This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Los Angeles"

From OWASP
Jump to: navigation, search
(Wednesday, October 21th, 2009 7:30PM)
m
 
(649 intermediate revisions by 11 users not shown)
Line 1: Line 1:
{{Chapter Template|chaptername=Los Angeles|extra=The chapter leader is [mailto:[email protected] Cassio Goldschmidt]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Losangeles|emailarchives=http://lists.owasp.org/pipermail/owasp-losangeles}}
+
= Welcome =
  
<paypal>LosAngeles</paypal>
+
<h2>Welcome to the OWASP Los Angeles Chapter!</h2>
  
== Local News ==
+
[https://www.owasp.org/index.php/WASPY_Awards_2013/ OWASP Los Angeles received the BEST Chapter Leaders award at AppSec USA NY]
 +
<br>
 +
The chapter leadership includes: [mailto:[email protected] Richard Greenberg] -- Chapter Leader and President,  [mailto:[email protected] Cassio Goldschmidt] -- Board Member, [mailto:[email protected] Cody Wood] -- Board Member,  [mailto:[email protected] Stuart Schwartz] -- Board Member, [mailto:[email protected] Tony Trummer] -- Board Member, [mailto:[email protected] Dave Wettenstein] -- Board Member, [mailto:[email protected] Edmond Momartin] -- Board Member
 +
<br>
 +
[[Image:New_OWASP_LA_Logo-08-2014.jpg|700px|New_OWASP_LA_Logo-08-2014.jpg]]
 +
<h2>[http://www.meetup.com/OWASP-Los-Angeles https://www.owasp.org/images/8/82/Meetup_logo3.jpg] [http://www.meetup.com/OWASP-Los-Angeles We are on Meetup. Please join our community here]</h2>
 +
<br>
  
<h2 style="margin:0; background:#cef2e0; font-size:120%; font-weight:bold; border:1px solid #a3bfb1; text-align:left; color:#000; padding:0.2em 0.4em;">Upcoming Chapter Meetings </h2>
+
<h2>Become a Sponsor</h2>
 +
Organizations that wish to support the OWASP Los Angeles Chapter with a 100% tax deductible donation enable the OWASP Foundation to continue its mission
 +
=== See all of our Chapter sponsors here: ===
 +
https://www.meetup.com/OWASP-Los-Angeles/sponsors/
  
 +
''[[File:Button_red_sponsor.png|300px| left | link=https://www.eventbrite.com/e/owasp-los-angeles-chapter-meeting-sponsor-tickets-30572600471]]''
 +
 +
- Meet upwards of 80-120 potential new clients
 +
- Be recognized as a local supporter by posting your company logo on the local chapter page and on our Meetup site
 +
- Have your marketing write-up included in e-mail blasts sent prior to a monthly meeting.
 +
- Have a table at local chapter meeting with lots of time to meet and greet attendees
 +
- Promote your products and services
 +
- Bring a raffle prize to gather business cards and contact information
 +
The cost is only $1,200
 +
 +
Contact us [[#Los Angeles Chapter]] for general questions relating to sponsorship and donations
 +
{{Chapter Template|chaptername=Los Angeles|extra=
 +
|mailinglistsite=https://lists.owasp.org/mailman/listinfo/owasp-losangeles|emailarchives=http://lists.owasp.org/pipermail/owasp-losangeles/}}
 +
 +
= Meetings  =
 +
 +
== '''Upcoming OWASP Meetings'''  ==
 
<br>
 
<br>
    <b>Meeting Location</b>
+
https://www.meetup.com/OWASP-Los-Angeles/
    [http://maps.google.com/maps?q=900+Corporate+Pointe,+90230&ie=UTF8&oe=UTF-8&ll=33.988385,-118.387041&spn=0.010284,0.014055&t=h&z=16&iwloc=addr Symantec Corporation]
+
 
    900 Corporate Pointe
+
== Would you like to speak at an OWASP Los Angeles Meeting? ==  
    Culver City, CA 90230
 
    Laguna Conference Room
 
  
 +
Call for Papers (CFP) is NOW OPEN. To speak at upcoming OWASP Los Angeles meetings please submit your BIO and talk abstract via email to [mailto:[email protected] Cassio Goldschmidt] OR [mailto:[email protected] Stuart Schwartz]. The talk must be vendor neutral and its content be available under Creative Common 3.0 license.
  
