record]&lt;br /&gt;
  v/Kåre Presttun&lt;br /&gt;
  c/o Mnemonic as&lt;br /&gt;
  Wergelandsveien 25&lt;br /&gt;
  0167 OSLO&lt;br /&gt;
	&lt;br /&gt;
&lt;br /&gt;
Want to chat on IRC?&lt;br /&gt;
The official #owasp channel is now live on http://irc.freenode.net ! Come on in and chat with us!&lt;br /&gt;
&lt;br /&gt;
For more information, please see the pages listed below:&lt;br /&gt;
&lt;br /&gt;
* [[Contributions]] for details about how to make contributions&lt;br /&gt;
* [[Advertising]] if you're interested in advertising on the OWASP site&lt;br /&gt;
* [[How OWASP Works]] for more information about projects and governance&lt;br /&gt;
* [[OWASP brand usage rules]] for information about using the OWASP brand&lt;br /&gt;
* [https://docs.google.com/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?pref=2&amp;amp;pli=1#slide=id.p4 About OWASP Presentation (Google Docs)]&lt;br /&gt;
&lt;br /&gt;
[[Category:Popular]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235864</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235864"/>
				<updated>2017-11-30T03:05:05Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director &lt;br /&gt;
&lt;br /&gt;
OLD BUSINESS&lt;br /&gt;
&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
Official Welcome, [https://www.owasp.org/index.php/About_The_Open_Web_Application_Security_Project#Employees_and_Contractors New Hire Executive Director] - Chairman&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Members and related actions paperwork/term of office/how the roles are picked for 2018 - Historian&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
[https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable Q2 5/10 - Brennan&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
Executive Session closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235859</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235859"/>
				<updated>2017-11-29T20:47:36Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;mMeeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being managed by the executive director &lt;br /&gt;
&lt;br /&gt;
OLD BUSINESS&lt;br /&gt;
&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
New Hire, Executive Director - Konda&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Mmebers and related actions paperwork/term of office/how the roles are picked for 2018 &lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
[https://drive.google.com/open?id=1Hh5Snn5T60fULIUcboh1yoB4YIXlnjmP NYC Cyber Security Grant Update] - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
- Executive Seasion closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235858</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235858"/>
				<updated>2017-11-29T20:46:12Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;mMeeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being manged by the EE&lt;br /&gt;
 ExecutiD eirectorOLD BUSINESS&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
New Hire, Executive Director - Konda&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Mmebers and related actions paperwork/term of office/how the roles are picked for 2018 &lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
NYC Cyber Security Grant Update - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable 5/10 - Brennan&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
- Executive Seasion closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235857</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235857"/>
				<updated>2017-11-29T20:45:11Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;mMeeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being manged by the EE&lt;br /&gt;
 ExecutiD eirectorOLD BUSINESS&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
New Hire, Executive Director - Konda&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Mmebers and related actions paperwork/term of office/how the roles are picked for 2018 &lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
NYC Cyber Security Grant Update - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable 5/10&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
- Executive Seasion closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235820</id>
		<title>About The Open Web Application Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=235820"/>
				<updated>2017-11-28T15:17:10Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' &lt;br /&gt;
&lt;br /&gt;
__TOC__&lt;br /&gt;
&lt;br /&gt;
==The OWASP Foundation==&lt;br /&gt;
The OWASP Foundation came online on [http://wayback.archive.org/web/*/http://www.owasp.org December 1st 2001] it was established as a not-for-profit charitable organization in the United States on April 21, 2004 to ensure the ongoing availability and support for our work at [[Main Page|OWASP]]. OWASP is an international organization and the OWASP Foundation supports OWASP efforts around the world. OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [[Main Page|www.owasp.org]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative and open way. The [[OWASP Foundation]] is a not-for-profit entity that ensures the project's long-term success.&lt;br /&gt;
&lt;br /&gt;
[http://www.linkedin.com/companies/owasp https://www.owasp.org/images/9/98/Btn_cofollow_badge.png]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===OWASP Foundation Bylaws===&lt;br /&gt;
&lt;br /&gt;
The business of the OWASP Foundation Inc. is outlined in the organizational [http://en.wikipedia.org/wiki/By-law by-laws]. These by-laws govern the organization worldwide and allow the participants to understand the established process for doing so. &lt;br /&gt;
&lt;br /&gt;
[[OWASP Foundation ByLaws]]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/90/126741_OWASP_vzw_modelstatuten_v0.9_EN_REV.pdf OWASP EU Foundation ByLaws (English Translation)]&lt;br /&gt;
&lt;br /&gt;
[[Local Chapter ByLaws]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Values ==&lt;br /&gt;
&amp;lt;b&amp;gt;OPEN&amp;lt;/b&amp;gt;&lt;br /&gt;
Everything at OWASP is radically transparent from our finances to our code.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INNOVATION&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP encourages and supports innovation and experiments for solutions to software security challenges.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;GLOBAL&amp;lt;/b&amp;gt;&lt;br /&gt;
Anyone around the world is encouraged to participate in the OWASP community.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INTEGRITY&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP is an honest and truthful, vendor neutral, global community.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Purpose ==&lt;br /&gt;
Be the thriving global community that drives visibility and evolution in the safety and security of the world’s software. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Code of Ethics ==&lt;br /&gt;
Each of us is expected to behave according to the principles contained in the following Code of Ethics. Breaches of the Code of Ethics may result in the foundation taking disciplinary action.&lt;br /&gt;
[https://www.owasp.org/index.php/Membership_Revocation Membership Revocation]&lt;br /&gt;
&lt;br /&gt;
* Perform all professional activities and duties in accordance with all applicable laws and the highest ethical principles;&lt;br /&gt;
* Promote the implementation of and promote compliance with standards, procedures, controls for application security;&lt;br /&gt;
* Maintain appropriate confidentiality of proprietary or otherwise sensitive information encountered in the course of professional activities;&lt;br /&gt;
* Discharge professional responsibilities with diligence and honesty;&lt;br /&gt;
* To communicate openly and honestly;&lt;br /&gt;
* Refrain from any activities which might constitute a conflict of interest or otherwise damage the reputation of employers, the information security profession, or the Association;&lt;br /&gt;
* To maintain and affirm our objectivity and independence;&lt;br /&gt;
* To reject inappropriate pressure from industry or others;&lt;br /&gt;
* Not intentionally injure or impugn the professional reputation of practice of colleagues, clients, or employers;&lt;br /&gt;
* Treat everyone with respect and dignity; and&lt;br /&gt;
* To avoid relationships that impair — or may appear to impair — OWASP's objectivity and independence.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Principles ==&lt;br /&gt;
&lt;br /&gt;
* Free &amp;amp; Open&lt;br /&gt;
* Governed by rough consensus &amp;amp; running code&lt;br /&gt;
* Abide by a code of ethics (see ethics)&lt;br /&gt;
* Not-for-profit&lt;br /&gt;
* Not driven by commercial interests&lt;br /&gt;
* Risk based approach&lt;br /&gt;
&lt;br /&gt;
==2017 Elected by Membership, Global Board Members==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Board_History OWASP Board History]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:Matt_Konda |Matt Konda]]:  Chair====&lt;br /&gt;
The Chairman of the Board shall serve as the principal executive officer of the&lt;br /&gt;
Foundation.&lt;br /&gt;
• Fiduciary responsibilities: He/She shall, in general, supervise and control all of the business&lt;br /&gt;
and affairs of the Foundation. He/She will monitor financial planning and financial reports&lt;br /&gt;
He/She or he may sign, with the Secretary or any other proper officer of the Foundation&lt;br /&gt;
thereunto authorized by the Board of Directors, any deeds, mortgages, bonds, contracts, or&lt;br /&gt;
other instruments which the Board of Directors has authorized to be executed, except in cases&lt;br /&gt;
where the signing and execution thereof shall be expressly delegated by the Board of&lt;br /&gt;
Directors or by these Bylaws to some other officer or agent of the Foundation, or shall be&lt;br /&gt;
required by law to be otherwise signed or executed;&lt;br /&gt;
• Leadership and Direction: provides leadership to the Board of Directors with regards to&lt;br /&gt;
policy setting and strategic planning. He/She helps guide and mediate board actions with&lt;br /&gt;
respect to organizational priorities and governance concerns, and in general shall perform all&lt;br /&gt;
duties incident to the office of Chairman of the Board subject to the control of the Board of&lt;br /&gt;
Directors. &lt;br /&gt;
• Organizational Responsibilities: He/She plays a leading role in fundraising activities,&lt;br /&gt;
formally evaluate the performance of the Foundation Director and informally evaluate the&lt;br /&gt;
effectiveness of the board members. An annual, overall evaluation of the performance of the&lt;br /&gt;
organization in achieving its mission will be accomplished. He or she shall, when present,&lt;br /&gt;
preside at all meetings of the Board of Directors, unless otherwise delegated, and such other&lt;br /&gt;
duties as may be prescribed by the Board of Directors from time to time&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Josh Sokol, Vice Chair====&lt;br /&gt;
­performs Chair responsibilities when the Chair cannot be available, works closely with Chair and other Board Members, participates closely with Chair to develop and implement officer transition plans, performs other responsibilities as assigned by the Board.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
[[User:brennan|'''Tom Brennan''']]:  '''Secretary/Historian''' &lt;br /&gt;
&lt;br /&gt;
maintains records of the board and ensures effective management of organization’s&lt;br /&gt;
records, manages minutes of board meetings, ensures minutes are distributed shortly after each&lt;br /&gt;
meeting, is sufficiently familiar with legal documents (articles, by­laws, IRS letters, etc.) to note&lt;br /&gt;
applicability during meetings; is the custodian of the corporate records and of the seal of the&lt;br /&gt;
Foundation and see that the seal of the Foundation is affixed to all documents, the execution of which&lt;br /&gt;
on behalf of the Foundation under its seal is duly authorized; keeps a register of the post office&lt;br /&gt;
address of each Director which shall be furnished to the Secretary by such Director; and, in general&lt;br /&gt;
perform all duties incident to the office of the Secretary and such other duties as from time to time&lt;br /&gt;
may be assigned to him by the Chairman of the Board or by the Board. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:vanderaj |Andrew van der Stock]]:  Treasurer====&lt;br /&gt;
Treasurer ­manages finances of the organization, administers fiscal matters of the organization,&lt;br /&gt;
provides annual budget to the board for member’s approval, ensures development and board review&lt;br /&gt;
of financial policies and procedures. &lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [[User:MichaelCoates|Michael Coates]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====[[User:tgondrom|Tobias Gondrom]]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
==== [https://www.owasp.org/index.php/User:Knoblochmartin Martin Knobloch]:  Member at Large====&lt;br /&gt;
regularly attends board meetings and important related meetings, volunteers&lt;br /&gt;
for and willingly accepts assignments and completes them thoroughly and on time, stays informed&lt;br /&gt;
about committee matters, prepares themselves well for meetings, and reviews and comments on&lt;br /&gt;
minutes and reports, gets to know other committee members and builds a collegial working&lt;br /&gt;
relationship that contributes to consensus, is an active participant in the committee’s annual&lt;br /&gt;
evaluating and planning efforts, participates in fundraising for the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Employees and Contractors==&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/HR}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* Additional [https://www.owasp.org/index.php/About_OWASP/HR staff and HR info]&lt;br /&gt;
&lt;br /&gt;
==Meeting Minutes==&lt;br /&gt;
The OWASP Foundation Board meets monthly.&lt;br /&gt;
&lt;br /&gt;
[[OWASP_Board_Meetings | Board meeting minutes for the record.]]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/folder/d/0B5Z9zE0hx0LNZ0pqZC1QWWRTM28/edit Global Initiatives Meetings]&lt;br /&gt;
&lt;br /&gt;
== Operational Procedures ==&lt;br /&gt;
[https://www.owasp.org/index.php/About_OWASP/Operational-Procedures Standard Operations Procedures (SOP)]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
All OWASP materials are available under an approved [[OWASP Licenses|FLOSS license]]. For more information, please see the '''[[OWASP Licenses]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Participation and Membership==&lt;br /&gt;
Everyone is welcome to participate in our [https://lists.owasp.org/mailman/listinfo forums], [[projects]], [[chapters]], and [[conferences]]. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For more information, please see the '''[[Membership]]''' page.&lt;br /&gt;
&lt;br /&gt;
==Projects==&lt;br /&gt;
