<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Matteo+Michelini</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Matteo+Michelini"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Matteo_Michelini"/>
		<updated>2026-05-06T00:32:13Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Application_Security_Assessment_Standards_Project&amp;diff=107283</id>
		<title>Category:OWASP Application Security Assessment Standards Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Application_Security_Assessment_Standards_Project&amp;diff=107283"/>
				<updated>2011-03-21T19:50:27Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: added project roadmap&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== Main  ====&lt;br /&gt;
&lt;br /&gt;
The Project’s primary objective is to establish common, consistent methods for application security assessments standards that organizations can use as guidance on what tasks should be completed, how the tasks should be completed and what level of assessment is appropriate based on business requirement.&lt;br /&gt;
&lt;br /&gt;
== Project Roadmap ==&lt;br /&gt;
&lt;br /&gt;
{{:OWASP Application Security Assessment Standards Project/Roadmap | Project Roadmap}}&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
The Application Security Assessment Standards project leader is [[:User:Matteo_Michelini|Matteo Michelini]] of Lutech SpA. &lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
&lt;br /&gt;
{{:Projects/OWASP Application Security Assessment Standards Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
==== OLD_PAGE  ====&lt;br /&gt;
&lt;br /&gt;
Currently there is a lack of standardization over what constitutes an application security assessment.  With no single set of criteria being referenced, it is suggested that OWASP establish a set of standards defining and establishing a baseline approach to conducting differing types/levels of application security assessment.  The standards should be flexible in design to accommodate a range of security assurance levels.  The standards should not be viewed as placing requirements on any party. Rather, the standards should make recommendations about what should be done to be consistent with what the OWASP community believes is best practice.  Adhering to the standards should help increase end user organization confidence that assessments meet an industry agreed-upon approach.&lt;br /&gt;
&lt;br /&gt;
== Objective ==&lt;br /&gt;
&lt;br /&gt;
The Project’s primary objective is to establish common, consistent methods for application security assessments standards that organizations can use as guidance on what tasks should be completed, how the tasks should be completed, who should be involved and what level of assessment is appropriate based on business requirements.  The following are seen as key tasks in order to meet this objective:&lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” nomenclature and definitions for common business application types. &lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” nomenclature and definitions of the differing security assessment types. &lt;br /&gt;
&lt;br /&gt;
* Define standard application assessment process in SWIM flow chart. &lt;br /&gt;
&lt;br /&gt;
* Define standard assessment scope per application type. &lt;br /&gt;
&lt;br /&gt;
* Define standard testing boundaries for application assessments. &lt;br /&gt;
&lt;br /&gt;
* Define what is needed on business end to prepare for application assessment. &lt;br /&gt;
&lt;br /&gt;
* Establish where in SDLC should assessment steps be defined/conducted. &lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” skills nomenclature and establish baseline assessor qualifications and evaluation criteria. &lt;br /&gt;
&lt;br /&gt;
* Establish a common set of application assessment levels:&lt;br /&gt;
&lt;br /&gt;
** Define degree of assessment depth per level&lt;br /&gt;
** Define testing components required per level&lt;br /&gt;
** Establish level of tool usage/type vs. hands on assessment per level&lt;br /&gt;
** Establish linkages between level results and security metrics derived&lt;br /&gt;
** Establish linkages between levels and Security Maturity Models &lt;br /&gt;
&lt;br /&gt;
* Establish guidance parameters to allow organizations to determine appropriate assessment level based on business application to be assessed.&lt;br /&gt;
&lt;br /&gt;
* Document integration/linkages to other OWASP projects.&lt;br /&gt;
&lt;br /&gt;
This project will not define how to technically to conduct an assessment (refer to OWASP Testing Project); it is instead meant to tie business operations and information management practices to application security in order to establish a common, consistent set of standards which provide guidance in conducting such assessments.  &lt;br /&gt;