 +
== Join Us on Meetup! ==
  
 +
http://www.meetup.com/OWASP-Los-Angeles/
  
 +
== Become an OWASP Member TODAY ==
  
== Wednesday, October 21st, 2009 7:30PM ==
+
=== OWASP Individual Membership Info ===
* <b>Enabling Compliance Requirements using Information Security Management System (ISMS) Framework (ISO27001)</b>
+
 
<br>
+
https://www.owasp.org/index.php/Individual_Member
Growing threats and complex regulatory requirements emphasize the need for an effective Information Security Management System (ISMS) framework for an organization. Comprehensive and globally accepted standards like ISO27001 can help in protecting information assets and in enabling compliance requirements. ISO27001 provides an Information Security framework based on best practices and controls to ensure the confidentiality, integrity and availability of information assets. This presentation analyzes the possible synergies between the goals of Information Security Management System (ISMS) and the various compliance requirements, thus making the compliance efforts less complex.  
+
 
<br>
+
=== OWASP Corporate Membership Info ===
Following are the key objectives of this presentation :
+
 
* Provide an introduction to ISO27001 and its controls
+
https://www.owasp.org/index.php/Corporate_Membership
* Discuss the implementation approach for an Information Security Management System (ISMS) framework
+
 
* Familiarize the audience with some common challenges in implementation
+
== Meeting Archives  ==
* Outline synergy between ISO27001 controls and some compliance requirements( PCI , etc)
+
[[Los Angeles Presentation Archive |Presentation Archive]]
<br>
+
 
Attendees will learn about ISO27001 Information Security Standard, ISMS implementation approach and how ISO27001 can be used in meeting various regulatory/compliance requirements like Sox, PCI etc. It will also help the attendees to improve the information security posture of the organization and provide an effective and efficient approach for handling various information security/compliance audits with less effort.
+
[[Los Angeles/2018 Meetings|2018 Meetings]]
<br><br>
+
 
 +
[[Los Angeles/2017 Meetings|2017 Meetings]]
 +
 
 +
[[Los Angeles/2016 Meetings|2016 Meetings]]
 +
 
 +
[[Los Angeles/2015 Meetings|2015 Meetings]]
 +
 
 +
[[Los Angeles/2014 Meetings|2014 Meetings]]
 +
 
 +
[[Los Angeles/2013 Meetings|2013 Meetings]]
 +
 
 +
[[Los Angeles/2012 Meetings|2012 Meetings]]
 +
 
 +
[[Los Angeles/2011 Meetings|2011 Meetings]]
 +
 
 +
[[Los Angeles/2010 Meetings|2010 Meetings]]
 +
 
 +
[[Los Angeles/2009 Meetings|2009 Meetings]]
 +
 
 +
[[Los Angeles/2008 Meetings|2008 Meetings]]<!--A list of previous presentations conducted at the Los Angeles Chapter can be found [https://www.owasp.org/index.php/Los_Angeles_Previous_Presentations here].-->
 +
 
 +
= OWASP LA Conferences =
 +
 
 +
https://2019.appseccalifornia.org/ Appsec California 2019 Jan 24-25, 2019 / Training Jan 22-23
  
<b>Shankar Subramaniyan</b> has over 11 years of experience as a technology consulting and project management executive in the areas of IT Governance, Risk and Compliance (GRC), Business Continuity Planning and Network Design & Architecture. He has thorough expertise on setting up Information Security Framework and Policies on the basis of industry standards such as ISO 27001. He has worked extensively on industry standards and best practices like BS7799 and ITIL.  He also has good understanding and knowledge of various compliance requirements like PCI, Sox etc. Shankar' s experience includes IT audit, SOX remediation, ISMS (ISO27001) implementation, PCI compliance assessment, disaster recovery solution, enterprise risk management, designing IT security architecture and implementing ITIL processes. Shankar has rich experience in handling large projects and managing client relationships across corporate and educational sectors.
+
https://2018.appseccalifornia.org/ Appsec California 2018 Jan 30-31, 2018 / Training Jan 28-29
<br><br>
 
  
== Wednesday, November 18th, 2009 7:30PM ==
+
https://2017.appseccalifornia.org/ AppSec California 2017 held once again at the amazing Annenberg Community Beach House, right on the beach in Santa Monica, January 23-25, 2017, was a great success!
* <b>TBA with Brian Chess, Fortify Founder and Chief Scientist</b>
 
<br>
 
Please check this page later.
 