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Privacy Policy==&lt;br /&gt;
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:&lt;br /&gt;
* Communicating urgent fixes in the OWASP Materials&lt;br /&gt;
* Seeking advice and feedback about OWASP Materials&lt;br /&gt;
* Inviting participation in OWASP’s consensus process and AppSec conferences&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and &amp;quot;opt-in.&amp;quot; Listed members can request not to be listed at any time.&lt;br /&gt;
&lt;br /&gt;
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [http://sl.owasp.org/contactus Submit a Inquiry]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Membership or Donations==&lt;br /&gt;
If you are interested in joining OWASP as a member, or donating funds for OWASP's efforts, please check out the [[Membership|OWASP Membership Page]].&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/Financial_Transparency}}&lt;br /&gt;
&lt;br /&gt;
[[:File:OWASP Annual Report 2015.pdf|2015 Annual Report]]&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Contacting OWASP==&lt;br /&gt;
The easiest way to contact the [[OWASP Foundation]] is via e-mail. If you have a question concerning a particular project, we &amp;lt;b&amp;gt;strongly&amp;lt;/b&amp;gt; recommend using the [https://lists.owasp.org/mailman/listinfo mailing list] for that project. Many questions can also be answered by [https://www.owasp.org/google/results.html searching] the [[Main Page|OWASP]] web site, so please check there first.&lt;br /&gt;
&lt;br /&gt;
Our global address for general correspondence and faxes can be sent to our physical office address, at: &lt;br /&gt;
&lt;br /&gt;
  OWASP Foundation&lt;br /&gt;
  1200-C Agora Drive, #232&lt;br /&gt;
  Bel Air, MD 21014&lt;br /&gt;
  US&lt;br /&gt;
 +1 443-283-4021(fax)&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
The European correspondence address is below.&lt;br /&gt;
More information is available on the OWASP [[Europe]] page.&lt;br /&gt;
&lt;br /&gt;
  OWASP Europe VZW&lt;br /&gt;
  Leinstraat 104A&lt;br /&gt;
  B-9660 Opbrakel&lt;br /&gt;
  Belgium&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
  OWASP Norway Chapter&lt;br /&gt;
  [http://w2.brreg.no/enhet/sok/detalj.jsp?orgnr=994253085 Entity Record]&lt;br /&gt;
  v/Kåre Presttun&lt;br /&gt;
  c/o Mnemonic as&lt;br /&gt;
  Wergelandsveien 25&lt;br /&gt;
  0167 OSLO&lt;br /&gt;
	&lt;br /&gt;
&lt;br /&gt;
Want to chat on IRC?&lt;br /&gt;
The official #owasp channel is now live on http://irc.freenode.net ! Come on in and chat with us!&lt;br /&gt;
&lt;br /&gt;
For more information, please see the pages listed below:&lt;br /&gt;
&lt;br /&gt;
* [[Contributions]] for details about how to make contributions&lt;br /&gt;
* [[Advertising]] if you're interested in advertising on the OWASP site&lt;br /&gt;
* [[How OWASP Works]] for more information about projects and governance&lt;br /&gt;
* [[OWASP brand usage rules]] for information about using the OWASP brand&lt;br /&gt;
* [https://docs.google.com/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?pref=2&amp;amp;pli=1#slide=id.p4 About OWASP Presentation (Google Docs)]&lt;br /&gt;
&lt;br /&gt;
[[Category:Popular]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235819</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235819"/>
				<updated>2017-11-28T15:07:00Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]====&lt;br /&gt;
 The '''Executive Director''' is '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235818</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235818"/>
				<updated>2017-11-28T15:06:41Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Executive Director - Karen Staley */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]  The '''Executive Director''' is '''responsible''' for overseeing the administration, programs and strategic plan of the organization ====&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235817</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235817"/>
				<updated>2017-11-28T14:59:01Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
&lt;br /&gt;
====Executive Director - [https://www.linkedin.com/in/karen-staley/ Karen Staley]====&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
The '''Executive Director''' is '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator: Vacant====&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235801</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235801"/>
				<updated>2017-11-27T15:03:48Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Employees and Contractors of the OWASP Foundation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
Executive Director - Karen Staley [https://www.linkedin.com/in/karen-staley/ BIO]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The '''Executive Director''' is '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
[[Image:Matt-Tesauro.png|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Coordinator [https://www.owasp.org/index.php/User:Mtesauro Matt Tesauro]====&lt;br /&gt;
* Based in Texas - USA&lt;br /&gt;
* Key areas of responsibility:   Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enable OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Operations_Director OWASP Operations Director]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235800</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235800"/>
				<updated>2017-11-27T14:59:43Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Employees and Contractors of the OWASP Foundation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
Executive Director - Karen Staley [https://www.linkedin.com/in/karen-staley/ BIO]&lt;br /&gt;
&lt;br /&gt;
The '''Executive Director''' is '''responsible''' for overseeing the administration, programs and strategic plan of the organization&lt;br /&gt;
[[Image:Matt-Tesauro.png|120 px|left]]&lt;br /&gt;
&lt;br /&gt;
====Senior Project Technical Cordinator [https://www.owasp.org/index.php/User:Mtesauro Matt Tesauro]====&lt;br /&gt;
* Based in Texas - USA&lt;br /&gt;
* Key areas of responsibility: Overall operations for the OWASP Foundation including financial, HR and community support.  &lt;br /&gt;
* Other areas of responsibility: Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enables OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Operations_Director OWASP Operations Director]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235799</id>
		<title>About OWASP/HR</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_OWASP/HR&amp;diff=235799"/>
				<updated>2017-11-27T14:58:53Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;noinclude&amp;gt;&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]] &lt;br /&gt;
Executive Director - Karen Staley [https://www.linkedin.com/in/karen-staley/ BIO]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Matt-Tesauro.png|120 px|left]]&lt;br /&gt;
====Senior Project Technical Cordinator [https://www.owasp.org/index.php/User:Mtesauro Matt Tesauro]====&lt;br /&gt;
* Based in Texas - USA&lt;br /&gt;
* Key areas of responsibility: Overall operations for the OWASP Foundation including financial, HR and community support.  &lt;br /&gt;
* Other areas of responsibility: Senior Project Coordinator is responsible for setting the direction and oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. This position includes oversight of the operational processes, policies, and procedures that enables OWASPs Project Leaders and contributors to successfully run their open source software projects. This role is not responsible for project management of individual OWASP Projects within the OWASP Project infrastructure.&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Operations_Director OWASP Operations Director]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Community Manager: [http://www.owasp.org Tiffany Long]====&lt;br /&gt;
* Based in San Francisco&lt;br /&gt;
* Key areas of responsibility: Attracting, motivating and retaining volunteers and security professionals to contribute to OWASP Projects and the OWASP Chapter community;  Mobilize volunteers to help address security issues in large software systems/applications/frameworks; Strengthening OWASP Chapters and abilities to spread message of OWASP through locally organized and run events;Building a scalable OWASP training program that spreads security training to developers around the world. Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Community_Manager OWASP Community Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Profile_Pic.png|140 px|left]]&lt;br /&gt;
====Membership and Business Liaison: [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
* Key areas of responsibility: Individual and Corporate Memberships, Sponsorships, Co-Marketing Agreements, Advertising, Election, and Waspy Awards&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Membership_and_Business_Liaison OWASP Membership &amp;amp; Business Liaison]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Event Manager: [https://www.owasp.org/index.php/User:Laura_Grau Laura Grau]====&lt;br /&gt;
* Based in Bay Area, California - USA&lt;br /&gt;
* Key areas of responsibility: Global AppSec Conference planning, execution, and wrap up; management of OWASP event policies&lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Event_Manager OWASP Event Manager]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Project Coordinator: [https://www.owasp.org/index.php/User:Claudia_casanovas Claudia Aviles-Casanovas]====&lt;br /&gt;
* Based in  - New Jersey, USA&lt;br /&gt;
* Key areas of responsibility: Oversight of the OWASP Projects operational infrastructure that provides support to the project leaders within the OWASP Organization. &lt;br /&gt;
* Job Description: [https://www.owasp.org/images/a/a1/OWASP_Project_Coordinator-FabioTobiasAug25.pdf OWASP Project Coordinator]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Image:Owasp_logo_icon.jpg|120 px|left]]&lt;br /&gt;
====Program Assistant: [https://www.owasp.org/index.php/User:Dawn_Aitken Dawn Aitken]====&lt;br /&gt;
* Based in New Jersey - USA&lt;br /&gt;
*Key areas of responsibility:  Customer service and data management.&lt;br /&gt;
*Job Description:  [https://www.owasp.org/images/e/e8/OWASPOperationsAdmin.pdf Administrative Assistant]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:HugoCosta.jpg|120 px|left]]&lt;br /&gt;
====Graphic Design: [https://www.owasp.org/index.php/User:Hugo_Costa Hugo Costa] (Contractor)====&lt;br /&gt;
* Based in Portugal&lt;br /&gt;
* Key areas of responsibility: Graphic Design &lt;br /&gt;
* Job Description: [https://www.owasp.org/index.php/OWASP_Jobs/Graphic_Designer OWASP Graphic Designer]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==OWASP HR Resources==&lt;br /&gt;
* [https://www.owasp.org/images/2/28/EmployeeHandbook2014.pdf OWASP Foundation Employee Handbook]&lt;br /&gt;
* [https://docs.google.com/document/d/1ZWqUOcCYY40yBsdiSf9Y9oY4XLM8AR67VQu9aYN0syI/edit?usp=sharing Employee and Contractor Annual Review Process], [https://docs.google.com/document/d/1yjgy-G5vOvzKN7_vIksElEYtbTwm016SdckvLst_yxw/edit?usp=sharing Employee Self Review and Supervisor Review Form], [https://docs.google.com/document/d/1GsGf5WCsj-6-MVb-vyguiSku7v_XK5K4K6DxX9f2tOQ/edit?usp=sharing Employee Peer Review Form]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Conflict_of_Interest_Policy OWASP Conflict of Interest Policy and Annual Questionnaire]&lt;br /&gt;
*[https://www.owasp.org/index.php/Governance/Whistleblower_Policy OWASP Whistleblower &amp;amp; Anti-Retaliation Policy]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235674</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235674"/>
				<updated>2017-11-21T14:34:47Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
Open call to public or members attending for new items for the good of the foundation &lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of prior [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being manged by the [https://www.owasp.org/index.php/About_OWASP#Employees_and_Contractors back office team.]&lt;br /&gt;
 OLD BUSINESS&lt;br /&gt;
Update Budget progress - Andrew/Coats&lt;br /&gt;
&lt;br /&gt;
Update AppSecEU Status - Staff Update and concerns&lt;br /&gt;
&lt;br /&gt;
Update/2018 Summit - Josh vote by email results &lt;br /&gt;
&lt;br /&gt;
Update/GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
Update/Chapter Leaders who are not OWASP mmebers and disputes example Spain recent Board thread  - Brennan&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
New Hire, Executive Director - Konda&lt;br /&gt;
&lt;br /&gt;
Current organization chart - Karen&lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
Welcome newly elected Board Mmebers and related actions paperwork/term of office/how the roles are picked for 2018 &lt;br /&gt;
- &lt;br /&gt;
&lt;br /&gt;
NYC Cyber Security Grant Update - Brennan&lt;br /&gt;
-&lt;br /&gt;
&lt;br /&gt;
2018 Association Roundtable 5/10&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
- Executive Seasion closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235673</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235673"/>
				<updated>2017-11-21T14:30:01Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: Updates&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting. All updates should be posted BEFORE FRIDAY December 1st 2017&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
&lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of prior [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being manged by the [https://www.owasp.org/index.php/About_OWASP#Employees_and_Contractors back office team.] &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 OLD BUSINESS&lt;br /&gt;
- Budget progress - Andrew&lt;br /&gt;
- AppSecEU Status - Staff Update&lt;br /&gt;
- 2018 Summit - Konda&lt;br /&gt;
- GDPR - Martin Update&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
- New Hire, Executive Director - Konda&lt;br /&gt;
- Organization Chart - Karen&lt;br /&gt;
- Welcome newly elected Board Mmebers and related actions paperwork/term of office/how the roles are picked for 2018 &lt;br /&gt;
- NYC Cyber Security Grant Update - Brennan&lt;br /&gt;
- Association Roundtable 5/10&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
- Executive Seasion closed to the public.&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235672</id>
		<title>December 6, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=December_6,_2017&amp;diff=235672"/>
				<updated>2017-11-21T14:20:55Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: Updated&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting.&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
&lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Approval of prior [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