&lt;br /&gt;
== Current Project Status: ==&lt;br /&gt;
'''OWASP Organization Backing'''&lt;br /&gt;
&lt;br /&gt;
* Minimal feedback - Need Leadership Backing.&lt;br /&gt;
&lt;br /&gt;
'''Phase I – Project Approach:'''&lt;br /&gt;
&lt;br /&gt;
* Minimal feedback obtained.  Contributors jumped in.&lt;br /&gt;
&lt;br /&gt;
'''Phase II - Definitions:'''&lt;br /&gt;
&lt;br /&gt;
* Define Common Business Application Types – '''Need Input.'''&lt;br /&gt;
* Define Security Assessment Types – '''Need Input.'''&lt;br /&gt;
&lt;br /&gt;
'''Phase III – Assessment Context:'''&lt;br /&gt;
&lt;br /&gt;
* Define Standard Application Assessment Process – '''Stub Started - Need Input.'''&lt;br /&gt;
* Define Standard Assessment Scope Per Application Type – Need Stub&lt;br /&gt;
* Define Standard Testing Boundaries For Application Assessments – Need Stub&lt;br /&gt;
* Define Business End Preparation For Application Assessment – Need Stub&lt;br /&gt;
* Establish Where In SDLC Should Assessment Steps Be Defined/Conducted – Need Stub&lt;br /&gt;
* Establish Baseline Assessor Qualifications And Evaluation Criteria – '''Stub Started - Need Input.'''&lt;br /&gt;
&lt;br /&gt;
'''Phase IV – Assessment Levels:'''&lt;br /&gt;
&lt;br /&gt;
''[ Suggest Establishment of Definitions and Context prior to commencement ]''&lt;br /&gt;
&lt;br /&gt;
* Establish assessment level system common terminology and decision criteria - Included is analysis of potentially corresponding security measurements (i.e. common security metrics, security assurance/maturity models, related legislation, other standards, etc.).&lt;br /&gt;
* Create assessment levels based on previous Phase II and III objectives.  Define assessment depth, testing components required, and level of tool usage/type (not product names) of tools used per level.&lt;br /&gt;
* Document corresponding linkages between assessment levels and common security metrics, security assurance/maturity models, related legislation, other documented national standards defined as component of first Phase III objective.&lt;br /&gt;
* Establish guidance parameters to allow organizations to determine appropriate assessment level based on business application to be assessed.&lt;br /&gt;
&lt;br /&gt;
Also refer to project Roadmap.&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Application Security Assessment Standards Project useful. Please contribute back to the project by sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Assessment Standards mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-appsec-standards subscription page.]&lt;br /&gt;
&lt;br /&gt;
== Project Contributers ==&lt;br /&gt;
&lt;br /&gt;
The Assessment Standards project lead is Cliff Barlow of KoreLogic Security.  He can be reached at cbarlow@korelogic.com. &lt;br /&gt;
&lt;br /&gt;
Key contributors:&lt;br /&gt;
&lt;br /&gt;
* Bob Austin, KoreLogic Security&lt;br /&gt;
&lt;br /&gt;
* Jeff Williams, Aspect Security&lt;br /&gt;
&lt;br /&gt;
* Vinay Bansal, Cisco Systems&lt;br /&gt;
&lt;br /&gt;
* Imre Kertesz, KoreLogic Security&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project|Application Security Assessment Standards Project]]&lt;br /&gt;
[[Category:OWASP_Document]] &lt;br /&gt;
[[Category:OWASP_Alpha_Quality_Document]]&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Application_Security_Assessment_Standards_Project&amp;diff=107282</id>
		<title>Category:OWASP Application Security Assessment Standards Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Application_Security_Assessment_Standards_Project&amp;diff=107282"/>
				<updated>2011-03-21T19:47:09Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: added main&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== Main  ====&lt;br /&gt;
&lt;br /&gt;
The Project’s primary objective is to establish common, consistent methods for application security assessments standards that organizations can use as guidance on what tasks should be completed, how the tasks should be completed and what level of assessment is appropriate based on business requirement.&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
The Application Security Assessment Standards project leader is [[:User:Matteo_Michelini|Matteo Michelini]] of Lutech SpA. &lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
&lt;br /&gt;
{{:Projects/OWASP Application Security Assessment Standards Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
==== OLD_PAGE  ====&lt;br /&gt;
&lt;br /&gt;
