|
|
Line 25: |
Line 25: |
| <center>[https://www.regonline.com/owaspnzday2012 Register here!] - https://www.regonline.com/owaspnzday2012</center> | | <center>[https://www.regonline.com/owaspnzday2012 Register here!] - https://www.regonline.com/owaspnzday2012</center> |
| | | |
| + | = Conference Schedule = |
| ==Conference Schedule== | | ==Conference Schedule== |
| <center> | | <center> |
| + | 31st August 2012 |
| <table width="80%"> | | <table width="80%"> |
| <tr> | | <tr> |
Line 339: |
Line 341: |
| Those who are interested in sponsoring OWASP New Zealand 2012 Conference can contact the [mailto:nick.freeman@owasp.org?cc=adrian.hayes@owasp.org OWASP New Zealand Board].<br> | | Those who are interested in sponsoring OWASP New Zealand 2012 Conference can contact the [mailto:nick.freeman@owasp.org?cc=adrian.hayes@owasp.org OWASP New Zealand Board].<br> |
| | | |
− |
| |
− | = Call For Papers [CLOSED] =
| |
− | ==Call for Papers [CLOSED]==
| |
− |
| |
− |
| |
− | The Call For Papers is now closed.
| |
− |
| |
− | OWASP New Zealand Day conferences attract a high quality of speakers from a variety of security discliplines including web developers, system administrators, penetration testers, policy specialists and more. There tends to be a bias towards talks aimed at developers in an effort to provide as much assistance to Kiwi development houses, however this year the conference will consist of three tracks covering both technical and risk management topics. We are looking for presentations on a wide variety of web application security topics, including but not limited to:
| |
− |
| |
− | * OWASP Project Presentation (i.e Tool Updates/Project Status etc)
| |
− | * Threat modelling of web applications
| |
− | * Privacy Concerns with Applications and Data Storage
| |
− | * Vulnerability analysis of web applications (code review, pentest, static analysis, scanning)
| |
− | * Baseline or Metrics for Application Security
| |
− | * Countermeasures for web application vulnerabilities - secure coding practices
| |
− | * Web application security
| |
− | * Platform or language (e.g. Java, .NET) security features that help secure web applications
| |
− | * Secure application development
| |
− | * How to use databases securely in web applications
| |
− | * Security of Service Oriented Architectures
| |
− | * Access control in web applications
| |
− | * Web services security
| |
− | * Browser security
| |
− | * PCI
| |
− | * Risk management
| |
− | * Security concepts for C*Os, project managers and other non-technical attendees
| |
− |
| |
− | The timeline for submissions is as follows:
| |
− |
| |
− | 22nd Jul 2012: The official closing date for receiving a synopsis of the presentation.
| |
− | 31st Jul 2012: Announcements on selected candidates will be provided.
| |
− | 20th Aug 2012: Complete presentations will need to be submitted.
| |
− |
| |
− | The email subject must be "OWASP New Zealand 2012: CFP" and the email body must contains the following information/sections:
| |
− |
| |
− | * Name and Surname
| |
− | * Affiliation
| |
− | * Address
| |
− | * Telephone number
| |
− | * Email address
| |
− | * List of the author's previous papers/articles/speeches on the same topic
| |
− | * Title of the contribution
| |
− | * Type of contribution: Technical or Informative
| |
− | * Abstract (up to 500 words)
| |
− | * Why the contribution is relevant for OWASP New Zealand 2012
| |
− | * If you are not from New Zealand, will your company support your travel/accomodation costs - Yes/No
| |
− |
| |
− | The submission will be reviewed by the OWASP New Zealand Day CFP Review Board and the highest voted talks will be selected and invited for presentation.
| |
− |
| |
− | PLEASE NOTE:
| |
− | * Due to limited budget available, expenses for international speakers cannot be covered.
| |
− | * If your company is willing to cover travel and accomodation costs, the company will become "Support Sponsor" of the event.
| |
− |
| |
− | Please submit your presentation topics and an abstract of up to 500 words to Nick Freeman and Adrian Hayes - nick.freeman@owasp.org & adrian.hayes@owasp.org
| |
− |
| |
− |
| |
− | = Call For Trainers [CLOSED] =
| |
− | ==Call For Trainers [CLOSED]==
| |
− |
| |
− | The Call for Trainers is now closed.
| |
− | We are happy to announce that training will run on Thursday August 30th 2012, the day before the OWASP Day conference. The training venues will be auditoriums kindly provided by the University of Auckland, in the same building as the OWASP Day conference itself. Classes will contain up to 20 students, and each seat has a power point for laptop usage.
| |
− |
| |
− | We have secured two auditoriums for the whole day, allowing for 2-4 sessions depending on their duration. Half-day or full-day courses will be considered.
| |
− |
| |
− | Examples of training topics:
| |
− |
| |
− | + Securing web services<br>
| |
− | + Introduction to the OWASP Top 10<br>
| |
− | + Hardening web servers<br>
| |
− | + Mobile app security<br>
| |
− |
| |
− |
| |
− | If you are interested in running one of the training sessions, please contact myself or Adrian Hayes with the following information:
| |
− |
| |
− | - Trainer name<br>
| |
− | - Trainer organisation<br>
| |
− | - Telephone + email contact<br>
| |
− | - Training title<br>
| |
− | - Trainer requirements (e.g. a projector)<br>
| |
− | - Trainee requirements (e.g. laptop, VMWare/Virtualbox etc)<br>
| |
− | - Training summary (less than 500 words)<br>
| |
− | - Target audience (e.g. testers, project managers, security managers, web developers)<br>
| |
− | - Skill level required (Basic / Intermediate / Advanced)<br>
| |
− | - A few sentences about why you think this training is important to web application security<br>
| |
− | - What attendees can expect to learn (key objectives)<br>
| |
− | - Short Trainer bio<br>
| |
− | - List of published papers/presentations<br>
| |
− | - Course outline E.g.:<br><br>
| |
− | 1. Topic 1<br>
| |
− | > Sub Topic 1.a<br>
| |
− | > Sub Topic 1.b<br>
| |
− | > Exercise 1<br>
| |
− | 2. Topic 2<br>
| |
− | 3. Topic 3<br>
| |
− | > Sub Topic 3.a<br>
| |
− | > Demo<br>
| |
− | > Sub Topic 3.b<br>
| |
− |
| |
− |
| |
− |
| |
− | The fixed price per head for training will be $250 for a half-day session and $500 for a whole-day session. As this training is part of an OWASP event, part of the proceeds go back to OWASP. The split is as follows:<br>
| |
− | - 25% to OWASP Global - used for OWASP projects around the world<br>
| |
− | - 25% to OWASP NZ Day - used for expenses such as catering during the conference<br>
| |
− | - 50% to the training provider.<br>
| |
− |
| |
− |
| |
− | If you have any further queries, or wish to submit a training course, please send the above information to the following email addresses:<br>
| |
− | - nick.freeman@owasp.org<br>
| |
− | - adrian.hayes@owasp.org
| |
− |
| |
− | Accepted training sessions will be announced on July 31st 2012, together with the presentations.
| |
| | | |
| = Conference Dates = | | = Conference Dates = |