OWASP Foundation is managed by the Executive Director ho provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being manged by the [https://www.owasp.org/index.php/About_OWASP#Employees_and_Contractors back office team.] &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 OLD BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Virtual_Village_Project&amp;diff=235473</id>
		<title>OWASP Virtual Village Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Virtual_Village_Project&amp;diff=235473"/>
				<updated>2017-11-15T14:13:03Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: /* Project Chapter */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=Virtual_Village&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Deliverable:&lt;br /&gt;
To provide a stable platform of multiple operating systems, Desktop / Servers for Breakers, Defenders and Makers. This will allow them to have a platform where they can build securely and with confidence that the infrastructure will provide them with what they need.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Virtual Village Project ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This section should include an overview of what the project is, why the project was started, and what security issue is being addressed by the project deliverable. Some readers may be discouraged from looking further at the project if they do not understand the significance of the security concern that is being addressed, so provide enough context so the average reader will continue on with reading the description. You shouldn't assume the reader will understand the objective by providing security terminology, e.g. this project builds cryptographic algorithms, but should also endeavor to explain what they are used for.&lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---The OWASP Tool Template Project is a template designed to help Project Leaders create suitable project pages for OWASP Projects.  By following the instructional text in red (and then deleting it) it should be easier to understand what information OWASP and the project users are looking for.  And it's easy to get started by simply creating a new project from the appropriate project template.---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Description==&lt;br /&gt;
&lt;br /&gt;
OWASP Virtual Village has been moved to github. &lt;br /&gt;
&lt;br /&gt;
https://github.com/OWASP/VirtualVillage &lt;br /&gt;
&lt;br /&gt;
OWASP Virtual Village provides registered OWASP Members and their approved projects with a virtual machine environment that they can run their projects on for testing purposes.  Power and Pipe is donated by [http://www.nyi.net New York Internet] &lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
|{{#ev:youtube|FCiqIf5h4Mc}}&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you need to add your more robust project description. A project description should outline the purpose of the project, how it is used, and the value it provides to application security. Ideally, project descriptions should be written in such a way that there is no question what value the project provides to the software security community. This section will be seen and used in various places within the Projects Portal. Poorly written project descriptions therefore detract from a project’s visibility, so project leaders should ensure that the description is meaningful.  &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&amp;lt;!---The Tool Project Template is simply a sample project that was developed for instructional purposes that can be used to create default project pages for a Tool project.  After copying this template to your new project, all you have to do is follow the instructions in red, replace the sample text with text suited for your project, and then delete the sections in red.  Doing so should make it clearer to both consumers of this project, as well as OWASP reviewers who are trying to determine if the project can be promoted to the next category.  The information requested is also intended to help Project Leaders think about the roadmap and feature priorities, and give guidance to the reviews as a result of that effort.&lt;br /&gt;
&lt;br /&gt;
Creating a new set of project pages from scratch can be a challenging task.  By providing a sample layout, with instructional text and examples, the OWASP Tool Project Template makes it easier for Project Leaders to create effective security projects and hence helps promote security.---&amp;gt;==Licensing==&lt;br /&gt;
&lt;br /&gt;
TBD&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
A project must be licensed under a community friendly or open source license.  For more information on OWASP recommended licenses, please see [https://www.owasp.org/index.php/OWASP_Licenses OWASP Licenses]. While OWASP does not promote any particular license over another, the vast majority of projects have chosen a Creative Commons license variant for documentation projects, or a GNU General Public License variant for tools and code projects.  This example assumes that you want to use the AGPL 3.0 license.&lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Project Resources ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can link to the key locations for project files, including setup programs, the source code repository, online documentation, a Wiki Home Page, threaded discussions about the project, and Issue Tracking system, etc. &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/presentation/d/1zs9LfLBL2BjEYSCqMR3qbmrPNA48xi99SR3dUhSg-nY/edit?usp=sharing Slide Overview]&lt;br /&gt;
&lt;br /&gt;
Interview&lt;br /&gt;
== Project Chapter ==&lt;br /&gt;
[http://www.meetup.com/OWASP-NYC/ NYC Metro]&lt;br /&gt;
&lt;br /&gt;
== Project Leaders ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	A project leader is the individual who decides to lead the project throughout its lifecycle. The project leader is responsible for communicating the project’s progress to the OWASP Foundation, and he/she is ultimately responsible for the project’s deliverables. The project leader must provide OWASP with his/her real name and contact e-mail address for his/her project application to be accepted, as OWASP prides itself on the openness of its products, operations, and members.&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Project leader's name: &lt;br /&gt;
&lt;br /&gt;
[https://github.com/evinhernandez Evin Hernandez]&lt;br /&gt;
&lt;br /&gt;
[https://github.com/brennantom Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
== Project Members ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can link to other OWASP Projects that are similar to yours. &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
[[Dan.damelio@owasp.org|Dan D'Amelio]]&lt;br /&gt;
&lt;br /&gt;
[[Shahb@vmware.com|Bhavin Shah]]&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_TOOL.jpg|link=https://www.owasp.org/index.php/Category:OWASP_Tool]]&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects|Incubator Project]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=Builders]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=Defenders]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; |&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
&lt;br /&gt;
20-Sept AppSecUSA Project Summit&lt;br /&gt;
&lt;br /&gt;
[https://www.nyi.net/media/more/nyi_is_home_to_the_first_owasp_virtual_lab 3 June 2015 Press Release]&lt;br /&gt;
&lt;br /&gt;
[https://github.com/evinhernandez/VirtualVillage Virtual Village Github]&lt;br /&gt;
&lt;br /&gt;
[https://soundcloud.com/owasp-podcast/less-than-10-minutes-series-virtual-village-project '''Virtual Village PodCast''': Less than 10 Minutes series.]&lt;br /&gt;
|&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can provide project updates, links to any events like conference presentations, Project Leader interviews, case studies on successful project implementations, and articles written about your project. &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&amp;lt;!---&lt;br /&gt;
* [12 Feb 2013] Support for Spanish is now available with this release.&lt;br /&gt;
* [11 Jan 2014] The 1.0 stable version has been released! Thanks everyone for your feedback and code fixes that made this happen!&lt;br /&gt;
* [18 Dec 2013] 1.0 Release Candidate is available for download.  This release provides final bug fixes and product stabilization.  Any feedback (good or bad) in the next few weeks would be greatly appreciated.&lt;br /&gt;
* [20 Nov 2013] 1.0 Beta 2 Release is available for download. This release offers several bug fixes, a few performance improvements, and addressed all outstanding issues from a security audit of the code.&lt;br /&gt;
* [30 Sep 2013] 1.0 Beta 1 Release is available for download.  This release offers the first version with all of the functionality for a minimum viable product.     &lt;br /&gt;
---&amp;gt;|}&lt;br /&gt;
&lt;br /&gt;
=FAQs=&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	Many projects have &amp;quot;Frequently Asked Questions&amp;quot; documents or pages. However, the point of such a document is not the questions. ''The point of a document like this are the '''answers'''''. The document contains the answers that people would otherwise find themselves giving over and over again. The idea is that rather than laboriously compose and post the same answers repeatedly, people can refer to this page with pre-prepared answers. Use this space to communicate your projects 'Frequent Answers.'&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==How can I participate in your project?==&lt;br /&gt;
All you have to do is make the Project Leader's aware of your available time to contribute to the project. It is also important to let the Leader's know how you would like to contribute and pitch in to help the project meet it's goals and milestones. There are many different ways you can contribute to an OWASP Project, but communication with the leads is key. &lt;br /&gt;
&lt;br /&gt;
==If I am not a programmer can I participate in your project?==&lt;br /&gt;
Yes, you can certainly participate in the project if you are not a programmer or technical. The project needs different skills and expertise and different times during its development. Currently, we are looking for researchers, writers, graphic designers, and a project administrator.   See the Road Map and Getting Involved tab for more details.&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Contributors==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	The success of OWASP is due to a community of enthusiasts and contributors that work to make our projects great. This is also true for the success of your project. &lt;br /&gt;
Be sure to give credit where credit is due, no matter how small! This should be a brief list of the most amazing people involved in your project. &lt;br /&gt;
Be sure to provide a link to a complete list of all the amazing people in your project's community as well.&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The first contributors to the project were:&lt;br /&gt;
* [https://www.nyi.net/nyi-home-to-first-owasp-virtual-lab/ New York Internet]&lt;br /&gt;
* [http://www.nestedx2.com/#!about/c13zq Evin Hernandez]&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan]&lt;br /&gt;
* [http://www.njit.edu/ New Jersey Institute of Technology (NJIT)]&lt;br /&gt;
*DevPatel&lt;br /&gt;
*Komal Patel&lt;br /&gt;
* Urvashi Patel&lt;br /&gt;
* Robin Reyes (PM)&lt;br /&gt;
&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
Virtual Village is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]  &lt;br /&gt;
&lt;br /&gt;
Power and Pipe provided by New York Internet&lt;br /&gt;
[[File:Nyi logo large.jpg|left|thumb|172x172px]]&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	A project roadmap is the envisioned plan for the project. The purpose of the roadmap is to help others understand where the project is going as well as areas that volunteers may contribute. It gives the community a chance to understand the context and the vision for the goal of the project. Additionally, if a project becomes inactive, or if the project is abandoned, a roadmap can help ensure a project can be adopted and continued under new leadership.&lt;br /&gt;
	Roadmaps vary in detail from a broad outline to a fully detailed project charter. Generally speaking, projects with detailed roadmaps have tended to develop into successful projects. Some details that leaders may consider placing in the roadmap include: envisioned milestones, planned feature enhancements, essential conditions, project assumptions, development timelines, etc. You are required to have at least 4 milestones for every year the project is active. &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
Project Roadmap: consist of A dev / test environment initially taking request via email. Eventually users with be able to sign and and request specific resources correlated to a specific project.&lt;br /&gt;
&lt;br /&gt;
As of &amp;lt;strong&amp;gt;Nov, 2017, the highest priorities for the next 6 months&amp;lt;/strong&amp;gt; are:&lt;br /&gt;
&amp;lt;strong&amp;gt;&lt;br /&gt;
* Obtain software&lt;br /&gt;
* Configure and install Software&lt;br /&gt;
* Provide access to owasp members and host a few owasp projects.&lt;br /&gt;
&amp;lt;/strong&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Getting Involved==&lt;br /&gt;
Involvement in the development and promotion of &amp;lt;strong&amp;gt;Virtual Village&amp;lt;/strong&amp;gt; is actively encouraged!&lt;br /&gt;
You do not have to be a security expert or a programmer to contribute.&lt;br /&gt;
Some of the ways you can help are as follows:&lt;br /&gt;
&lt;br /&gt;
===Coding===&lt;br /&gt;
We could implement some of the later items on the roadmap sooner if someone wanted to help out with unit or automated regression tests&lt;br /&gt;
===Localization===&lt;br /&gt;
Are you fluent in another language? Can you help translate the text strings in the &amp;lt;strong&amp;gt;Tool Project Template&amp;lt;/strong&amp;gt; into that language?&lt;br /&gt;
&lt;br /&gt;
===Testing===&lt;br /&gt;
Do you have a flair for finding bugs in software? We want to product a high quality product, so any help with Quality Assurance would be greatly appreciated. Let us know if you can offer your help.&lt;br /&gt;
===Feedback===&lt;br /&gt;
Please use the [https://lists.owasp.org/mailman/listinfo/OWASP_Tool_Project_Template Tool Project Template project mailing list] for feedback about:&lt;br /&gt;
&amp;lt;ul&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What do like?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What don't you like?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What features would you like to see prioritized on the roadmap?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;/ul&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Minimum Viable Product=&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
This page is where you should indicate what is the minimum set of functionality that is required to make this a useful product that addresses your core security concern.&lt;br /&gt;