Currently there is a lack of standardization over what constitutes an application security assessment.  With no single set of criteria being referenced, it is suggested that OWASP establish a set of standards defining and establishing a baseline approach to conducting differing types/levels of application security assessment.  The standards should be flexible in design to accommodate a range of security assurance levels.  The standards should not be viewed as placing requirements on any party. Rather, the standards should make recommendations about what should be done to be consistent with what the OWASP community believes is best practice.  Adhering to the standards should help increase end user organization confidence that assessments meet an industry agreed-upon approach.&lt;br /&gt;
&lt;br /&gt;
== Objective ==&lt;br /&gt;
&lt;br /&gt;
The Project’s primary objective is to establish common, consistent methods for application security assessments standards that organizations can use as guidance on what tasks should be completed, how the tasks should be completed, who should be involved and what level of assessment is appropriate based on business requirements.  The following are seen as key tasks in order to meet this objective:&lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” nomenclature and definitions for common business application types. &lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” nomenclature and definitions of the differing security assessment types. &lt;br /&gt;
&lt;br /&gt;
* Define standard application assessment process in SWIM flow chart. &lt;br /&gt;
&lt;br /&gt;
* Define standard assessment scope per application type. &lt;br /&gt;
&lt;br /&gt;
* Define standard testing boundaries for application assessments. &lt;br /&gt;
&lt;br /&gt;
* Define what is needed on business end to prepare for application assessment. &lt;br /&gt;
&lt;br /&gt;
* Establish where in SDLC should assessment steps be defined/conducted. &lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” skills nomenclature and establish baseline assessor qualifications and evaluation criteria. &lt;br /&gt;
&lt;br /&gt;
* Establish a common set of application assessment levels:&lt;br /&gt;
&lt;br /&gt;
** Define degree of assessment depth per level&lt;br /&gt;
** Define testing components required per level&lt;br /&gt;
** Establish level of tool usage/type vs. hands on assessment per level&lt;br /&gt;
** Establish linkages between level results and security metrics derived&lt;br /&gt;
** Establish linkages between levels and Security Maturity Models &lt;br /&gt;
&lt;br /&gt;
* Establish guidance parameters to allow organizations to determine appropriate assessment level based on business application to be assessed.&lt;br /&gt;
&lt;br /&gt;
* Document integration/linkages to other OWASP projects.&lt;br /&gt;
&lt;br /&gt;
This project will not define how to technically to conduct an assessment (refer to OWASP Testing Project); it is instead meant to tie business operations and information management practices to application security in order to establish a common, consistent set of standards which provide guidance in conducting such assessments.  &lt;br /&gt;
&lt;br /&gt;
== Current Project Status: ==&lt;br /&gt;
'''OWASP Organization Backing'''&lt;br /&gt;
&lt;br /&gt;
* Minimal feedback - Need Leadership Backing.&lt;br /&gt;
&lt;br /&gt;
'''Phase I – Project Approach:'''&lt;br /&gt;
&lt;br /&gt;
* Minimal feedback obtained.  Contributors jumped in.&lt;br /&gt;
&lt;br /&gt;
'''Phase II - Definitions:'''&lt;br /&gt;
&lt;br /&gt;
* Define Common Business Application Types – '''Need Input.'''&lt;br /&gt;
* Define Security Assessment Types – '''Need Input.'''&lt;br /&gt;
&lt;br /&gt;
'''Phase III – Assessment Context:'''&lt;br /&gt;
&lt;br /&gt;
* Define Standard Application Assessment Process – '''Stub Started - Need Input.'''&lt;br /&gt;
* Define Standard Assessment Scope Per Application Type – Need Stub&lt;br /&gt;
* Define Standard Testing Boundaries For Application Assessments – Need Stub&lt;br /&gt;
* Define Business End Preparation For Application Assessment – Need Stub&lt;br /&gt;
* Establish Where In SDLC Should Assessment Steps Be Defined/Conducted – Need Stub&lt;br /&gt;
* Establish Baseline Assessor Qualifications And Evaluation Criteria – '''Stub Started - Need Input.'''&lt;br /&gt;
&lt;br /&gt;
'''Phase IV – Assessment Levels:'''&lt;br /&gt;
&lt;br /&gt;
''[ Suggest Establishment of Definitions and Context prior to commencement ]''&lt;br /&gt;
&lt;br /&gt;
* Establish assessment level system common terminology and decision criteria - Included is analysis of potentially corresponding security measurements (i.e. common security metrics, security assurance/maturity models, related legislation, other standards, etc.).&lt;br /&gt;
* Create assessment levels based on previous Phase II and III objectives.  Define assessment depth, testing components required, and level of tool usage/type (not product names) of tools used per level.&lt;br /&gt;
