This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Summit 2011 Working Sessions/Session251"

From OWASP
Jump to: navigation, search
m
 
(4 intermediate revisions by one other user not shown)
Line 2: Line 2:
 
|-
 
|-
  
| summit_session_attendee_name1 = Helen Gao
+
| summit_session_attendee_name1 = Helen Gao (chair)
| summit_session_attendee_email1 = heleng@owasp.org
+
| summit_session_attendee_email1 = heleng@owasp.org email
 
| summit_session_attendee_username1 =  
 
| summit_session_attendee_username1 =  
 
| summit_session_attendee_company1= China
 
| summit_session_attendee_company1= China
Line 56: Line 56:
 
| summit_session_attendee_username7=  
 
| summit_session_attendee_username7=  
 
| summit_session_attendee_company7= Indonesia
 
| summit_session_attendee_company7= Indonesia
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed7=
+
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed7= I do interest how Ofer membership model propose. Could someone explain in details here?
  
 
| summit_session_attendee_name8 = Onn-chee Wong
 
| summit_session_attendee_name8 = Onn-chee Wong
Line 69: Line 69:
 
3) A OWASP Asia mailing list will be good.
 
3) A OWASP Asia mailing list will be good.
  
| summit_session_attendee_name9 =  
+
| summit_session_attendee_name9 = Kate Hartmann
 
| summit_session_attendee_email9 =  
 
| summit_session_attendee_email9 =  
 
| summit_session_attendee_username9 =  
 
| summit_session_attendee_username9 =  
| summit_session_attendee_company9=
+
| summit_session_attendee_company9= OWASP Foundation
 
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed9=
 
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed9=
  
| summit_session_attendee_name10 =  
+
| summit_session_attendee_name10 = Mark Bristow
 
| summit_session_attendee_email10 =  
 
| summit_session_attendee_email10 =  
 
| summit_session_attendee_username10 =  
 
| summit_session_attendee_username10 =  
| summit_session_attendee_company10=
+
| summit_session_attendee_company10= Global Conference Committee
 
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed10=
 
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed10=
  
Line 146: Line 146:
 
| summit_session_name = OWASP Asia/Pacific working group
 
| summit_session_name = OWASP Asia/Pacific working group
 
| summit_session_url = http://www.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session251
 
| summit_session_url = http://www.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session251
| mailing_list =
+
| mailing_list = Helen Gao (temporary) heleng@proginet.com
  
 
|-
 
|-
  
| short_working_session_description =  
+
| short_working_session_description = Realize the potential of OWASP in Asia Pacific Area
  
 
|-
 
|-
Line 199: Line 199:
 
|-
 
|-
  
|summit_session_deliverable_name1 = Create an APAC mailing list – Updates on regional membership, conferences, etc. will be sent to subscribers.
+
|summit_session_deliverable_name1 = Create an APAC mailing list
  
|summit_session_deliverable_name2 = Regional Membership – The goal is to increase membership in APAC area.  Currently there are very few paying members in APAC.  The reasons are both economical and cultural.  Ofer volunteered to create a model that is easy to implement and administer.  He will propose the model to the membership committee.
+
|summit_session_deliverable_name2 = Regional Membership – Currently there are very few paying members in APAC.  The reasons are both economical and cultural.  Ofer volunteered to create a model that is easy to implement and administer.  He will propose the model to the membership committee.
  
|summit_session_deliverable_name3 = Membership Perks/Discounted Training The goal is to increase membership in APAC area.  Due to cultural difference, we need to show people what’s in the membership for themFor example, we can provide paid members free or discounted in-person training during or outside of conferences.
+
|summit_session_deliverable_name3 = Conferences in APAC Annual conferences in China as well as additional conferences in other APAC area.  Conference organizers should summit their schedule to Global Conference Committee as early as possible, preferably one year in advance.  This will help GCC allocating funds and recommending vendor sponsors to support the conference.  Offer CPE or participation certificate.  This will not only provide conference/workshop participants something to show, it will also create awareness among his colleagues and employersPlease note the certificate will be similar to CPE credits, Continual Professional Education, and will not be a general OWASP certificate.
  
|summit_session_deliverable_name4 = Online itinerary, tripit.com - The goal is attract members by improving communication and corporation among chapters.  This will be especially beneficial to chapters outside of US and Europe.  Cecil will use tripit or another method for entering itinerariesLocal chapters can invite the traveler to their meeting, training or just for a drink.   Things to consider:  Is privacy a concern?  Does OWASP already use something like tripit?
+
|summit_session_deliverable_name4 = Membership Perks/Discounted Training – We need to show people more in APAC what’s in the membership for themProposed to provide paid members free or discounted in-person training during or outside of conferences.
  
Conferences in APAC – We proposed to have annual conferences in China as well as additional conferences in other APAC area. Hosting a conference posts significant financial challenges especially in APAC.  It’s difficult for individual conference or workshop to obtain sponsorship.  It’s more difficult to charge admission fee and solicit corporate sponsorship in countries where APAC is not well known.  There are cultural obstacles as well.  Conference organizers should summit their schedule to Global Conference Committee as early as possible, preferably one year in advance. This will help GCC allocating funds and recommending vendor sponsors to support the conference.  OWASP conference calendar
+
|summit_session_deliverable_name5 = Online itinerary, tripit.com - The goal is attract members by improving communication and corporation among chapters.   This will be especially beneficial to chapters outside of US and EuropeCecil will use tripit or another method for entering itinerariesLocal chapters can invite the traveler to their meeting, training or just for a drink.  
Conference cost cutting ideas:
 
1. Use a local university as a free venue.  This not only saves money, but also increases awareness among students and professorsUniversities also provide extra credibility in APAC area.
 
