This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Pilot Cambridge WebAppSec Mini Conference 2012"

From OWASP
Jump to: navigation, search
m (Adding Content)
(Crude Cut and Paste (still needs a very fien edit!))
Line 1: Line 1:
 
The Department of Computing & Technology, Anglia Ruskin University and OWASP (Open Web Application Security Project) would like to invite you to attend a free mini conference on Web Application Security in Cambridge on Tuesday 28th February 2012 4 – 8pm,  entitled  
 
The Department of Computing & Technology, Anglia Ruskin University and OWASP (Open Web Application Security Project) would like to invite you to attend a free mini conference on Web Application Security in Cambridge on Tuesday 28th February 2012 4 – 8pm,  entitled  
  
“Building in Security for Application Development”
+
<div id="p0004">
 +
<h4>Web Application Security Conference</h4>
 +
 +
</div>
  
  
== Agenda ==
+
<script type="text/javascript" src="/medianew/js/slimbox/slimbox2.js">
 +
</script>
  
*Adian
+
<link href="/cssnew/slimbox/slimbox2.css" rel="stylesheet" type="text/css" media="screen" />
*Colin
+
 
*Fabio
+
*Denniss
+
<div id="p0007">
 +
 
 +
<div class="tiImageRight-border-background" style="width:208px;">
 +
 +
<img title="Picture of a Computer" border="0" src="/ruskin/en/home/faculties/fst/departments/comptech/events.Maincontent.0007.ImageGal..208.Image.~etc~medialib~fst_2009~main_2012[[User:Adrian Winckles|Adrian Winckles]]Par~~0011~~Image.gif" alt="Picture of a Computer" />
 +
 +
</div>
 +
</div>
 +
<div id="p0001">
 +
<strong>Building in Security for Application Development</strong><br /> <br /><strong>Tuesday 28 February 2012</strong><br /><br /><strong>Hosted by the Department of Computing &amp; Technology, Anglia Ruskin University and OWASP (Open Web Application Security Project)</strong><br /><br /><h5>Guest speakers: </h5><br /><strong>Dennis Groves:</strong>  Dennis is the co-founder of OWASP. He is a well known thought leader in application security who's work focuses on multidisciplinary approaches to information security risk management. He holds an MSc in Information Security from the University of Royal Holloway. He is currently an expert for the UK mirror of ISO subcommittee 27, WG4.<br /><br /><strong>Fabio Cerullo: </strong> Fabio is currently working as an Information Security Specialist at AIB Bank (Dublin, Ireland). His tasks include performing risk analysis, assessing the security of web applications developed internally or purchased from third parties, define policies and standards on secure coding, as well as providing training on web application security to developers, auditors, executives and security professionals.  As a member of the OWASP organization, Fabio is part of Global Education Committee whose mission is to provide training and educational services to businesses, governments and educational institutions on application security, he also coordinates international conferences around this topic, and since early 2010 has been appointed chairman of OWASP Chapter in Ireland. He has been granted the CISSP certificate by (ISC) 2 back in 2006. <br /><br /><strong>Colin Watson:</strong> Colin is the Technical Director for Watson Hall Ltd, an application security consultancy providing services such as application defence, web application risk management, secure software development lifecycle, online and web project security &amp; privacy policies,  He writes a less-technical blog aimed at website designers, developers and owners called Web Security, Usability and Design and tweet occasionally as Clerkendweller.  Colin also serves as a Global Industry Committee Member for the OWASP Foundation.<br />
 +
</div>
 +
 