* Document corresponding linkages between assessment levels and common security metrics, security assurance/maturity models, related legislation, other documented national standards defined as component of first Phase III objective.&lt;br /&gt;
* Establish guidance parameters to allow organizations to determine appropriate assessment level based on business application to be assessed.&lt;br /&gt;
&lt;br /&gt;
Also refer to project Roadmap.&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Application Security Assessment Standards Project useful. Please contribute back to the project by sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Assessment Standards mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-appsec-standards subscription page.]&lt;br /&gt;
&lt;br /&gt;
== Project Contributers ==&lt;br /&gt;
&lt;br /&gt;
The Assessment Standards project lead is Cliff Barlow of KoreLogic Security.  He can be reached at cbarlow@korelogic.com. &lt;br /&gt;
&lt;br /&gt;
Key contributors:&lt;br /&gt;
&lt;br /&gt;
* Bob Austin, KoreLogic Security&lt;br /&gt;
&lt;br /&gt;
* Jeff Williams, Aspect Security&lt;br /&gt;
&lt;br /&gt;
* Vinay Bansal, Cisco Systems&lt;br /&gt;
&lt;br /&gt;
* Imre Kertesz, KoreLogic Security&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project|Application Security Assessment Standards Project]]&lt;br /&gt;
[[Category:OWASP_Document]] &lt;br /&gt;
[[Category:OWASP_Alpha_Quality_Document]]&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Application_Security_Assessment_Standards_Project&amp;diff=107281</id>
		<title>Category:OWASP Application Security Assessment Standards Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Application_Security_Assessment_Standards_Project&amp;diff=107281"/>
				<updated>2011-03-21T19:40:25Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: added OLD_PAGE tab and some minor updates&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== Main  ====&lt;br /&gt;
&lt;br /&gt;
== Project Contributers ==&lt;br /&gt;
&lt;br /&gt;
The Assessment Standards project leader is Matteo Michelini of Lutech SpA.  He can be reached at matteo.michelini@owasp.org&lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
&lt;br /&gt;
{{:Projects/OWASP Application Security Assessment Standards Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
==== OLD_PAGE  ====&lt;br /&gt;
&lt;br /&gt;
Currently there is a lack of standardization over what constitutes an application security assessment.  With no single set of criteria being referenced, it is suggested that OWASP establish a set of standards defining and establishing a baseline approach to conducting differing types/levels of application security assessment.  The standards should be flexible in design to accommodate a range of security assurance levels.  The standards should not be viewed as placing requirements on any party. Rather, the standards should make recommendations about what should be done to be consistent with what the OWASP community believes is best practice.  Adhering to the standards should help increase end user organization confidence that assessments meet an industry agreed-upon approach.&lt;br /&gt;
&lt;br /&gt;
== Objective ==&lt;br /&gt;
&lt;br /&gt;
The Project’s primary objective is to establish common, consistent methods for application security assessments standards that organizations can use as guidance on what tasks should be completed, how the tasks should be completed, who should be involved and what level of assessment is appropriate based on business requirements.  The following are seen as key tasks in order to meet this objective:&lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” nomenclature and definitions for common business application types. &lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” nomenclature and definitions of the differing security assessment types. &lt;br /&gt;
&lt;br /&gt;
* Define standard application assessment process in SWIM flow chart. &lt;br /&gt;
&lt;br /&gt;
* Define standard assessment scope per application type. &lt;br /&gt;
&lt;br /&gt;
* Define standard testing boundaries for application assessments. &lt;br /&gt;
&lt;br /&gt;
* Define what is needed on business end to prepare for application assessment. &lt;br /&gt;
&lt;br /&gt;
* Establish where in SDLC should assessment steps be defined/conducted. &lt;br /&gt;
&lt;br /&gt;
* Where practical, attempt to “standardize” skills nomenclature and establish baseline assessor qualifications and evaluation criteria. &lt;br /&gt;
&lt;br /&gt;
* Establish a common set of application assessment levels:&lt;br /&gt;
&lt;br /&gt;
** Define degree of assessment depth per level&lt;br /&gt;
** Define testing components required per level&lt;br /&gt;
** Establish level of tool usage/type vs. hands on assessment per level&lt;br /&gt;
** Establish linkages between level results and security metrics derived&lt;br /&gt;
** Establish linkages between levels and Security Maturity Models &lt;br /&gt;
&lt;br /&gt;