Defining this information helps the project leader to think about what is the critical functionality that a user needs for this project to be useful, thereby helping determine what the priorities should be on the roadmap.  And it also helps reviewers who are evaluating the project to determine if the functionality sufficiently provides the critical functionality to determine if the project should be promoted to the next project category.  &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The Virtual Village Project will provide a platform for members to use and host lab, incubator and flagship projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Tool]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Virtual_Village_Project&amp;diff=235472</id>
		<title>OWASP Virtual Village Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Virtual_Village_Project&amp;diff=235472"/>
				<updated>2017-11-15T14:12:27Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=Virtual_Village&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Deliverable:&lt;br /&gt;
To provide a stable platform of multiple operating systems, Desktop / Servers for Breakers, Defenders and Makers. This will allow them to have a platform where they can build securely and with confidence that the infrastructure will provide them with what they need.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Virtual Village Project ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This section should include an overview of what the project is, why the project was started, and what security issue is being addressed by the project deliverable. Some readers may be discouraged from looking further at the project if they do not understand the significance of the security concern that is being addressed, so provide enough context so the average reader will continue on with reading the description. You shouldn't assume the reader will understand the objective by providing security terminology, e.g. this project builds cryptographic algorithms, but should also endeavor to explain what they are used for.&lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---The OWASP Tool Template Project is a template designed to help Project Leaders create suitable project pages for OWASP Projects.  By following the instructional text in red (and then deleting it) it should be easier to understand what information OWASP and the project users are looking for.  And it's easy to get started by simply creating a new project from the appropriate project template.---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Description==&lt;br /&gt;
&lt;br /&gt;
OWASP Virtual Village has been moved to github. &lt;br /&gt;
&lt;br /&gt;
https://github.com/OWASP/VirtualVillage &lt;br /&gt;
&lt;br /&gt;
OWASP Virtual Village provides registered OWASP Members and their approved projects with a virtual machine environment that they can run their projects on for testing purposes.  Power and Pipe is donated by [http://www.nyi.net New York Internet] &lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
|{{#ev:youtube|FCiqIf5h4Mc}}&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you need to add your more robust project description. A project description should outline the purpose of the project, how it is used, and the value it provides to application security. Ideally, project descriptions should be written in such a way that there is no question what value the project provides to the software security community. This section will be seen and used in various places within the Projects Portal. Poorly written project descriptions therefore detract from a project’s visibility, so project leaders should ensure that the description is meaningful.  &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&amp;lt;!---The Tool Project Template is simply a sample project that was developed for instructional purposes that can be used to create default project pages for a Tool project.  After copying this template to your new project, all you have to do is follow the instructions in red, replace the sample text with text suited for your project, and then delete the sections in red.  Doing so should make it clearer to both consumers of this project, as well as OWASP reviewers who are trying to determine if the project can be promoted to the next category.  The information requested is also intended to help Project Leaders think about the roadmap and feature priorities, and give guidance to the reviews as a result of that effort.&lt;br /&gt;
&lt;br /&gt;
Creating a new set of project pages from scratch can be a challenging task.  By providing a sample layout, with instructional text and examples, the OWASP Tool Project Template makes it easier for Project Leaders to create effective security projects and hence helps promote security.---&amp;gt;==Licensing==&lt;br /&gt;
&lt;br /&gt;
TBD&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
A project must be licensed under a community friendly or open source license.  For more information on OWASP recommended licenses, please see [https://www.owasp.org/index.php/OWASP_Licenses OWASP Licenses]. While OWASP does not promote any particular license over another, the vast majority of projects have chosen a Creative Commons license variant for documentation projects, or a GNU General Public License variant for tools and code projects.  This example assumes that you want to use the AGPL 3.0 license.&lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Project Resources ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can link to the key locations for project files, including setup programs, the source code repository, online documentation, a Wiki Home Page, threaded discussions about the project, and Issue Tracking system, etc. &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/presentation/d/1zs9LfLBL2BjEYSCqMR3qbmrPNA48xi99SR3dUhSg-nY/edit?usp=sharing Slide Overview]&lt;br /&gt;
&lt;br /&gt;
Interview&lt;br /&gt;
== Project Chapter ==&lt;br /&gt;
[http://www.meetup.com/OWASP-NYC/ NYC Metro]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	A project leader is the individual who decides to lead the project throughout its lifecycle. The project leader is responsible for communicating the project’s progress to the OWASP Foundation, and he/she is ultimately responsible for the project’s deliverables. The project leader must provide OWASP with his/her real name and contact e-mail address for his/her project application to be accepted, as OWASP prides itself on the openness of its products, operations, and members.&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Project leader's name: &lt;br /&gt;
&lt;br /&gt;
[https://github.com/evinhernandez Evin Hernandez]&lt;br /&gt;
&lt;br /&gt;
[https://github.com/brennantom Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
[[Dan.damelio@owasp.org|Dan D'Amelio]]&lt;br /&gt;
&lt;br /&gt;
[[Shahb@vmware.com|Bhavin Shah]]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can link to other OWASP Projects that are similar to yours. &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_TOOL.jpg|link=https://www.owasp.org/index.php/Category:OWASP_Tool]]&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects|Incubator Project]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=Builders]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=Defenders]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; |&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
&lt;br /&gt;
20-Sept AppSecUSA Project Summit&lt;br /&gt;
&lt;br /&gt;
[https://www.nyi.net/media/more/nyi_is_home_to_the_first_owasp_virtual_lab 3 June 2015 Press Release]&lt;br /&gt;
&lt;br /&gt;
[https://github.com/evinhernandez/VirtualVillage Virtual Village Github]&lt;br /&gt;
&lt;br /&gt;
[https://soundcloud.com/owasp-podcast/less-than-10-minutes-series-virtual-village-project '''Virtual Village PodCast''': Less than 10 Minutes series.]&lt;br /&gt;
|&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can provide project updates, links to any events like conference presentations, Project Leader interviews, case studies on successful project implementations, and articles written about your project. &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&amp;lt;!---&lt;br /&gt;
* [12 Feb 2013] Support for Spanish is now available with this release.&lt;br /&gt;
* [11 Jan 2014] The 1.0 stable version has been released! Thanks everyone for your feedback and code fixes that made this happen!&lt;br /&gt;
* [18 Dec 2013] 1.0 Release Candidate is available for download.  This release provides final bug fixes and product stabilization.  Any feedback (good or bad) in the next few weeks would be greatly appreciated.&lt;br /&gt;
* [20 Nov 2013] 1.0 Beta 2 Release is available for download. This release offers several bug fixes, a few performance improvements, and addressed all outstanding issues from a security audit of the code.&lt;br /&gt;
* [30 Sep 2013] 1.0 Beta 1 Release is available for download.  This release offers the first version with all of the functionality for a minimum viable product.     &lt;br /&gt;
---&amp;gt;|}&lt;br /&gt;
&lt;br /&gt;
=FAQs=&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	Many projects have &amp;quot;Frequently Asked Questions&amp;quot; documents or pages. However, the point of such a document is not the questions. ''The point of a document like this are the '''answers'''''. The document contains the answers that people would otherwise find themselves giving over and over again. The idea is that rather than laboriously compose and post the same answers repeatedly, people can refer to this page with pre-prepared answers. Use this space to communicate your projects 'Frequent Answers.'&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==How can I participate in your project?==&lt;br /&gt;
All you have to do is make the Project Leader's aware of your available time to contribute to the project. It is also important to let the Leader's know how you would like to contribute and pitch in to help the project meet it's goals and milestones. There are many different ways you can contribute to an OWASP Project, but communication with the leads is key. &lt;br /&gt;
&lt;br /&gt;
==If I am not a programmer can I participate in your project?==&lt;br /&gt;
Yes, you can certainly participate in the project if you are not a programmer or technical. The project needs different skills and expertise and different times during its development. Currently, we are looking for researchers, writers, graphic designers, and a project administrator.   See the Road Map and Getting Involved tab for more details.&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Contributors==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	The success of OWASP is due to a community of enthusiasts and contributors that work to make our projects great. This is also true for the success of your project. &lt;br /&gt;
Be sure to give credit where credit is due, no matter how small! This should be a brief list of the most amazing people involved in your project. &lt;br /&gt;
Be sure to provide a link to a complete list of all the amazing people in your project's community as well.&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The first contributors to the project were:&lt;br /&gt;
* [https://www.nyi.net/nyi-home-to-first-owasp-virtual-lab/ New York Internet]&lt;br /&gt;
* [http://www.nestedx2.com/#!about/c13zq Evin Hernandez]&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan]&lt;br /&gt;
* [http://www.njit.edu/ New Jersey Institute of Technology (NJIT)]&lt;br /&gt;
*DevPatel&lt;br /&gt;
*Komal Patel&lt;br /&gt;
* Urvashi Patel&lt;br /&gt;
* Robin Reyes (PM)&lt;br /&gt;
&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
Virtual Village is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]  &lt;br /&gt;
&lt;br /&gt;
Power and Pipe provided by New York Internet&lt;br /&gt;
[[File:Nyi logo large.jpg|left|thumb|172x172px]]&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	A project roadmap is the envisioned plan for the project. The purpose of the roadmap is to help others understand where the project is going as well as areas that volunteers may contribute. It gives the community a chance to understand the context and the vision for the goal of the project. Additionally, if a project becomes inactive, or if the project is abandoned, a roadmap can help ensure a project can be adopted and continued under new leadership.&lt;br /&gt;
	Roadmaps vary in detail from a broad outline to a fully detailed project charter. Generally speaking, projects with detailed roadmaps have tended to develop into successful projects. Some details that leaders may consider placing in the roadmap include: envisioned milestones, planned feature enhancements, essential conditions, project assumptions, development timelines, etc. You are required to have at least 4 milestones for every year the project is active. &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
Project Roadmap: consist of A dev / test environment initially taking request via email. Eventually users with be able to sign and and request specific resources correlated to a specific project.&lt;br /&gt;
&lt;br /&gt;
As of &amp;lt;strong&amp;gt;Nov, 2017, the highest priorities for the next 6 months&amp;lt;/strong&amp;gt; are:&lt;br /&gt;
&amp;lt;strong&amp;gt;&lt;br /&gt;
* Obtain software&lt;br /&gt;
* Configure and install Software&lt;br /&gt;
* Provide access to owasp members and host a few owasp projects.&lt;br /&gt;
&amp;lt;/strong&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Getting Involved==&lt;br /&gt;
Involvement in the development and promotion of &amp;lt;strong&amp;gt;Virtual Village&amp;lt;/strong&amp;gt; is actively encouraged!&lt;br /&gt;
You do not have to be a security expert or a programmer to contribute.&lt;br /&gt;
Some of the ways you can help are as follows:&lt;br /&gt;
&lt;br /&gt;
===Coding===&lt;br /&gt;
We could implement some of the later items on the roadmap sooner if someone wanted to help out with unit or automated regression tests&lt;br /&gt;
===Localization===&lt;br /&gt;
Are you fluent in another language? Can you help translate the text strings in the &amp;lt;strong&amp;gt;Tool Project Template&amp;lt;/strong&amp;gt; into that language?&lt;br /&gt;
&lt;br /&gt;
===Testing===&lt;br /&gt;
Do you have a flair for finding bugs in software? We want to product a high quality product, so any help with Quality Assurance would be greatly appreciated. Let us know if you can offer your help.&lt;br /&gt;
===Feedback===&lt;br /&gt;
Please use the [https://lists.owasp.org/mailman/listinfo/OWASP_Tool_Project_Template Tool Project Template project mailing list] for feedback about:&lt;br /&gt;
&amp;lt;ul&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What do like?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What don't you like?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What features would you like to see prioritized on the roadmap?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;/ul&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Minimum Viable Product=&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