<br><br>
 
  
<B>Brian Chess</b> is a founder of Fortify Software and serves as Fortify's Chief Scientist, where his work focuses on practical methods for creating secure systems. His book, Secure Programming with Static Analysis, shows how static source code analysis is an indispensable tool for getting security right. Brian holds a Ph.D. in computer engineering from the University of California at Santa Cruz, where he studied the application of static analysis to the problem of finding security-relevant defects in source code. Before settling on security, Brian spent a decade in Silicon Valley working at huge companies and small startups. He has done research on a broad set of topics, ranging from integrated circuit design all the way to delivering software as a service.
+
Web archive: http://2010.AppSecUSA.org  
<br><br>
 
== Wednesday, December 16th, 2009 7:30PM ==
 
* <b>Pulling the Plug: Security Risks in the Next Generation of Offline Web Applications</b>
 
<br>
 
As the line between desktop and web applications becomes increasingly blurry in a web 2.0 world, browser functionality is being pushed well beyond what it was originally intended for. Persistent client side storage has become a requirement for web applications if they are to be available both online and off. This need is being filled by a variety of technologies such as Gears (formerly Google Gears) and the Database Storage <http://webkit.org/blog/126/webkit-does-html5-client-side-database-storage/>  functionality included in the emerging HTML 5 <http://dev.w3.org/html5/spec/Overview.html>  specification. While all such technologies offer great promise, it is clear that the vast majority of developers simply do not understand their security implications.
 
  
Researching a variety of currently deployed implementations of these technologies has revealed a broad scope of vulnerabilities with frightening implications. Now attackers can target victims not just once, but every time they visit a site as the victim now carries and stores the attack with them. Imagine a scenario whereby updated confidential information is forwarded to an attacker every time a victim interacts with a given web application. The attacker no longer needs to worry about timing their attacks to ensure that the victim is authenticated as the victim attacks himself! Limited storage? Cookies that expire? Not a problem when entire databases are accessible with virtually unlimited storage and an infinite lifespan. Think these attacks are theoretical? Think again. In this talk we dive into these technologies and break down the risk posed by them when not properly understood. We will then detail a variety of real-world vulnerabilities that have been uncovered, including a new class of cross-site scripting and client-side SQL injection.
+
Videos: http://vimeo.com/user4863863/videos<br>  
<br><br>
 
  
<B>Michael Sutton</B>,Vice President and security research at Zscaler, has spent more than a decade in the security industry conducting leading-edge research, building teams of world-class researchers and educating others on a variety of security topics. As VP of Security Research, Michael heads Zscaler Labs, the research and development arm of the company. Zscaler Labs is responsible for researching emerging topics in web security and developing innovative security controls, which leverage the Zscaler in-the-cloud model. The team is comprised of researchers with a wealth of experience in the security industry.   
+
[[File:AppSec Cali 2019 Logo.jpg|362x362px]]
  
Prior to joining Zscaler, Michael was the Security Evangelist for SPI Dynamics where, as an industry expert, he was responsible for researching, publishing and presenting on various security issues. In 2007, SPI Dynamics was acquired by Hewlett-Packard. Previously, Michael was a Research Director at iDefense where he led iDefense Labs, a team responsible for discovering and researching security vulnerabilities in a variety of technologies. iDefense was acquired by VeriSign in 2005. Michael is a frequent speaker at major information security conferences; he is regularly quoted by the media on various information security topics, has authored numerous articles and is the co-author of Fuzzing: Brute Force Vulnerability Discovery, an Addison-Wesley publication.
+
= Chapter Sponsors =
  
= Would you like to speak at an OWASP Los Angeles Meeting? =
 
Call for Papers (CFP) is NOW OPEN ~ to submit educational topic for upcoming meeting please submit your BIO and talk abstract via email to [mailto:[email protected] Cassio Goldschmidt].  When accepted it will be required to use the following powerpoint [http://www.owasp.org/images/5/54/Presentation_template.ppt OWASP Template]
 
  
<br>
 
  
[https://www.owasp.org/index.php/Los_Angeles_Previous_Presentations This page] provides a [https://www.owasp.org/index.php/Los_Angeles_Previous_Presentations list of previous presentations] conducted at the Los Angeles Chapter.
+
= Chapter Leaders =
<br>
 