* Establish guidance parameters to allow organizations to determine appropriate assessment level based on business application to be assessed.&lt;br /&gt;
&lt;br /&gt;
* Document integration/linkages to other OWASP projects.&lt;br /&gt;
&lt;br /&gt;
This project will not define how to technically to conduct an assessment (refer to OWASP Testing Project); it is instead meant to tie business operations and information management practices to application security in order to establish a common, consistent set of standards which provide guidance in conducting such assessments.  &lt;br /&gt;
&lt;br /&gt;
== Current Project Status: ==&lt;br /&gt;
'''OWASP Organization Backing'''&lt;br /&gt;
&lt;br /&gt;
* Minimal feedback - Need Leadership Backing.&lt;br /&gt;
&lt;br /&gt;
'''Phase I – Project Approach:'''&lt;br /&gt;
&lt;br /&gt;
* Minimal feedback obtained.  Contributors jumped in.&lt;br /&gt;
&lt;br /&gt;
'''Phase II - Definitions:'''&lt;br /&gt;
&lt;br /&gt;
* Define Common Business Application Types – '''Need Input.'''&lt;br /&gt;
* Define Security Assessment Types – '''Need Input.'''&lt;br /&gt;
&lt;br /&gt;
'''Phase III – Assessment Context:'''&lt;br /&gt;
&lt;br /&gt;
* Define Standard Application Assessment Process – '''Stub Started - Need Input.'''&lt;br /&gt;
* Define Standard Assessment Scope Per Application Type – Need Stub&lt;br /&gt;
* Define Standard Testing Boundaries For Application Assessments – Need Stub&lt;br /&gt;
* Define Business End Preparation For Application Assessment – Need Stub&lt;br /&gt;
* Establish Where In SDLC Should Assessment Steps Be Defined/Conducted – Need Stub&lt;br /&gt;
* Establish Baseline Assessor Qualifications And Evaluation Criteria – '''Stub Started - Need Input.'''&lt;br /&gt;
&lt;br /&gt;
'''Phase IV – Assessment Levels:'''&lt;br /&gt;
&lt;br /&gt;
''[ Suggest Establishment of Definitions and Context prior to commencement ]''&lt;br /&gt;
&lt;br /&gt;
* Establish assessment level system common terminology and decision criteria - Included is analysis of potentially corresponding security measurements (i.e. common security metrics, security assurance/maturity models, related legislation, other standards, etc.).&lt;br /&gt;
* Create assessment levels based on previous Phase II and III objectives.  Define assessment depth, testing components required, and level of tool usage/type (not product names) of tools used per level.&lt;br /&gt;
* Document corresponding linkages between assessment levels and common security metrics, security assurance/maturity models, related legislation, other documented national standards defined as component of first Phase III objective.&lt;br /&gt;
* Establish guidance parameters to allow organizations to determine appropriate assessment level based on business application to be assessed.&lt;br /&gt;
&lt;br /&gt;
Also refer to project Roadmap.&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Application Security Assessment Standards Project useful. Please contribute back to the project by sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Assessment Standards mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-appsec-standards subscription page.]&lt;br /&gt;
&lt;br /&gt;
== Project Contributers ==&lt;br /&gt;
&lt;br /&gt;
The Assessment Standards project lead is Cliff Barlow of KoreLogic Security.  He can be reached at cbarlow@korelogic.com. &lt;br /&gt;
&lt;br /&gt;
Key contributors:&lt;br /&gt;
&lt;br /&gt;
* Bob Austin, KoreLogic Security&lt;br /&gt;
&lt;br /&gt;
* Jeff Williams, Aspect Security&lt;br /&gt;
&lt;br /&gt;
* Vinay Bansal, Cisco Systems&lt;br /&gt;
&lt;br /&gt;
* Imre Kertesz, KoreLogic Security&lt;br /&gt;
&lt;br /&gt;
__NOTOC__ &amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project|Application Security Assessment Standards Project]]&lt;br /&gt;
[[Category:OWASP_Document]] &lt;br /&gt;
[[Category:OWASP_Alpha_Quality_Document]]&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=107274</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=107274"/>
				<updated>2011-03-21T19:13:18Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.].&lt;br /&gt;
&lt;br /&gt;
His work is focused on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other in ''Computer Forensics and Digital Investigations'' both from University of Milan. At present he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
* Project Leader of [[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini(at)owasp.org Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Orphaned_Projects&amp;diff=107189</id>
		<title>Category:OWASP Orphaned Projects</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Orphaned_Projects&amp;diff=107189"/>