This page is where you should indicate what is the minimum set of functionality that is required to make this a useful product that addresses your core security concern.&lt;br /&gt;
Defining this information helps the project leader to think about what is the critical functionality that a user needs for this project to be useful, thereby helping determine what the priorities should be on the roadmap.  And it also helps reviewers who are evaluating the project to determine if the functionality sufficiently provides the critical functionality to determine if the project should be promoted to the next project category.  &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The Virtual Village Project will provide a platform for members to use and host lab, incubator and flagship projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Tool]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=November_8,_2017&amp;diff=235109</id>
		<title>November 8, 2017</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=November_8,_2017&amp;diff=235109"/>
				<updated>2017-11-06T23:14:35Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Meeting Location: &lt;br /&gt;
&lt;br /&gt;
'''VIRTUAL'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
'''AGENDA'''&lt;br /&gt;
This is the VIRTUAL packet that is provided to everyone at the same time to review, make comments and be prepared for the meeting. There is no paper handout for the meeting.&lt;br /&gt;
&lt;br /&gt;
 CALL TO ORDER&lt;br /&gt;
- Chairman Report&lt;br /&gt;
&lt;br /&gt;
- Officers Reports&lt;br /&gt;
 CHANGES TO THE AGENDA&lt;br /&gt;
FINAL CALL members of the public for additional items or changes to the proposed agenda. All members of the organization or public will be provided 2 mins to make statements to the board about new business or comments. If a action is requested such as a motion and a vote, the member should get in contact with a board member PRIOR to the meeting so that this can be introduced on the agenda.  &lt;br /&gt;
&lt;br /&gt;
Board members should have posted items (5) days in advance of the board meeting to provide others ample time to review the materials in advance and be ready.&lt;br /&gt;
 APPROVAL OF MINUTES&lt;br /&gt;
- Review and approval of prior [https://docs.google.com/document/d/1aPmftVZH3-G96J6-wrpynwwZhBHtREe5a7g8owVYUag prior meeting mins]&lt;br /&gt;
&lt;br /&gt;
 REPORTS&lt;br /&gt;
- Staff Action / Accountability Monthly Report&lt;br /&gt;
&lt;br /&gt;
OWASP Foundation is managed by the [https://www.owasp.org/index.php/About_OWASP#Employees_and_Contractors Operations Director] who provides a monthly roll-up report in collaboration of all staff members, contractors and efforts being manged by the [https://www.owasp.org/index.php/About_OWASP#Employees_and_Contractors back office team.]  A link to the monthly operational report can be found here:  [http://owasp.blogspot.com/2017/01/owasp-operations-update-for-january-2017.html REPORT]&lt;br /&gt;
&lt;br /&gt;
 OLD BUSINESS&lt;br /&gt;
&lt;br /&gt;
- [https://www.owasp.org/index.php/Category:OWASP_Project#tab=Starting_a_New_Project Project workflow] (Tracking / Reporting / Management)&lt;br /&gt;
 NEW BUSINESS&lt;br /&gt;
&lt;br /&gt;
- Members/Public comments&lt;br /&gt;
&lt;br /&gt;
-- Sophie Barry GDPR for OWASP -- [https://www.theguardian.com/voluntary-sector-network/2017/may/05/gdpr-charities-prepare-eu-data-protection-changes-consent-fundraising Article] &lt;br /&gt;
&lt;br /&gt;
-- Andrew van der Stock - Fix Project Balance for the OWASP SAMM project (added by Seba)&lt;br /&gt;
* The project asks for the return 3677.22 USD to the SAMM project funds removed on 2-Jan-2017.&lt;br /&gt;
* see email http://lists.owasp.org/pipermail/owasp-board/2017-October/018357.html (see attachment)&lt;br /&gt;
&lt;br /&gt;
-- &amp;lt;$name&amp;gt; purpose&lt;br /&gt;
&lt;br /&gt;
 COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS&lt;br /&gt;
&lt;br /&gt;
- OCMS Status / [https://www.owasp.org/index.php/Category:OWASP_AppSec_Conference Upcoming events]&lt;br /&gt;
&lt;br /&gt;
- Update Executive Director Search&lt;br /&gt;
&lt;br /&gt;
- Update Senior Technical Project Coordinator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ADJOURNMENT&lt;br /&gt;
&amp;lt;nowiki&amp;gt;##&amp;lt;/nowiki&amp;gt; Executive Session - Closed to the PUBLIC to start after a (5) min break of the end of the member/public board meeting.  &lt;br /&gt;
&lt;br /&gt;
Purpose: http://www.nonprofitlawblog.com/executive-session-tips/&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=234925</id>
		<title>OWASP Incident Response Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Incident_Response_Project&amp;diff=234925"/>
				<updated>2017-11-03T20:30:56Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP_Incident_Response_Project&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Top 10 Guidance for Incident Response==&lt;br /&gt;
&lt;br /&gt;
==Audience==&lt;br /&gt;
&lt;br /&gt;
Breaches happen every day as you learn about them in the news.  Is your business prepared?  This project provides a proactive approach to Incident Response planning. The intended audience of this document includes business owners to security engineers, developers, audit, program managers, law enforcement &amp;amp; legal council. This guidance should be considered when building a comprehensive approach. This guidance is intends to guide the reader on topics that need to be part of the plan in your organization, this includes those responsible for managing the business and technical risk of the entire organization.&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
&lt;br /&gt;
Creative Commons Attribution-NonCommercial-ShareAlike&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
OWASP Top 10 Guidance for Incident Response project is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/92/Top10ConsiderationsForIncidentResponse.pdf Version 1.0 .PDF Version]&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/b/bd/IR_Top_10_Considerations_-_Slides-v2.pdf Slides]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/User:Brennan Tom Brennan] [http://www.twitter.com/brennantom @brennantom]&lt;br /&gt;
&lt;br /&gt;
== Version 2.0 ==&lt;br /&gt;
Want to help out and make this project BETTER?  Add your comments here&lt;br /&gt;
[https://docs.google.com/document/d/1TbIwFW_Z1d7jhnQL9vkdBzFtRC1lmHp9JpTXYXyN58A/edit?usp=sharing Version 2.0 GoogleDocs - Add Comments]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Anti-Ransomware_Guide_Project OWASP Randsomware]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top 10]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Cheat_Sheet_Series OWASP Cheat Sheets]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security CRS]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project Web Hacking Incident Database]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* Release date 12/7/2015 NYC Chapter Meeting&lt;br /&gt;
* Malware&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_DOC.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Volunteers==&lt;br /&gt;
Incident Response Project is developed by a worldwide team of volunteers. The primary contributors to date have been:&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan], [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jason Jolo, [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jordan Lewis&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Want to help? Get in touch with us&lt;br /&gt;
&lt;br /&gt;
==Others==&lt;br /&gt;
* OWASP NYC Metro Chapter&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
Involvement in the development and promotion of OWASP Incident Response Project is actively encouraged!&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
* Proof Reading&lt;br /&gt;
* Graphic Design&lt;br /&gt;
* Conduct Industry Survey&lt;br /&gt;
* Educate local communities&lt;br /&gt;
*  list of open-source IR tools&lt;br /&gt;
* &amp;lt;insert your idea&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Project About=&lt;br /&gt;
{{:Projects/OWASP_Incident_Response_Project}}  &lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Document]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Cyber_Defense_Matrix&amp;diff=234924</id>
		<title>OWASP Cyber Defense Matrix</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Cyber_Defense_Matrix&amp;diff=234924"/>
				<updated>2017-11-03T20:30:08Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Main =&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=OWASP_Cyber_Defense_Matrix&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- DO NOT ALTER OR REMOVE THE TEXT ON NEXT LINE --&amp;gt;&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&amp;lt;!-- DO NOT ALTER OR REMOVE THE TEXT ON NEXT LINE --&amp;gt;&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==Introduction to the Cyber Defense Matrix==&lt;br /&gt;
Imagine going into a grocery store to shop for Thanksgiving dinner, but instead of seeing nice, orderly aisles, you see a massive pile of food in the middle of the grocery store. Finding the ingredients that you need to make dinner is going to be extremely hard because there’s no organizational system helping you understand where things are. The disorganization makes it very difficult to find what you need and compare competing products.&lt;br /&gt;
&lt;br /&gt;
The cybersecurity vendor marketplace is like this disorganized grocery store. A proof of this assertion can be seen by looking at the vendor hall at any major security conference. The cacophony of sounds from vendors hawking their wares, the confusing language of the vendor’s marketecture, and the lack of any semblance of organization (aside from biggest to smallest) does not help buyers understand what they need or where to find it.&lt;br /&gt;
&lt;br /&gt;
Because the cybersecurity community does not use consistent terminology to describe what we need, there is much confusion about what many vendor products actually do. Instead of a clear articulation of a product's capabilities, we are bombarded with overused, trendy jargon that usually leaves us wondering if the product can really solve any of our woes. Some organizations even organize themselves according to the jargon. We need to stop letting marketing pitches dictate our terminology and not lose sight of the more bland descriptors that actually tell us what something does.&lt;br /&gt;
&lt;br /&gt;
The Cyber Defense Matrix helps us understand what we need organized through a logical construct so that when we go into the security vendor marketplace, we can quickly discern what products solve what problems and be informed on what is the core function of a given product. In addition, the Cyber Defense Matrix provides a mechanism to ensure that we have capabilities across the entire spectrum of options to help secure our environments.&lt;br /&gt;
&lt;br /&gt;
Although the Cyber Defense Matrix was initially created to help organize security technologies, many other use cases have been discovered to help build, manage, and operate a security program. This project intends to capture these use cases and their implementations to help security practitioners mature their security programs.&lt;br /&gt;
&lt;br /&gt;
==Description of the Cyber Defense Matrix==&lt;br /&gt;
&lt;br /&gt;
The basic construct of the Cyber Defense Matrix starts with two dimensions. The first dimension captures the five operational functions of the NIST Cybersecurity Framework:&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
!IDENTIFY&lt;br /&gt;
!PROTECT&lt;br /&gt;
!DETECT&lt;br /&gt;
!RESPOND&lt;br /&gt;
!RECOVER&lt;br /&gt;
|}&lt;br /&gt;
The second dimension captures five assets classes that we try to secure:&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
!DEVICES&lt;br /&gt;
|-&lt;br /&gt;
!APPLICATIONS&lt;br /&gt;
|-&lt;br /&gt;
!NETWORKS&lt;br /&gt;
|-&lt;br /&gt;
!DATA&lt;br /&gt;
|-&lt;br /&gt;
!USERS&lt;br /&gt;
|}&lt;br /&gt;
When these two dimensions are put into a grid, we arrive at with a five-by-five matrix that we call the “Cyber Defense Matrix.”&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;border:0,margin:0;&amp;quot;&amp;gt;[[File:Cyber Defense Matrix.png|center]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
There is one more important piece of this matrix.  At bottom of the grid, we show a continuum that characterizes the degree of dependency on technology, people, and process as we progress through the five operational functions of the NIST Cybersecurity Framework.  TECHNOLOGY plays a much greater role in IDENTIFY and PROTECT. As we move to DETECT, RESPOND, and RECOVER, our dependency on TECHNOLOGY diminishes and our dependency on PEOPLE grows. Throughout all five operational functions, there's a consistent level of dependency on PROCESS. This continuum helps us understand where we might have imbalances in our reliance on PEOPLE, PROCESS, and TECHNOLOGY when trying to tackle our cybersecurity challenges.&lt;br /&gt;
&lt;br /&gt;
We believe that this matrix is a realistic model describes a broad range of cybersecurity practices. In this website, you will find several insights on the Cyber Defense Matrix and examples of how to leverage it to address the challenges that we face in cybersecurity.&lt;br /&gt;
&lt;br /&gt;
If you discover a new use of the Cyber Defense Matrix, we would love to hear about it. Likewise, if you find a problem with the matrix in that it doesn't seem to properly describe something that we do in cybersecurity, please point that out, and we'll either adjust the matrix or clarify how that perceived discrepancy can be addressed or explained through the matrix.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- DO NOT ALTER OR REMOVE THE TEXT ON NEXT LINE --&amp;gt;&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Presentations and Other Media ==&lt;br /&gt;
&lt;br /&gt;
[https://www.rsaconference.com/writable/presentations/file_upload/pdil-w02f_understanding_the_security_vendor_landscape...-final.pdf Cyber Defense Matrix Presentation at RSA Conference 2016]&lt;br /&gt;
&lt;br /&gt;
[[Cyber Defense Matrix Handouts]]&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
* [[Sounil@gmail.com|Sounil Yu]]&lt;br /&gt;
* [[Tomb@owasp.org|Tom Brennan]]&lt;br /&gt;
&lt;br /&gt;
== Mailing List: ==&lt;br /&gt;
[https://lists.owasp.org/mailman/listinfo/owasp_cyber_defense_matrix owasp_cyber_defense_matrix@lists.owasp.org]&lt;br /&gt;
&lt;br /&gt;
== FAQs ==&lt;br /&gt;
* TBD&lt;br /&gt;
&lt;br /&gt;
== Roadmap ==&lt;br /&gt;
* Document structure of the Cyber Defense Matrix (July 2017)&lt;br /&gt;
* Map vendors to the Cyber Defense Matrix (September 2017 and ongoing)&lt;br /&gt;
* Map NIST NICE NCWF skillsets to the Cyber Defense Matrix (September 2017)&lt;br /&gt;