 +
<div style="clear: both;">&nbsp;</div> <div id="p0002">
 +
Tackling today's security challenges now far exceeds the "we've got a firewall connected to the Internet so we're covered" fallacy.  Increasingly the most critical areas of vulnerability and weakness have become the web application server and client.  Protecting corporate and personal data has never been more crucial with the increasing trend towards mandatory public disclosure of 'lost' data and the ever increasing loss of reputation, regulatory penalties and litigation from victims.<br /><br />Developing secure code is the most effective method of securing an organisations  web applications which results in a more stable and robust application and assists in protecting an organisations brand.  However the ability to develop this code takes additional skill and know-how which traditionally has not commonly formed part of many computer science curricula and most organizations have not focused on instituting a culture that includes application security as a core part of their software development training<br /><br />OWASP (Open Web Application Security Project is a 501(c)(3) not-for-profit worldwide charitable organization focused on improving the security of application software. Their mission is to make application security visible, so that people and organizations can make informed decisions about true application security risks.  A selection of OWASP's latest project and methodologies are being presented during the sessions.<br /><br />The Department of Computing &amp; Technology at Anglia Ruskin University is enhancing its curricula and capabilities in information security following its successful BSc(Hons) Information Security and Forensic Computing pathway.  Establishing a joint professional networking group with OWASP concentrating on aspects of computing and application security is a key part of this enhancement.  A key aim the department is working towards is developing a MSc Information Security specialising in Application Security and as part of this activity looking to develop and a local Information Security Student Society.<br />
 +
</div>
 +
 
 +
<div id="p0003" class="featureText">
 +
<h4>Agenda</h4>
 +
<span class="specialUL">
 +
<ul>
 +
 
 +
<li>4.30pm - 5.00pm Welcome and introductions, Adrian Winckles, Senior Lecturer, Information Security &amp; Forensic Computing.</li>
 +
<li>5.00pm - 5.30pm Dennis Groves, Introduction to OWASP and Application Security 02 Project Framework</li>
 +
<li>5.30pm - 6.30pm Fabio Cerullo, Open Software Assurance Maturity Model and Enterprise Security API</li>
 +
<li>6.30pm - 7.00pm Colin Watson, AppSensor Project - Intrusion Detection</li>
 +
<li>7.00pm - 8.00pm Informal drinks and networking </li>
 +
</ul>
 +
</span>
 +
</div>
 +
 
 +
<div id="p0008">
 +
 
 +
<div class="tiImageRight-border-background" style="width:208px;">
 +
 +
<img title="Image of a Computer" border="0" src="/ruskin/en/home/faculties/fst/departments/comptech/events.Maincontent.0008.ImageGal..208.Image.~etc~medialib~fst_2009~main[[User:Adrian Winckles|Adrian Winckles]]Par~~0039~~Image.gif" alt="Image of a Computer" />
 +
 +
</div>
 +
</div>
 +
<div id="p0009">
 +
<h4>Registration</h4>
 +
<a href="http://www.surveymonkey.com/s/QL3NYH3" target="_blank"  title="Registration Page - opens in new browser window">Register for this event online</a>.<br />
 +
</div>
 +
 
 +
<div id="p0006">
 +
<h4>Loation</h4>
 +
The conference will be held in the Lord Ashcroft Building, Room 002 (Breakout Room 006 for networking &amp; refreshments).<br /><br />Please enter through the Helmore Building and ask at reception.<br /><br />Anglia Ruskin University<br />Cambridge Campus<br />East Road<br />Cambridge<br />Cambs<br />CB1 1PT<br /><br /><br /><strong>Get further information on </strong><a href="/ruskin/en/home/your_university/anglia_ruskin_campuses/cambridge_campus/find_cambridge.html" title="Travelling to the Cambridge Campus">travelling to the university. </a>
 +
</div>
 +
 
 +
 
 +
 
 +
</div>

Revision as of 13:55, 9 February 2012

The Department of Computing & Technology, Anglia Ruskin University and OWASP (Open Web Application Security Project) would like to invite you to attend a free mini conference on Web Application Security in Cambridge on Tuesday 28th February 2012 4 – 8pm, entitled


<script type="text/javascript" src="/medianew/js/slimbox/slimbox2.js"> </script>

<link href="/cssnew/slimbox/slimbox2.css" rel="stylesheet" type="text/css" media="screen" />


<img title="Picture of a Computer" border="0" src="/ruskin/en/home/faculties/fst/departments/comptech/events.Maincontent.0007.ImageGal..208.Image.~etc~medialib~fst_2009~main_2012Adrian WincklesPar~~0011~~Image.gif" alt="Picture of a Computer" />

Building in Security for Application Development

Tuesday 28 February 2012

Hosted by the Department of Computing & Technology, Anglia Ruskin University and OWASP (Open Web Application Security Project)

Guest speakers:

Dennis Groves: Dennis is the co-founder of OWASP. He is a well known thought leader in application security who's work focuses on multidisciplinary approaches to information security risk management. He holds an MSc in Information Security from the University of Royal Holloway. He is currently an expert for the UK mirror of ISO subcommittee 27, WG4.