				<updated>2011-03-18T22:52:51Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= This page contains OWASP Projects that have been identified as orphaned ones = &lt;br /&gt;
* If you find interest in leading any one of them, please contact the [[:Category:Global Projects Committee|Global Projects Committee]] or the [mailto:paulo.coimbra@owasp.org OWASP project manager].&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Note:''' Before setting up this list of orphaned projects, the GPC has tried to contact individually each project leader and, in a few cases, that turned up impossible to do. Being so, if you find the project you still want to lead being here mistakenly referred please inform us using the contacts above. &lt;br /&gt;
&lt;br /&gt;
#[[:Category:OWASP AJAX Security Project|OWASP AJAX Security Project]] - Adopted/New leader: [mailto:anurag.agarwal@yahoo.com Anurag Agarwal]&lt;br /&gt;
#[[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]] - Adopted/New Leader: [[:User:Matteo_Michelini|Matteo Michelini]]&lt;br /&gt;
#[[:Category:OWASP Application Security Metrics Project|OWASP Application Security Metrics Project]] - Adopted/New leader: [mailto:jeffrey.barto@ubs.com Jeff Barto] &lt;br /&gt;
#[[:Category:OWASP AppSec FAQ Project|OWASP AppSec FAQ Project]] - Adopted/New leader: [mailto:pete@techumen.com Pete Niner]&lt;br /&gt;
#[[:Category:OWASP Career Development Project|OWASP Career Development Project]]&lt;br /&gt;
#[[:Category:OWASP Certification Criteria Project|OWASP Certification Criteria Project]]&lt;br /&gt;
#[[:Category:OWASP Communications Project|OWASP Communications Project]]&lt;br /&gt;
#[[:Category:OWASP Encoding Project|OWASP Encoding Project]]&lt;br /&gt;
#[[:Category:OWASP Flash Security Project|OWASP Flash Security Project]] - Adopted/New leader: [[:User:Puhley|Peleus Uhley]] &lt;br /&gt;
#[[:Category:OWASP Fuzzing Code Database|OWASP Fuzzing Code Database]] - Adopted/New Leader: [[:User:Wagner.elias|Wagner Elias]]&lt;br /&gt;
#[[:Category:OWASP Insecure Web App Project|OWASP Insecure Web App Project]] - In process of adoption: [[User:Knoblochmartin|Martin Knobloch]]&lt;br /&gt;
#[[:OWASP Internationalization|OWASP Internationalization Project]]&lt;br /&gt;
#[[:Category:OWASP LAPSE Project|OWASP LAPSE Project]] - Adopted/New Leader - Pablo Martín Pérez &lt;br /&gt;
#[[:Category:OWASP Logging Project|OWASP Logging Project]] - Adopted/New Leader: [mailto:mchisinevski@yahoo.com Marc Chisinevski]&lt;br /&gt;
#[[:Category:OWASP_Oracle_Project|OWASP Oracle Project]]&lt;br /&gt;
#[[:Category:OWASP_Pantera_Web_Assessment_Studio_Project|OWASP Pantera Web Assessment Studio Project]]&lt;br /&gt;
#[[:Category:OWASP_PHP_AntiXSS_Library_Project|OWASP PHP AntiXSS Library Project]]&lt;br /&gt;
#[[:ORG (OWASP Report Generator)|OWASP Report Generator]] - Adopted/New leader: [[:User:Mroxberr|Mark Roxberry]]&lt;br /&gt;
#[[:Category:OWASP_SASAP_Project|OWASP Scholastic Application Security Assessment Project]]&lt;br /&gt;
#[https://www.owasp.org/index.php/Owasp_SiteGenerator OWASP SiteGenerator Project]&lt;br /&gt;
#[[:Category:OWASP_SQLiX_Project|OWASP SQLiX Project]]&lt;br /&gt;
#[[:Category:OWASP_SWAAT_Project|OWASP SWAAT Project]] - In process of adoption: [mailto:Suresh.Ranganathan@tatacommunications.com Suresh Ranganathan]&lt;br /&gt;
#[[:OWASP_Tiger|OWASP Tiger]]&lt;br /&gt;
#[[:Category:OWASP_Tools_Project|OWASP Tools Project]] - Adopted/New Leader: [mailto:vishalgrg@gmail.com Vishal Garg]&lt;br /&gt;
#[[:Category:OWASP_Validation_Project|OWASP Validation Project]]&lt;br /&gt;
#[[:Category:OWASP_Web_2.0_Project|OWASP Web 2.0 Project]] - In process of adoption: [mailto:Chris_E_Bush@KeyBank.com Chris Bush]  &lt;br /&gt;
#[[:Category:OWASP_Web_Services_Security_Project|OWASP Web Services Security Project]] - Adopted/New Leader: [mailto:subu@securitycompass.com Subu Ramanathan]&lt;br /&gt;
#[[:Category:OWASP_XML_Security_Gateway_Evaluation_Criteria_Project|OWASP XML Security Gateway Evaluation Criteria Project]]&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=107062</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=107062"/>
				<updated>2011-03-17T10:59:41Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.].&lt;br /&gt;
&lt;br /&gt;
His work is focused on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other in ''Computer Forensics and Digital Investigations'' both from University of Milan. At present he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
* Project Leader of [[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini(at)gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106959</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106959"/>