* Define attributes that can support measurement of efficacy of capability (December 2017 and ongoing)&lt;br /&gt;
* Define Design Patterns and Business Constraints aligned against the Cyber Defense Matrix (June 2018 and ongoing)&lt;br /&gt;
* Capture anecdotal and empirical measurements of capability degradation rates (December 2018)&lt;br /&gt;
* Incorporate and document new use cases as they are discovered (Ongoing)&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
* TBD&lt;br /&gt;
&lt;br /&gt;
== Licensing ==&lt;br /&gt;
The Cyber Defense Matrix, originally created by Sounil Yu, is licensed under the http://creativecommons.org/licenses/by-sa/4.0/ Creative Commons Attribution-ShareAlike 4.0 license, so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- DO NOT ALTER OR REMOVE THE TEXT ON NEXT LINE --&amp;gt;&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== MAILING LIST ==&lt;br /&gt;
* [https://lists.owasp.org/mailman/listinfo/owasp_cyber_defense_matrix CLICK TO JOIN]&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
&lt;br /&gt;
* [01 May 2017] Project updated&lt;br /&gt;
* [26 June 2017] Update&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
{| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:New projects.png|100px|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]] &lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_DOC.jpg|link=]]   &lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= FAQs =&lt;br /&gt;
&lt;br /&gt;
== How can I participate in your project? ==&lt;br /&gt;
Join the mailing list, say hello! &lt;br /&gt;
&lt;br /&gt;
==If I am not a programmer can I participate in your project?==&lt;br /&gt;
Yes, you can certainly participate in the project if you are not a programmer or technical. The project needs different skills and expertise and different times during its development. Currently, we are looking for researchers, writers, graphic designers, and a project administrator. &lt;br /&gt;
&lt;br /&gt;
= Roadmap =&lt;br /&gt;
* Document structure of the Cyber Defense Matrix (July 2017)&lt;br /&gt;
* Map vendors to the Cyber Defense Matrix (September 2017 and ongoing)&lt;br /&gt;
* Map NIST NICE NCWF skillsets to the Cyber Defense Matrix (September 2017)&lt;br /&gt;
* Define attributes that can support measurement of efficacy of capability (December 2017 and ongoing)&lt;br /&gt;
* Define Design Patterns and Business Constraints aligned against the Cyber Defense Matrix (June 2018 and ongoing)&lt;br /&gt;
* Capture anecdotal and empirical measurements of capability degradation rates (December 2018)&lt;br /&gt;
* Incorporate and document new use cases as they are discovered (Ongoing)&lt;br /&gt;
&lt;br /&gt;
= Contributors =&lt;br /&gt;
&lt;br /&gt;
Everyone is invited to collaborate on this project.&lt;br /&gt;
= Events and Opportunities to Get Involved =&lt;br /&gt;
April 5th 2017 project announced publicly at the [https://www.meetup.com/owaspnyc/events/236400067/ OWASP NYC Chapter Meeting] call for DATA is OPEN&lt;br /&gt;
&lt;br /&gt;
June 2017 - Project Submitted and Approved by OWASP Foundation, page online&lt;br /&gt;
&lt;br /&gt;
July 2017 - Planning for BlackHat/Defcon Face to Face Meet-Up&lt;br /&gt;
&lt;br /&gt;
Aug 2017 - &amp;lt;Summer Hiatus&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Sept 2017 - AppSecUSA Project Summit&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- DO NOT ALTER OR REMOVE THE TEXT ON NEXT LINE --&amp;gt;&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Document]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_RFP-Criteria&amp;diff=234923</id>
		<title>OWASP RFP-Criteria</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_RFP-Criteria&amp;diff=234923"/>
				<updated>2017-11-03T20:29:27Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: change&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=RFP_CRITERA&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot;  style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP RFP Criteria==&lt;br /&gt;
The purpose of this project is to simply provide an objective list of important set of questions  companies should utilize when they issue a Request For Proposal for Web Application Security Projects.&lt;br /&gt;
&lt;br /&gt;
A Request For Proposal, (RFP) is a call made by an organization soliciting for bids by service providers or vendors to meet a need and it is often done by documents.&lt;br /&gt;
&lt;br /&gt;
The information provided in RFPs are important and when you create an RFP for an Application Security Verification project , emphasis should be  on providing clear information about the scope of verification activities and evaluation criteria so prospective service providers and vendors can submit proposals that are comparable.&lt;br /&gt;
&lt;br /&gt;
You also need to provide adequate background information about the company soliciting for bids and other relevant information that can ensure that the project life cycle is successful. Also it is important that prospective service providers or vendors provide detailed information that helps the client to make an informed decision on who is the best fit for the project. &lt;br /&gt;
&lt;br /&gt;
Usually this information may include standard questions such as proposed Application Security Verification Methodologies for defined tasks, relevant project experience etc. Others may include Security Coverage, Risk Evaluation Process , Reporting Techniques etc.&lt;br /&gt;
&lt;br /&gt;
We outline in subsequent sections detailed information that should be provided for each application that is subject to verification in an Application Security Verification project.&lt;br /&gt;
&lt;br /&gt;
==Audience==&lt;br /&gt;
&lt;br /&gt;
The project is written to raise visibility for software security related questions that buyers of services should consider when issuing a request for quote as example or in procurement process.  Supply chain management as noted by DHS referring this project [https://buildsecurityin.us-cert.gov/swa/forums-and-working-groups/acquisition-and-outsourcing DHS SWA]&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
&lt;br /&gt;
The OWASP RFP Criteria Project and project components is licensed under '''https://creativecommons.org/licenses/by-nc-sa/3.0/''' , the Creative Commons Attribution-NonCommercial-ShareAlike license. This implies that you must give appropriate credit , provide a link to the license and indicate if changes were made. You may do so in any reasonable manner, but not in any way that suggests the licensor endorses you or your use. Also note that the material cannot be used for commercial purpose and if you transform or build on the material , you are required to distribute your contributions under the same license as the original.&lt;br /&gt;
&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
OWASP RFP Criteria project is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot;  style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
&lt;br /&gt;
See below&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/a/a3/OWASP_RFP_Best_Pract.pdf OWASP RFP CRITERIA]&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
See Below.&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/1/10/OWASP_RFP.pptx OWASP RFP CRITERIA Presentation]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/User:Brennan Tom Brennan] [http://www.twitter.com/brennantom @brennantom]&lt;br /&gt;
&lt;br /&gt;
== Version 2.0 ==&lt;br /&gt;
Want to help out and make this project BETTER?  Add your comments here&lt;br /&gt;
[https://docs.google.com/document/d/17_CrTAmhaump4C-I2-zH-lllmFWkP3GscHkKo86z_wM/edit?usp=sharing Version 2.0 GoogleDocs - Add Comments]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top 10]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Cheat_Sheet_Series OWASP Cheat Sheets]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Category:OWASP_ModSecurity_Core_Rule_Set_Project OWASP Mod_Security CRS]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project Web Hacking Incident Database]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot;  style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* Release date 1/27/2015 NJ Chapter Meeting&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; rowspan=&amp;quot;2&amp;quot;| [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot;| [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot;  | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot;  | [[File:Project_Type_Files_DOC.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Volunteers==&lt;br /&gt;
Incident Response Project is developed by a worldwide team of volunteers. The primary contributors to date have been:&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan], [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jason Jolaoso, [http://www.proactiverisk.com ProactiveRISK]&lt;br /&gt;
* Jeff Williams&lt;br /&gt;
* Mike Esposito&lt;br /&gt;
* &amp;lt;insert your name&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Want to help? Get in touch with us&lt;br /&gt;
&lt;br /&gt;
==Others==&lt;br /&gt;
* OWASP NYC Metro Chapter&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
Involvement in the development and promotion of OWASP RFP Criteria Project is actively encouraged!&lt;br /&gt;
You do not have to be a security expert in order to contribute.&lt;br /&gt;
Some of the ways you can help:&lt;br /&gt;
&lt;br /&gt;
* Proof Reading&lt;br /&gt;
* Graphic Design&lt;br /&gt;
* Conduct Industry Survey&lt;br /&gt;
* Educate local communities&lt;br /&gt;
*  list of open-source IR tools&lt;br /&gt;
* &amp;lt;insert your idea&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====== OLD TEMPLATE BELOW THIS (WE ARE UPGRADING IT COME BACK LATER ;) ======&lt;br /&gt;
&lt;br /&gt;
==== Project Details ====&lt;br /&gt;
{{:Projects/RFP-Criteria | Project About}}&lt;br /&gt;
&lt;br /&gt;
[http://www.proactiverisk.com http://www.owasp.org/images/7/71/Proactiverisk.jpg]&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP RFP-Criteria|RFP-Criteria]]&lt;br /&gt;
&lt;br /&gt;
==== Main ====&lt;br /&gt;
The information in this document will help you to create a standard , detailed RFP for Application Security Verification projects that service providers or vendors can work with  to submit relevant comparable proposals for an organization.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__TOC__&lt;br /&gt;
&lt;br /&gt;
=Application Security Verification.=&lt;br /&gt;
==Recommended Information the Client (your Organization) should provide to Service Providers/Vendors.==&lt;br /&gt;
&lt;br /&gt;
1. '''Lines of code.''' Lines of Code (LOC) or sometimes referred to as Source Lines of Code (SLOC) is a prerequisite for any verification task that involves the review of source code.  This software metric (LOC) provides information about the scale of the program under review. There are software packages on the public domain such as LocMetrics on http://locmetrics.com or CLOC on http://cloc.sourceforge.net/ which can be used to count the number of lines of code. Additional information about LOC such as if the count included commented source code or not is also beneficial&lt;br /&gt;
&lt;br /&gt;
2.'''Number of dynamic pages.''' Information about the number of dynamic pages is advisable as it provides insights about the scale of the application under assessment. It is important for verification efforts that involved manual penetration testing. When estimating the amount of dynamic pages , pay attention to pages with unique functionality or purpose. If you have urls like:&amp;lt;br/&amp;gt;&lt;br /&gt;
i.  /display_results.php?rs=1 , &amp;lt;br/&amp;gt;&lt;br /&gt;
ii. /display_results.php?rs=2 ,&amp;lt;br/&amp;gt; &lt;br /&gt;
iii./display_results.php?rs=3 , &amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
you need to ensure that you confirm if they refer to a single unique dynamic page or not&lt;br /&gt;
&lt;br /&gt;
3. '''An Inventory of user roles and role descriptions.'''  The catalog of user roles is endorsed for all verification efforts  as it  furnishes  business context for  vulnerabilities  (if any) established.&lt;br /&gt;
&lt;br /&gt;
4. '''Brief Application Summary and Application architecture.''' This is mission critical for  applications with non-standard architectures such as those using thick clients, web services or integration with legacy systems but not so paramount for applications with a standard web application architecture (web server, application server, database server setup).&lt;br /&gt;
&lt;br /&gt;
5.'''Degree  of verification expected .'''  To manage or prevent suppliers providing erratic bids  that vary in figures or timelines ,There is a need to provide definitive guidance on the level of verification desired. This should include requirements for or on: &amp;lt;br/&amp;gt;&lt;br /&gt;
a. Dynamic vulnerability scanning. &amp;lt;br/&amp;gt;&lt;br /&gt;
b. Manual code review. &amp;lt;br/&amp;gt;&lt;br /&gt;
c. Manual penetration testing. &amp;lt;br/&amp;gt;&lt;br /&gt;
d. Static analysis. &amp;lt;br/&amp;gt;&lt;br /&gt;
e. Security architecture review. &amp;lt;br/&amp;gt;&lt;br /&gt;
f. Malicious code analysis. &amp;lt;br/&amp;gt;&lt;br /&gt;
g. Threat modeling.&lt;br /&gt;
&lt;br /&gt;
6. '''The frequency or duration for performing verification.'''  It is important to indicate if you want a   single verification exercise or if you want several  many verification exercises executed within a specified time-frame.&lt;br /&gt;
&lt;br /&gt;
==Recommended RFP Questions (Responses are made by Service Providers/Vendors to Client).==&lt;br /&gt;
&lt;br /&gt;
=== Company Background.===&lt;br /&gt;
a. Summarize the product(s) or service(s) provided by your company.&lt;br /&gt;
&lt;br /&gt;
b. How  long has your company been providing products or services relevant to this project? Please provide any relevant  information about major milestones such as significant acquisitions , mergers or the introduction or elimination of relevant lines of business.&lt;br /&gt;
&lt;br /&gt;
c. Please provide succinct information your past experience with applications of a similar scope, complexity, and vertical as the applications to be verified in this project.&lt;br /&gt;
&lt;br /&gt;
d. Outline your familiarity and experience with the frameworks, libraries,languages and other relevant technologies that comprise the applications to be verified.&lt;br /&gt;
&lt;br /&gt;
e. Are you involved with organizations or stakeholders  in the application security community, such as the '''Open Web Application Security Project (OWASP)''' and the '''Web Application Security Consortium (WASC)'''? if yes , what roles do you play ?&lt;br /&gt;
&lt;br /&gt;
f. Provide other helpful background information about your organization and your qualification to supply  the required product/service.&lt;br /&gt;
&lt;br /&gt;
=== Application Security Verification Methodology.===&lt;br /&gt;
a. Outline , in clear details your proposed methodology for all the verification techniques to be utilized:&lt;br /&gt;