2. Offer CPE or participation certificateThis will not only provide conference/workshop participants something to show, it will also create awareness among his colleagues and employers.  Please note the certificate will be similar to CPE credits, Continual Professional Education, and will not be a general OWASP certificate.
 
 
 
|summit_session_deliverable_name5 =
 
  
 
|summit_session_deliverable_name6 =  
 
|summit_session_deliverable_name6 =  

Latest revision as of 07:18, 25 February 2011

Global Summit 2011 Home Page
Global Summit 2011 Tracks

WS. global commitee.jpg OWASP Asia/Pacific working group
Please see/use the 'discussion' page for more details about this Working Session
Working Sessions Operational Rules - Please see here the general frame of rules.
WORKING SESSION IDENTIFICATION
Short Work Session Description Realize the potential of OWASP in Asia Pacific Area
Related Projects (if any)


Email Contacts & Roles Chair


Operational Manager
Mailing list
Helen Gao (temporary) heleng@proginet.com
WORKING SESSION SPECIFICS
Objectives

Venue/Date&Time/Model Venue/Room
OWASP Global Summit Portugal 2011
Date & Time


Discussion Model
participants and attendees

WORKING SESSION OPERATIONAL RESOURCES

WORKING SESSION ADDITIONAL DETAILS
WORKING SESSION OUTCOMES / DELIVERABLES
Proposed by Working Group Approved by OWASP Board

Create an APAC mailing list

After the Board Meeting - fill in here.

Regional Membership – Currently there are very few paying members in APAC. The reasons are both economical and cultural. Ofer volunteered to create a model that is easy to implement and administer. He will propose the model to the membership committee.

After the Board Meeting - fill in here.

Conferences in APAC – Annual conferences in China as well as additional conferences in other APAC area. Conference organizers should summit their schedule to Global Conference Committee as early as possible, preferably one year in advance. This will help GCC allocating funds and recommending vendor sponsors to support the conference. Offer CPE or participation certificate. This will not only provide conference/workshop participants something to show, it will also create awareness among his colleagues and employers. Please note the certificate will be similar to CPE credits, Continual Professional Education, and will not be a general OWASP certificate.

After the Board Meeting - fill in here.

Membership Perks/Discounted Training – We need to show people more in APAC what’s in the membership for them. Proposed to provide paid members free or discounted in-person training during or outside of conferences.

After the Board Meeting - fill in here.

Online itinerary, tripit.com - The goal is attract members by improving communication and corporation among chapters. This will be especially beneficial to chapters outside of US and Europe. Cecil will use tripit or another method for entering itineraries. Local chapters can invite the traveler to their meeting, training or just for a drink.

After the Board Meeting - fill in here.

After the Board Meeting - fill in here.

After the Board Meeting - fill in here.

After the Board Meeting - fill in here.

Working Session Participants

(Add you name by clicking "edit" on the tab on the upper left side of this page)

WORKING SESSION PARTICIPANTS
Name Company Notes & reason for participating, issues to be discussed/addressed
Helen Gao (chair) email @
China
Cultural social and political differences. Individual and corporate membership amount depends on the region. AppSec China 2011. Conference and training in other APAC regions. University out-reach.
Anthony Lai
OWASP Hong Kong
In Asia Pacific region, I would like to suggest the following ideas:

- APAC conference calendar

- Line up with APAC university and putting Top10 to their syllabus/or is it possible to carry out workshops at those universities? I have tried to carry out workshop by partnering an Associate Professor for postgraduate students (http://www2.comp.polyu.edu.hk/~comp444/syllabus.html)

- Possible research specific in APAC

  • Common issues and vulnerabilities found in APAC
  • APAC group discussion/mailing list

- Funding from HQ

  • It is hard for individual chapter to have funds from companies, let's see whether HQ could support some chapter for event and workshop promotion.

I also wanna to suggest to a project (not just limited to APAC) to have a database by asking public to report any possible vulnerabilities from public on any web portals. The database access is limit to access internally and wanna to figure out any ways to credit to the reporter and feed it back to the target. Of course, the reported cases could be used as kinds of research and statistical study on the vulnerability found.

Mohd Fazli Azran
Malaysia

Cecil Su
Singapore

Steven Cheng
Taiwan

Gandhi
India

Zaki Akhmad
Indonesia
I do interest how Ofer membership model propose. Could someone explain in details here?
Onn-chee Wong
Singapore
OWASP HQ should allocate some funds to support OWASP AppSec Asia conference.

2) Given the English competency here in Asia, OWASP Asia chapters should actively take charge of the translation to the local languages. Perhaps the chapter leads in Asia should be responsible for the translation, though they need not do the translation personally.

3) A OWASP Asia mailing list will be good.

Kate Hartmann
OWASP Foundation

Mark Bristow
Global Conference Committee