				<updated>2011-03-16T13:05:37Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: Project Leader of OWASP ASAS&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.].&lt;br /&gt;
&lt;br /&gt;
His work is focused on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. At present he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
* Project Leader of [[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini(at)gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106650</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106650"/>
				<updated>2011-03-11T09:50:45Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.].&lt;br /&gt;
&lt;br /&gt;
His work is focused on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. At present he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini(at)gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106648</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106648"/>
				<updated>2011-03-11T09:17:30Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.].&lt;br /&gt;
&lt;br /&gt;
His work is focused on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. Actually he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini(at)gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106626</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106626"/>
				<updated>2011-03-10T22:29:21Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.] with a focus on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. Actually he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini(at)gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106625</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106625"/>
				<updated>2011-03-10T22:26:11Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.] with a focus on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. Actually he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
OWASP contributions:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/index.php/Special:Contributions/Matteo_Michelini OWASP wiki contributions].&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini@gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106623</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106623"/>
				<updated>2011-03-10T21:53:12Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.] with a focus on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and ''two PGCert'' one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. Actually he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini@gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106622</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106622"/>
				<updated>2011-03-10T21:51:43Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo Michelini''' is a ''Security Consultant'' at [http://www.lutech.it Lutech S.p.A.] with a focus on incident handling procedures, vulnerability management and intrusion detection. He is also involved with [http://www.sans.org SANS Institute] as a ''GIAC Question Writer'' and as a ''Mentor'' providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling. &lt;br /&gt;
&lt;br /&gt;
His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a ''B.Eng. in Computer Engineering'' from Politecnico di Milano and two PGCert one in ''IT Governance'' and the other one in ''Computer Forensics and Digital Investigations'' both from University of Milan. Actually he is a ''M.Sc. candidate in Information Security'' with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
Contacts:&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini@gmail.com Email Address].&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini LinkedIn Profile].&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106621</id>
		<title>User:Matteo Michelini</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Matteo_Michelini&amp;diff=106621"/>
				<updated>2011-03-10T21:44:00Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Matteo''' is a Security Consultant with a focus on incident handling procedures, vulnerability management and intrusion detection. He is also involved with SANS Institute as a GIAC Question Writer and as a Mentor providing local Security training for the course SEC504: Hacker Techniques, Exploits and Incident Handling.His current interests include computer forensics, penetration testing and application security. In the past he was a Security Researcher involved in the development of kernel level auditing systems for cutting-edge IDS technologies.&lt;br /&gt;
&lt;br /&gt;
He currently holds the GCIH from SANS Institute, the CCNA and the CCNA Security certifications. He is also an IDS/IPS Certified Specialist from both IBM and CISCO Systems. &lt;br /&gt;
&lt;br /&gt;