   i. Dynamic vulnerability scanning.&amp;lt;br/&amp;gt;&lt;br /&gt;
  ii. Malicious code analysis.&amp;lt;br/&amp;gt;&lt;br /&gt;
 iii. Manual code review.&amp;lt;br/&amp;gt;&lt;br /&gt;
  iv. Manual penetration testing.&amp;lt;br/&amp;gt;&lt;br /&gt;
   v. Security architecture review.&amp;lt;br/&amp;gt;&lt;br /&gt;
  vi. Static analysis.&amp;lt;br/&amp;gt;&lt;br /&gt;
 vii. Threat modeling.&amp;lt;br/&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
b. What would you require from the client to prepare for and successfully execute an application verification exercise ?&lt;br /&gt;
&lt;br /&gt;
c. Would you be using  multiple techniques for this project ? If yes  how will you combine these in the verification exercise?&lt;br /&gt;
&lt;br /&gt;
d. Describe your proposed level of communication/ interaction with software development teams , security experts, and business process owners during the verification process.&lt;br /&gt;
&lt;br /&gt;
===Security Coverage.===&lt;br /&gt;
a. Explain  the vulnerability and security control coverage that is  provided by your verification efforts. Where relevant , supply references to the OWASP ASVS,[http://projects.webappsec.org/Threat-Classification WASC 24] Broad Classes of Attacks, and the [http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top 10]&lt;br /&gt;
&lt;br /&gt;
b. Provide the different levels of efforts  that you will provider for the verification effort. What are the differences in security coverage between these levels?&lt;br /&gt;
&lt;br /&gt;
c. Presently , are you able to test (precisely)  for Cross-Site Request Forgery (CSRF) and HTTP Response Splitting?&lt;br /&gt;
&lt;br /&gt;
d. What are potential gaps in coverage for the current proposal and what steps would you   take to mitigate the gaps?&lt;br /&gt;
&lt;br /&gt;
e. Does your solution meet current PCI 6.6 standards?&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Application Coverage.===&lt;br /&gt;
a. How effectively does your product/service baseline an application?&lt;br /&gt;
&lt;br /&gt;
b. How do you adjust your product/service to verify an application most effectively?&lt;br /&gt;
&lt;br /&gt;
c. What methods or techniques do you use to ensure coverage of the entire application?&lt;br /&gt;
&lt;br /&gt;
d. How do you corroborate with a customer that you are providing accurate coverage of the targeted application?&lt;br /&gt;
&lt;br /&gt;
e. What potential gaps (if any)  exists between your proposed solution and the platform and architecture of the application under verification?  A case in point - if the target application contains both web pages and web services and your testing does not cover web services this would indicate a gap.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Risk Evaluation.===&lt;br /&gt;
a.  Outline your risk evaluation process for establishing the probable vulnerabilities you might discover and it’s business impact.&lt;br /&gt;
&lt;br /&gt;
b. What is your procedure for managing the reporting of false positives?&lt;br /&gt;
&lt;br /&gt;
c. Outline your procedures for categorizing similar risks for easy absorption and rectification.&lt;br /&gt;
&lt;br /&gt;
===Differentiators.===&lt;br /&gt;
a. What aspect of the verification process do you find most challenging ( if any )?&lt;br /&gt;
&lt;br /&gt;
b. Tell us why your approach towards this project is exceptional or singular. How and why is this important to the client?&lt;br /&gt;
&lt;br /&gt;
===Scope.===&lt;br /&gt;
a. What are the time estimates for  implement your product/service in a similar verification exercise?&lt;br /&gt;
&lt;br /&gt;
b. How does the proposed solution scale for multiple websites?&lt;br /&gt;
&lt;br /&gt;
c. What are the advised steps for curtailing the impact of testing on the performance of applications during the testing process?&lt;br /&gt;
&lt;br /&gt;
d. Indicate if your  product or service provisions for on-demand / ad hoc testing.&lt;br /&gt;
&lt;br /&gt;
e. What is the lead time required to initiate testing?&lt;br /&gt;
&lt;br /&gt;
===Security.===&lt;br /&gt;
&lt;br /&gt;
a. What are your procedures for protecting client’s information made available to you? Outline in detail  your network security, information storage security, and need-to-know policy.&lt;br /&gt;
&lt;br /&gt;
b. Describe the level of confidence you have in staff that would have access to our information in this project.&lt;br /&gt;
&lt;br /&gt;
c. Outline the techniques and policies for information exchange between you (the vendor)and us(the client)during this exercise.&lt;br /&gt;
&lt;br /&gt;
d. Describe your procedure for deleting and purging  information from your systems at the completion of this project.&lt;br /&gt;
&lt;br /&gt;
e. How would  you compartmentalize  our information from the risk information belonging to your other clients?&lt;br /&gt;
&lt;br /&gt;
f. Outline (with tangible evidence) that your systems and network is protected from attacks.&lt;br /&gt;
&lt;br /&gt;
===Burden.===&lt;br /&gt;
a. Outline any resource (human) requirements from our organization. This should include technical/operational skill sets and experience.&lt;br /&gt;
&lt;br /&gt;
b. Specify in details the requirements you require from us to execute the verification exercise.&lt;br /&gt;
&lt;br /&gt;
===Reporting Interface.===&lt;br /&gt;
&lt;br /&gt;
a. Outline your risk documentation structure. This should include:&lt;br /&gt;
   i. The Title. &amp;lt;br/&amp;gt;&lt;br /&gt;
  ii. The Location (URL and/or line of code).&amp;lt;br/&amp;gt;&lt;br /&gt;
 iii. Specific vulnerability description.&amp;lt;br/&amp;gt;&lt;br /&gt;
  iv. Risk likelihood, business impact, and severity.&amp;lt;br/&amp;gt;&lt;br /&gt;
   v. Code snippets.&amp;lt;br/&amp;gt;&lt;br /&gt;
  vi. Specific remediation recommendations.&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
b. Explain the risk model you utilize . How can it be customized to meet your client’s standards and expectations ?&lt;br /&gt;
&lt;br /&gt;
c. Explain your reporting interface employing criteria such as the learning curve, how reporting components are structured, etc.&lt;br /&gt;
&lt;br /&gt;
d. How do you or  your product or services deliver (important) updates on new identified  web application risks? &lt;br /&gt;
&lt;br /&gt;
e.  What trend and historical reports do you provide that monitor identified/open/closed risks and the ongoing remediation exercise?&lt;br /&gt;
&lt;br /&gt;
f.  Is it possible to generate status reports to show the risk status of separate  web applications, and the overall  security health of all web applications?&lt;br /&gt;
&lt;br /&gt;
g.  Are these reports customizable for different stakeholders i.e management.&lt;br /&gt;
&lt;br /&gt;
h. Do you have any standard scripts or standard integration that are bundled with your solution? If yes indicate the applications.&lt;br /&gt;
&lt;br /&gt;
i. Do your reports provide specific directions for application developers, attuned to the exact problem in the code?&lt;br /&gt;
&lt;br /&gt;
j. What is your process for  timely and reliable reporting of risks for stakeholders?&lt;br /&gt;
&lt;br /&gt;
k. How often is your reporting interface updated? What process do you follow for this updates?&lt;br /&gt;
&lt;br /&gt;
l. What benchmark  exists for developers to know if they have successfully re-mediated a risk?&lt;br /&gt;
&lt;br /&gt;
===Innovation.===&lt;br /&gt;
a. Are there any recent innovations or products your firm has delivered that has resulted in improved service delivery for clients?&lt;br /&gt;
&lt;br /&gt;
b. What is your process for identifying  new categories  of vulnerabilities and test for this?&lt;br /&gt;
&lt;br /&gt;
c. What is your process of identifying  new attack techniques that can be used to exploit known vulnerabilities ?&lt;br /&gt;
&lt;br /&gt;
d. What is your process for testing new technologies (e.g. new versions of Flash) for vulnerabilities?&lt;br /&gt;
&lt;br /&gt;
===Integration.===&lt;br /&gt;
a. What are the standard data formats your product/service produce or export?&lt;br /&gt;
&lt;br /&gt;
b. What other relevant technologies (for example, Firewall Applications) does your product/service integrate with? &lt;br /&gt;
&lt;br /&gt;
c. How will the integration work and what benefits will they bring?&lt;br /&gt;
&lt;br /&gt;
===Benefits.===&lt;br /&gt;
a. How can you increase the efficiency of the remediation process?&lt;br /&gt;
&lt;br /&gt;
b. In your opinion , what is  the balance of internal and external resources in an ideal application security program?&lt;br /&gt;
&lt;br /&gt;
c. Can you provide precise results and diminish/eliminate false positives ?&lt;br /&gt;
&lt;br /&gt;
d. Can provide a proof of concept for a positive Return on Investment (ROI) and an increase in benefits to management?&lt;br /&gt;
&lt;br /&gt;
e. Do you have the capacity to influence secure coding techniques / reduce time spent debugging? If yes , How?&lt;br /&gt;
&lt;br /&gt;
f. Outline the technical and business advantage we would gain from working with you in this project.&lt;br /&gt;
&lt;br /&gt;
===Supporting Services.===&lt;br /&gt;
a. Explain any knowledge transfer process or procedure i.e training , platforms etc you will provide with the verification effort.&lt;br /&gt;
&lt;br /&gt;
b. What  remediation support do you provide to software development teams?&lt;br /&gt;
&lt;br /&gt;
===Client Support Details.===&lt;br /&gt;
a. Outline your client or customer support framework . What  are the of support levels you provide and what are the escalation procedures?&lt;br /&gt;
&lt;br /&gt;
b. Do provide a ticket raising and tracking system ? How are your open tickets tracked and closed?&lt;br /&gt;
&lt;br /&gt;
c. What Service Level Agreement(SLA) do you offer ?&lt;br /&gt;
&lt;br /&gt;
===Pricing/Licensing Information.===&lt;br /&gt;
a. What terms or conditions are linked to the product or service ?Do you have a sample Software License Agreement we can review ?&lt;br /&gt;
&lt;br /&gt;
b. Describe clearly  your proposed pricing model.&lt;br /&gt;
&lt;br /&gt;
c. Outline clearly other cost implications  which are attached to this bid and requires our attention.&lt;br /&gt;
&lt;br /&gt;
d. Do you provide pro-bono training or consulting services or attach costs to them ? If yes what are the charges attached to them?&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_HTTP_Post_Tool&amp;diff=234922</id>
		<title>OWASP HTTP Post Tool</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_HTTP_Post_Tool&amp;diff=234922"/>
				<updated>2017-11-03T20:28:31Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=Main=&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=Switch_Blade&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Switchblade 4.0 ==&lt;br /&gt;
&lt;br /&gt;
==Introduction==&lt;br /&gt;
&lt;br /&gt;
OWASP Switchblade is a denial of service tool used for testing the availability, performance and capacity planning of a web application to be proactive about this type of risk condition&lt;br /&gt;
&lt;br /&gt;
==Description==&lt;br /&gt;
&lt;br /&gt;
The projected started in early 2000 as a way to test the capacity of simultaneous users connected to a web application and was not  public tool. In 2010 the tool was created by [http://www.proactiverisk.com ProactiveRISK] to educate the OWASP Community about the Denial of Service conditions that can exist with Layer7&lt;br /&gt;
&lt;br /&gt;
Watch the [https://youtu.be/lYQFF4Ki8_s LIVE DEMO] Video&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
OWASP Switchblade is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== What is Switchblade ==&lt;br /&gt;
&lt;br /&gt;
OWASP Switchblade  provides (3) different types of denial of service conditions that can be tested from a single machine&lt;br /&gt;
&lt;br /&gt;
* SSL Half Connect&lt;br /&gt;
* HTTP Post Attack&lt;br /&gt;
* Slowloris&lt;br /&gt;
&lt;br /&gt;
== Presentation ==&lt;br /&gt;
&lt;br /&gt;
Link to [http://www.owasp.org/images/4/43/Layer_7_DDOS.pdf presentation]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&lt;br /&gt;
[http://www.proactiverisk.com Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
[https://www.owasp.org/index.php/OWASP_Testing_Project OWASP Testing Guide]&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Quick Download ==&lt;br /&gt;
&lt;br /&gt;
* [https://drive.google.com/file/d/0B2KpD4S8_DdReFJCUVJpaXhKSUU/view?usp=sharing Windows Installer] &amp;lt;br&amp;gt;&lt;br /&gt;
* [https://github.com/proactiveRISK/ddos-toolbox GITHUB]&lt;br /&gt;
&lt;br /&gt;
== Email List ==&lt;br /&gt;
&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
* March 27th 2017 added .ZIP file&lt;br /&gt;
&lt;br /&gt;
== In Print ==&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:New projects.png|100px|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_CODE.jpg|link=]]&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Virtual_Village_Project&amp;diff=234921</id>
		<title>OWASP Virtual Village Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Virtual_Village_Project&amp;diff=234921"/>
				<updated>2017-11-03T20:27:26Z</updated>
		
		<summary type="html">&lt;p&gt;Brennan: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Main=&lt;br /&gt;
&lt;br /&gt;
{{#widget:PayPal Donation&lt;br /&gt;
|target=_blank&lt;br /&gt;
|budget=Virtual_Village&lt;br /&gt;
}}   &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Deliverable:&lt;br /&gt;
To provide a stable platform of multiple operating systems, Desktop / Servers for Breakers, Defenders and Makers. This will allow them to have a platform where they can build securely and with confidence that the infrastructure will provide them with what they need.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;div style=&amp;quot;width:100%;height:160px;border:0,margin:0;overflow: hidden;&amp;quot;&amp;gt;[[File:OWASP_Project_Header.jpg|link=]]&amp;lt;/div&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;padding: 0;margin:0;margin-top:10px;text-align:left;&amp;quot; |-&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
==OWASP Virtual Village Project ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This section should include an overview of what the project is, why the project was started, and what security issue is being addressed by the project deliverable. Some readers may be discouraged from looking further at the project if they do not understand the significance of the security concern that is being addressed, so provide enough context so the average reader will continue on with reading the description. You shouldn't assume the reader will understand the objective by providing security terminology, e.g. this project builds cryptographic algorithms, but should also endeavor to explain what they are used for.&lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---The OWASP Tool Template Project is a template designed to help Project Leaders create suitable project pages for OWASP Projects.  By following the instructional text in red (and then deleting it) it should be easier to understand what information OWASP and the project users are looking for.  And it's easy to get started by simply creating a new project from the appropriate project template.---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Description==&lt;br /&gt;