  
<br>
+
*[mailto:[email protected] Richard Greenberg] -- Chapter Leader and President 
 +
*[mailto:[email protected] Cassio Goldschmidt] -- Board Member
 +
*[mailto:[email protected] Cody Wood] -- Board Member
 +
*[mailto:[email protected] Stuart Schwartz] -- Board Member
 +
*[mailto:[email protected] Tony Trummer] -- Board Member
 +
*[mailto:[email protected] Dave Wettenstein] -- Board Member
 +
*[mailto:[email protected] Edmond Momartin] -- Board Member 
  
=Los Angeles Chapter Leader=
+
OWASP Wiki: [mailto:president.la@owasp.org Chapter President] <br>
*[mailto:cassio@owasp.org Cassio Goldschmidt]
+
The Los Angeles chapter was founded by Cassio Goldschmidt.
  
 +
[[Category:OWASP Chapter]]
 +
[[Category:United States]]
 
[[Category:California]]
 
[[Category:California]]
 +
__NOTOC__ <headertabs></headertabs>

Latest revision as of 06:49, 14 January 2019

Welcome to the OWASP Los Angeles Chapter!

OWASP Los Angeles received the BEST Chapter Leaders award at AppSec USA NY
The chapter leadership includes: Richard Greenberg -- Chapter Leader and President, Cassio Goldschmidt -- Board Member, Cody Wood -- Board Member, Stuart Schwartz -- Board Member, Tony Trummer -- Board Member, Dave Wettenstein -- Board Member, Edmond Momartin -- Board Member
New_OWASP_LA_Logo-08-2014.jpg

Meetup_logo3.jpg We are on Meetup. Please join our community here


Become a Sponsor

Organizations that wish to support the OWASP Los Angeles Chapter with a 100% tax deductible donation enable the OWASP Foundation to continue its mission

See all of our Chapter sponsors here:

https://www.meetup.com/OWASP-Los-Angeles/sponsors/

Button red sponsor.png
- Meet upwards of 80-120 potential new clients
- Be recognized as a local supporter by posting your company logo on the local chapter page and on our Meetup site
- Have your marketing write-up included in e-mail blasts sent prior to a monthly meeting.
- Have a table at local chapter meeting with lots of time to meet and greet attendees
- Promote your products and services
- Bring a raffle prize to gather business cards and contact information

The cost is only $1,200

Contact us #Los Angeles Chapter for general questions relating to sponsorship and donations

OWASP Los Angeles

Welcome to the Los Angeles chapter homepage.


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Upcoming OWASP Meetings


https://www.meetup.com/OWASP-Los-Angeles/

Would you like to speak at an OWASP Los Angeles Meeting?

Call for Papers (CFP) is NOW OPEN. To speak at upcoming OWASP Los Angeles meetings please submit your BIO and talk abstract via email to Cassio Goldschmidt OR Stuart Schwartz. The talk must be vendor neutral and its content be available under Creative Common 3.0 license.

Join Us on Meetup!

http://www.meetup.com/OWASP-Los-Angeles/

Become an OWASP Member TODAY

OWASP Individual Membership Info

https://www.owasp.org/index.php/Individual_Member

OWASP Corporate Membership Info

https://www.owasp.org/index.php/Corporate_Membership

Meeting Archives

Presentation Archive

2018 Meetings

2017 Meetings

2016 Meetings

2015 Meetings

2014 Meetings

2013 Meetings

2012 Meetings

2011 Meetings

2010 Meetings

2009 Meetings

2008 Meetings

https://2019.appseccalifornia.org/ Appsec California 2019 Jan 24-25, 2019 / Training Jan 22-23

https://2018.appseccalifornia.org/ Appsec California 2018 Jan 30-31, 2018 / Training Jan 28-29

https://2017.appseccalifornia.org/ AppSec California 2017 held once again at the amazing Annenberg Community Beach House, right on the beach in Santa Monica, January 23-25, 2017, was a great success!

Web archive: http://2010.AppSecUSA.org

Videos: http://vimeo.com/user4863863/videos

AppSec Cali 2019 Logo.jpg

OWASP Wiki: Chapter President
The Los Angeles chapter was founded by Cassio Goldschmidt.