Matteo has a B.Eng. in Computer Engineering from Politecnico di Milano and two PGCert one in &amp;quot;IT Governance&amp;quot; and the other one in &amp;quot;Computer Forensics and Digital Investigations&amp;quot; both from University of Milan. Actually he is a M.Sc. candidate in Information Security with a concentration in Systems Security at University of Milan.&lt;br /&gt;
&lt;br /&gt;
Contacts&lt;br /&gt;
&lt;br /&gt;
* [mailto:matteo.michelini@gmail.com Email]&lt;br /&gt;
* [http://linkedin.com/in/matteomichelini Linkedin Profile]&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Orphaned_Projects&amp;diff=106620</id>
		<title>Category:OWASP Orphaned Projects</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Orphaned_Projects&amp;diff=106620"/>
				<updated>2011-03-10T21:38:56Z</updated>
		
		<summary type="html">&lt;p&gt;Matteo Michelini: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= This page contains OWASP Projects that have been identified as orphaned ones = &lt;br /&gt;
* If you find interest in leading any one of them, please contact the [[:Category:Global Projects Committee|Global Projects Committee]] or the [mailto:paulo.coimbra@owasp.org OWASP project manager].&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Note:''' Before setting up this list of orphaned projects, the GPC has tried to contact individually each project leader and, in a few cases, that turned up impossible to do. Being so, if you find the project you still want to lead being here mistakenly referred please inform us using the contacts above. &lt;br /&gt;
&lt;br /&gt;
#[[:Category:OWASP AJAX Security Project|OWASP AJAX Security Project]] - Adopted/New leader: [mailto:anurag.agarwal@yahoo.com Anurag Agarwal]&lt;br /&gt;
#[[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]] - In process of adoption by Bithika &amp;amp; [[:User:Matteo_Michelini|Matteo Michelini]]&lt;br /&gt;
#[[:Category:OWASP Application Security Metrics Project|OWASP Application Security Metrics Project]] - Adopted/New leader: [mailto:jeffrey.barto@ubs.com Jeff Barto] &lt;br /&gt;
#[[:Category:OWASP AppSec FAQ Project|OWASP AppSec FAQ Project]] - Adopted/New leader: [mailto:pete@techumen.com Pete Niner]&lt;br /&gt;
#[[:Category:OWASP Career Development Project|OWASP Career Development Project]]&lt;br /&gt;
#[[:Category:OWASP Certification Criteria Project|OWASP Certification Criteria Project]]&lt;br /&gt;
#[[:Category:OWASP Communications Project|OWASP Communications Project]]&lt;br /&gt;
#[[:Category:OWASP Encoding Project|OWASP Encoding Project]]&lt;br /&gt;
#[[:Category:OWASP Flash Security Project|OWASP Flash Security Project]] - Adopted/New leader: [[:User:Puhley|Peleus Uhley]] &lt;br /&gt;
#[[:Category:OWASP Fuzzing Code Database|OWASP Fuzzing Code Database]] - Adopted/New Leader: [[:User:Wagner.elias|Wagner Elias]]&lt;br /&gt;
#[[:Category:OWASP Insecure Web App Project|OWASP Insecure Web App Project]] - In process of adoption: [[User:Knoblochmartin|Martin Knobloch]]&lt;br /&gt;
#[[:OWASP Internationalization|OWASP Internationalization Project]]&lt;br /&gt;
#[[:Category:OWASP LAPSE Project|OWASP LAPSE Project]] - Adopted/New Leader - Pablo Martín Pérez &lt;br /&gt;
#[[:Category:OWASP Logging Project|OWASP Logging Project]] - Adopted/New Leader: [mailto:mchisinevski@yahoo.com Marc Chisinevski]&lt;br /&gt;
#[[:Category:OWASP_Oracle_Project|OWASP Oracle Project]]&lt;br /&gt;
#[[:Category:OWASP_Pantera_Web_Assessment_Studio_Project|OWASP Pantera Web Assessment Studio Project]]&lt;br /&gt;
#[[:Category:OWASP_PHP_AntiXSS_Library_Project|OWASP PHP AntiXSS Library Project]]&lt;br /&gt;
#[[:ORG (OWASP Report Generator)|OWASP Report Generator]] - Adopted/New leader: [[:User:Mroxberr|Mark Roxberry]]&lt;br /&gt;
#[[:Category:OWASP_SASAP_Project|OWASP Scholastic Application Security Assessment Project]]&lt;br /&gt;
#[https://www.owasp.org/index.php/Owasp_SiteGenerator OWASP SiteGenerator Project]&lt;br /&gt;
#[[:Category:OWASP_SQLiX_Project|OWASP SQLiX Project]]&lt;br /&gt;
#[[:Category:OWASP_SWAAT_Project|OWASP SWAAT Project]] - In process of adoption: [mailto:Suresh.Ranganathan@tatacommunications.com Suresh Ranganathan]&lt;br /&gt;
#[[:OWASP_Tiger|OWASP Tiger]]&lt;br /&gt;
#[[:Category:OWASP_Tools_Project|OWASP Tools Project]] - Adopted/New Leader: [mailto:vishalgrg@gmail.com Vishal Garg]&lt;br /&gt;
#[[:Category:OWASP_Validation_Project|OWASP Validation Project]]&lt;br /&gt;
#[[:Category:OWASP_Web_2.0_Project|OWASP Web 2.0 Project]] - In process of adoption: [mailto:Chris_E_Bush@KeyBank.com Chris Bush]  &lt;br /&gt;
#[[:Category:OWASP_Web_Services_Security_Project|OWASP Web Services Security Project]] - Adopted/New Leader: [mailto:subu@securitycompass.com Subu Ramanathan]&lt;br /&gt;
#[[:Category:OWASP_XML_Security_Gateway_Evaluation_Criteria_Project|OWASP XML Security Gateway Evaluation Criteria Project]]&lt;/div&gt;</summary>
		<author><name>Matteo Michelini</name></author>	</entry>

	</feed>