Fabio Cerullo: Fabio is currently working as an Information Security Specialist at AIB Bank (Dublin, Ireland). His tasks include performing risk analysis, assessing the security of web applications developed internally or purchased from third parties, define policies and standards on secure coding, as well as providing training on web application security to developers, auditors, executives and security professionals. As a member of the OWASP organization, Fabio is part of Global Education Committee whose mission is to provide training and educational services to businesses, governments and educational institutions on application security, he also coordinates international conferences around this topic, and since early 2010 has been appointed chairman of OWASP Chapter in Ireland. He has been granted the CISSP certificate by (ISC) 2 back in 2006.

Colin Watson: Colin is the Technical Director for Watson Hall Ltd, an application security consultancy providing services such as application defence, web application risk management, secure software development lifecycle, online and web project security & privacy policies, He writes a less-technical blog aimed at website designers, developers and owners called Web Security, Usability and Design and tweet occasionally as Clerkendweller. Colin also serves as a Global Industry Committee Member for the OWASP Foundation.
 

Tackling today's security challenges now far exceeds the "we've got a firewall connected to the Internet so we're covered" fallacy. Increasingly the most critical areas of vulnerability and weakness have become the web application server and client. Protecting corporate and personal data has never been more crucial with the increasing trend towards mandatory public disclosure of 'lost' data and the ever increasing loss of reputation, regulatory penalties and litigation from victims.

Developing secure code is the most effective method of securing an organisations web applications which results in a more stable and robust application and assists in protecting an organisations brand. However the ability to develop this code takes additional skill and know-how which traditionally has not commonly formed part of many computer science curricula and most organizations have not focused on instituting a culture that includes application security as a core part of their software development training

OWASP (Open Web Application Security Project is a 501(c)(3) not-for-profit worldwide charitable organization focused on improving the security of application software. Their mission is to make application security visible, so that people and organizations can make informed decisions about true application security risks. A selection of OWASP's latest project and methodologies are being presented during the sessions.

The Department of Computing & Technology at Anglia Ruskin University is enhancing its curricula and capabilities in information security following its successful BSc(Hons) Information Security and Forensic Computing pathway. Establishing a joint professional networking group with OWASP concentrating on aspects of computing and application security is a key part of this enhancement. A key aim the department is working towards is developing a MSc Information Security specialising in Application Security and as part of this activity looking to develop and a local Information Security Student Society.

Agenda

  • 4.30pm - 5.00pm Welcome and introductions, Adrian Winckles, Senior Lecturer, Information Security & Forensic Computing.
  • 5.00pm - 5.30pm Dennis Groves, Introduction to OWASP and Application Security 02 Project Framework
  • 5.30pm - 6.30pm Fabio Cerullo, Open Software Assurance Maturity Model and Enterprise Security API
  • 6.30pm - 7.00pm Colin Watson, AppSensor Project - Intrusion Detection
  • 7.00pm - 8.00pm Informal drinks and networking

<img title="Image of a Computer" border="0" src="/ruskin/en/home/faculties/fst/departments/comptech/events.Maincontent.0008.ImageGal..208.Image.~etc~medialib~fst_2009~mainAdrian WincklesPar~~0039~~Image.gif" alt="Image of a Computer" />

Registration

<a href="http://www.surveymonkey.com/s/QL3NYH3" target="_blank" title="Registration Page - opens in new browser window">Register for this event online</a>.

Loation

The conference will be held in the Lord Ashcroft Building, Room 002 (Breakout Room 006 for networking & refreshments).

Please enter through the Helmore Building and ask at reception.

Anglia Ruskin University
Cambridge Campus
East Road
Cambridge
Cambs
CB1 1PT


Get further information on <a href="/ruskin/en/home/your_university/anglia_ruskin_campuses/cambridge_campus/find_cambridge.html" title="Travelling to the Cambridge Campus">travelling to the university. </a>


</div>