&lt;br /&gt;
OWASP Virtual Village has been moved to github. &lt;br /&gt;
&lt;br /&gt;
https://github.com/OWASP/VirtualVillage &lt;br /&gt;
&lt;br /&gt;
OWASP Virtual Village provides registered OWASP Members and their approved projects with a virtual machine environment that they can run their projects on for testing purposes.  Power and Pipe is donated by [http://www.nyi.net New York Internet] &lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
|{{#ev:youtube|FCiqIf5h4Mc}}&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you need to add your more robust project description. A project description should outline the purpose of the project, how it is used, and the value it provides to application security. Ideally, project descriptions should be written in such a way that there is no question what value the project provides to the software security community. This section will be seen and used in various places within the Projects Portal. Poorly written project descriptions therefore detract from a project’s visibility, so project leaders should ensure that the description is meaningful.  &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&amp;lt;!---The Tool Project Template is simply a sample project that was developed for instructional purposes that can be used to create default project pages for a Tool project.  After copying this template to your new project, all you have to do is follow the instructions in red, replace the sample text with text suited for your project, and then delete the sections in red.  Doing so should make it clearer to both consumers of this project, as well as OWASP reviewers who are trying to determine if the project can be promoted to the next category.  The information requested is also intended to help Project Leaders think about the roadmap and feature priorities, and give guidance to the reviews as a result of that effort.&lt;br /&gt;
&lt;br /&gt;
Creating a new set of project pages from scratch can be a challenging task.  By providing a sample layout, with instructional text and examples, the OWASP Tool Project Template makes it easier for Project Leaders to create effective security projects and hence helps promote security.---&amp;gt;==Licensing==&lt;br /&gt;
&lt;br /&gt;
TBD&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
A project must be licensed under a community friendly or open source license.  For more information on OWASP recommended licenses, please see [https://www.owasp.org/index.php/OWASP_Licenses OWASP Licenses]. While OWASP does not promote any particular license over another, the vast majority of projects have chosen a Creative Commons license variant for documentation projects, or a GNU General Public License variant for tools and code projects.  This example assumes that you want to use the AGPL 3.0 license.&lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== Project Resources ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can link to the key locations for project files, including setup programs, the source code repository, online documentation, a Wiki Home Page, threaded discussions about the project, and Issue Tracking system, etc. &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/presentation/d/1zs9LfLBL2BjEYSCqMR3qbmrPNA48xi99SR3dUhSg-nY/edit?usp=sharing Slide Overview]&lt;br /&gt;
&lt;br /&gt;
Interview&lt;br /&gt;
== Project Chapter ==&lt;br /&gt;
[http://www.meetup.com/OWASP-NYC/ NYC Metro]&lt;br /&gt;
&lt;br /&gt;
== Project Leader ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	A project leader is the individual who decides to lead the project throughout its lifecycle. The project leader is responsible for communicating the project’s progress to the OWASP Foundation, and he/she is ultimately responsible for the project’s deliverables. The project leader must provide OWASP with his/her real name and contact e-mail address for his/her project application to be accepted, as OWASP prides itself on the openness of its products, operations, and members.&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Project leader's name: &lt;br /&gt;
&lt;br /&gt;
[https://github.com/evinhernandez Evin Hernandez]&lt;br /&gt;
&lt;br /&gt;
[https://github.com/brennantom Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
Dan D'Amelio&lt;br /&gt;
&lt;br /&gt;
Bhavin Shah&lt;br /&gt;
&lt;br /&gt;
== Related Projects ==&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can link to other OWASP Projects that are similar to yours. &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
N/A&lt;br /&gt;
&lt;br /&gt;
==Classifications==&lt;br /&gt;
&lt;br /&gt;
   {| width=&amp;quot;200&amp;quot; cellpadding=&amp;quot;2&amp;quot;&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; | [[File:Project_Type_Files_TOOL.jpg|link=https://www.owasp.org/index.php/Category:OWASP_Tool]]&lt;br /&gt;
   |-&lt;br /&gt;
   | rowspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects|Incubator Project]]&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-builders-small.png|link=Builders]]  &lt;br /&gt;
   |-&lt;br /&gt;
   | align=&amp;quot;center&amp;quot; valign=&amp;quot;top&amp;quot; width=&amp;quot;50%&amp;quot; | [[File:Owasp-defenders-small.png|link=Defenders]]&lt;br /&gt;
   |-&lt;br /&gt;
   | colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; |&lt;br /&gt;
   |}&lt;br /&gt;
&lt;br /&gt;
| valign=&amp;quot;top&amp;quot; style=&amp;quot;padding-left:25px;width:200px;&amp;quot; |&lt;br /&gt;
&lt;br /&gt;
== News and Events ==&lt;br /&gt;
&lt;br /&gt;
20-Sept AppSecUSA Project Summit&lt;br /&gt;
&lt;br /&gt;
[https://www.nyi.net/media/more/nyi_is_home_to_the_first_owasp_virtual_lab 3 June 2015 Press Release]&lt;br /&gt;
&lt;br /&gt;
[https://github.com/evinhernandez/VirtualVillage Virtual Village Github]&lt;br /&gt;
&lt;br /&gt;
[https://soundcloud.com/owasp-podcast/less-than-10-minutes-series-virtual-village-project '''Virtual Village PodCast''': Less than 10 Minutes series.]&lt;br /&gt;
|&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	This is where you can provide project updates, links to any events like conference presentations, Project Leader interviews, case studies on successful project implementations, and articles written about your project. &lt;br /&gt;
&amp;lt;/span&amp;gt;---&amp;gt;&amp;lt;!---&lt;br /&gt;
* [12 Feb 2013] Support for Spanish is now available with this release.&lt;br /&gt;
* [11 Jan 2014] The 1.0 stable version has been released! Thanks everyone for your feedback and code fixes that made this happen!&lt;br /&gt;
* [18 Dec 2013] 1.0 Release Candidate is available for download.  This release provides final bug fixes and product stabilization.  Any feedback (good or bad) in the next few weeks would be greatly appreciated.&lt;br /&gt;
* [20 Nov 2013] 1.0 Beta 2 Release is available for download. This release offers several bug fixes, a few performance improvements, and addressed all outstanding issues from a security audit of the code.&lt;br /&gt;
* [30 Sep 2013] 1.0 Beta 1 Release is available for download.  This release offers the first version with all of the functionality for a minimum viable product.     &lt;br /&gt;
---&amp;gt;|}&lt;br /&gt;
&lt;br /&gt;
=FAQs=&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!---&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	Many projects have &amp;quot;Frequently Asked Questions&amp;quot; documents or pages. However, the point of such a document is not the questions. ''The point of a document like this are the '''answers'''''. The document contains the answers that people would otherwise find themselves giving over and over again. The idea is that rather than laboriously compose and post the same answers repeatedly, people can refer to this page with pre-prepared answers. Use this space to communicate your projects 'Frequent Answers.'&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==How can I participate in your project?==&lt;br /&gt;
All you have to do is make the Project Leader's aware of your available time to contribute to the project. It is also important to let the Leader's know how you would like to contribute and pitch in to help the project meet it's goals and milestones. There are many different ways you can contribute to an OWASP Project, but communication with the leads is key. &lt;br /&gt;
&lt;br /&gt;
==If I am not a programmer can I participate in your project?==&lt;br /&gt;
Yes, you can certainly participate in the project if you are not a programmer or technical. The project needs different skills and expertise and different times during its development. Currently, we are looking for researchers, writers, graphic designers, and a project administrator.   See the Road Map and Getting Involved tab for more details.&lt;br /&gt;
&lt;br /&gt;
= Acknowledgements =&lt;br /&gt;
==Contributors==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	The success of OWASP is due to a community of enthusiasts and contributors that work to make our projects great. This is also true for the success of your project. &lt;br /&gt;
Be sure to give credit where credit is due, no matter how small! This should be a brief list of the most amazing people involved in your project. &lt;br /&gt;
Be sure to provide a link to a complete list of all the amazing people in your project's community as well.&lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The first contributors to the project were:&lt;br /&gt;
* [https://www.nyi.net/nyi-home-to-first-owasp-virtual-lab/ New York Internet]&lt;br /&gt;
* [http://www.nestedx2.com/#!about/c13zq Evin Hernandez]&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan]&lt;br /&gt;
* [http://www.njit.edu/ New Jersey Institute of Technology (NJIT)]&lt;br /&gt;
*DevPatel&lt;br /&gt;
*Komal Patel&lt;br /&gt;
* Urvashi Patel&lt;br /&gt;
* Robin Reyes (PM)&lt;br /&gt;
&lt;br /&gt;
==Project Sponsor==&lt;br /&gt;
Virtual Village is sponsored by [http://www.proactiverisk.com ProactiveRISK Inc.].&lt;br /&gt;
&lt;br /&gt;
[[File:Proactiverisk_logo_v2.jpg | link=http://www.proactiverisk.com]]  &lt;br /&gt;
&lt;br /&gt;
Power and Pipe provided by New York Internet&lt;br /&gt;
[[File:Nyi logo large.jpg|left|thumb|172x172px]]&lt;br /&gt;
&lt;br /&gt;
= Road Map and Getting Involved =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
	A project roadmap is the envisioned plan for the project. The purpose of the roadmap is to help others understand where the project is going as well as areas that volunteers may contribute. It gives the community a chance to understand the context and the vision for the goal of the project. Additionally, if a project becomes inactive, or if the project is abandoned, a roadmap can help ensure a project can be adopted and continued under new leadership.&lt;br /&gt;
	Roadmaps vary in detail from a broad outline to a fully detailed project charter. Generally speaking, projects with detailed roadmaps have tended to develop into successful projects. Some details that leaders may consider placing in the roadmap include: envisioned milestones, planned feature enhancements, essential conditions, project assumptions, development timelines, etc. You are required to have at least 4 milestones for every year the project is active. &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
Project Roadmap: consist of A dev / test environment initially taking request via email. Eventually users with be able to sign and and request specific resources correlated to a specific project.&lt;br /&gt;
&lt;br /&gt;
As of &amp;lt;strong&amp;gt;May, 2016, the highest priorities for the next 6 months&amp;lt;/strong&amp;gt; are:&lt;br /&gt;
&amp;lt;strong&amp;gt;&lt;br /&gt;
* Obtain software&lt;br /&gt;
* Configure and install Software&lt;br /&gt;
* Provide access to owasp members and host a few owasp projects.&lt;br /&gt;
&amp;lt;/strong&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Getting Involved==&lt;br /&gt;
Involvement in the development and promotion of &amp;lt;strong&amp;gt;Virtual Village&amp;lt;/strong&amp;gt; is actively encouraged!&lt;br /&gt;
You do not have to be a security expert or a programmer to contribute.&lt;br /&gt;
Some of the ways you can help are as follows:&lt;br /&gt;
&lt;br /&gt;
===Coding===&lt;br /&gt;
We could implement some of the later items on the roadmap sooner if someone wanted to help out with unit or automated regression tests&lt;br /&gt;
===Localization===&lt;br /&gt;
Are you fluent in another language? Can you help translate the text strings in the &amp;lt;strong&amp;gt;Tool Project Template&amp;lt;/strong&amp;gt; into that language?&lt;br /&gt;
&lt;br /&gt;
===Testing===&lt;br /&gt;
Do you have a flair for finding bugs in software? We want to product a high quality product, so any help with Quality Assurance would be greatly appreciated. Let us know if you can offer your help.&lt;br /&gt;
===Feedback===&lt;br /&gt;
Please use the [https://lists.owasp.org/mailman/listinfo/OWASP_Tool_Project_Template Tool Project Template project mailing list] for feedback about:&lt;br /&gt;
&amp;lt;ul&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What do like?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What don't you like?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;What features would you like to see prioritized on the roadmap?&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;/ul&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Minimum Viable Product=&lt;br /&gt;
&amp;lt;!-- Instructions are in RED and should be removed from your document by deleting the text with the span tags.--&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;span style=&amp;quot;color:#ff0000&amp;quot;&amp;gt;&lt;br /&gt;
This page is where you should indicate what is the minimum set of functionality that is required to make this a useful product that addresses your core security concern.&lt;br /&gt;
Defining this information helps the project leader to think about what is the critical functionality that a user needs for this project to be useful, thereby helping determine what the priorities should be on the roadmap.  And it also helps reviewers who are evaluating the project to determine if the functionality sufficiently provides the critical functionality to determine if the project should be promoted to the next project category.  &lt;br /&gt;
&amp;lt;/span&amp;gt;--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The Virtual Village Project will provide a platform for members to use and host lab, incubator and flagship projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs&amp;gt;&amp;lt;/headertabs&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]  &lt;br /&gt;
[[Category:OWASP_Builders]] &lt;br /&gt;
[[Category:OWASP_Defenders]]  &lt;br /&gt;
[[Category:OWASP_Tool]]&lt;/div&gt;</summary>
		<author><name>Brennan</name></author>	</entry>

	</feed>