This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "GPC/Meetings/2012-14-12"

From OWASP
Jump to: navigation, search
(Created page with "__TOC__ = Project Division Updates = *'''Project Numbers''' **Active Projects: 117 ( Need to define "Active Project" criteria) **Archived Projects: 41 ==Currently Working O...")
 
Line 2: Line 2:
 
= Project Division Updates =
 
= Project Division Updates =
  
*'''Project Numbers'''
+
*'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0AllOCxlYdf1AdFdaYXJ6SDFXNXBaemNwbnNHN3N5RVE#gid=16 Project Numbers]'''
**Active Projects: 117 ( Need to define "Active Project" criteria)
+
**Active Projects: 119
**Archived Projects: 41
+
**Inactive Projects: 67
 +
 
 +
*'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE#gid=0 Pending Project Applications]'''
 +
**CISO Survey
 +
**Application Security Guide For CISOs
 +
**Medical Warehouse
  
 
==Currently Working On==   
 
==Currently Working On==   
  
 
*'''SourceForge Update'''
 
*'''SourceForge Update'''
**Audrey from Geeknet has responded to me.
+
**I have reached out to Audrey, our Geeknet representative, and asked if she has received payment from us.  
**The Geeknet team has decided not to accept any of our options, see below:
+
**I have also asked her to confirm if our account is in fact closed.  
**Option 1: OWASP would like to propose that Geeknet waive either all or a percentage of the invoice fee, and redistribute the funds as a donation to the OWASP Foundation.
+
**I am still waiting to hear back from her.
**Option 2: OWASP would like to propose a 1 year corporate membership, and a 6 month online rotating banner advertisement in exchange for $10,000 being deduction from the Invoice in question. Total value: $17,500 in OWASP Services.
 
**However, they did deduct $2500 from the original invoice: [https://mail-attachment.googleusercontent.com/attachment/u/0/?ui=2&ik=715b9008a7&view=att&th=13b624ca0e11b42e&attid=0.1&disp=inline&realattid=f_haa0cl6l0&safe=1&zw&saduie=AG9B_P8vApHtvIv6pHWL4NMT_NLk&sadet=1354903098927&sads=76Uv12K1F9dzP-Sn5_RIxBnhYOo Update Geeknet Invoice.]
 
**We have agreed to take this deduction, and are currently processing their payment.
 
  
 
*'''OWASP Licenses Update'''
 
*'''OWASP Licenses Update'''
**I drafted the e-mail Justin asked me to put together regarding the three projects with non open source licenses.
+
**This is the final draft of the letter: [https://docs.google.com/a/owasp.org/document/d/1n3xEFUfUqd2qJ2udRn3itKtDMBnOYA9dvsIGAnFIEZM/edit Letter.]
**I have sent it to all GPC members.
+
**I have sent this to the projects with licensing issues.
**I have made the changes as well: [https://docs.google.com/a/owasp.org/document/d/1n3xEFUfUqd2qJ2udRn3itKtDMBnOYA9dvsIGAnFIEZM/edit Letter.]
+
**I am still waiting to hear back from all of them.
**Lets discuss how we want to handle this.  
 
  
 
*'''AppSec APAC 2013: Planning'''
 
*'''AppSec APAC 2013: Planning'''
**OSS & OPT forms are up.
+
**We have not received any applications for participation in the AppSec APAC OSS.
**Developed banners for each event: [https://www.owasp.org/index.php/Category:OWASP_Project Projects Page].  
+
**Sarah and I discussed the possibility of doing away with this particular event module, and focus on getting speakers for the OWASP Track instead. I agreed.  
**Using the banners in a communications piece that will launch next week. LinkedIn, Blog, Twitter.
+
**We decided to wait until Wednesday of next week to take the banners down to give a bit more time for those interested to apply.
**I am attending the conference to help coordinate the event, and I am leading the Chapter Leader Workshop with the help of a translator.  
+
**We asked the local team which projects they were interested in having at their conference.
 +
**They gave us a list, and we are in the process of getting those project representatives to apply for the OWASP Track. 
 +
 
 +
*'''Project Support Volunteer Role Development'''
 +
**Roles have now been allocated for each volunteer that has continued interest in working with OWASP.
 +
**I will have a meeting with the successful candidates regarding their project support duties come next week.
 +
**I will send more information to the other volunteers about the different ways they can support the Guidebook projects during their development come next year.
  
*'''Salesforce Data Migration'''
+
*'''New Project Web Page'''
**Salesforce migration is now complete.
+
**The new web page development is almost complete.
**All project data is up-to-date based on the GPCs project inventory spreadsheet.  
+
**The only information missing is the Assessment Criteria and Project Terminology.
 +
**Please see below for my proposal on the Assessment Criteria.
  
*'''Project Support Volunteer Role Development'''
+
*'''Assessment Criteria, Lifecycle, and Graduation Processes'''
**This role was developed to help the 3 Guidebook projects with project support duties.
+
**The new web page development is almost complete.
**We received 14 applicants in total.
+
**The only information missing is the Assessment Criteria and Project Terminology.
**The application is now closed
+
**Please see below for my proposal on the Assessment Criteria.
**Roles will be allocated next week.  
 
  
 
*'''Daily Project based queries and requests'''
 
*'''Daily Project based queries and requests'''
Line 50: Line 57:
  
 
==More Funding Potential==
 
==More Funding Potential==
#Guidebooks Grant Payment: Deb has delivered the correct form, and we are in the process of putting it together for her.
+
#Guidebooks Grant Payment: We have submitted the forms, and are waiting to hear back from Deb.  
#ESAPI Grant Proposal: Still waiting to hear back from Deb.  
+
#ESAPI Grant Proposal: The proposal has passed the first round of reviews. It is now at the peer review stage with 6 other applications.
#Google Grants Application is complete and Submitted.
 
#We are set to hear back from the Google Grants team by the beginning of 2013.  
 
 
#We have now begun the process of grant writing for the ModSecurity Project.  
 
#We have now begun the process of grant writing for the ModSecurity Project.  
 
#Ryan and I are still developing the project plan.  
 
#Ryan and I are still developing the project plan.  

Revision as of 12:32, 14 December 2012

Project Division Updates

Currently Working On

  • SourceForge Update
    • I have reached out to Audrey, our Geeknet representative, and asked if she has received payment from us.
    • I have also asked her to confirm if our account is in fact closed.
    • I am still waiting to hear back from her.
  • OWASP Licenses Update
    • This is the final draft of the letter: Letter.
    • I have sent this to the projects with licensing issues.
    • I am still waiting to hear back from all of them.
  • AppSec APAC 2013: Planning
    • We have not received any applications for participation in the AppSec APAC OSS.
    • Sarah and I discussed the possibility of doing away with this particular event module, and focus on getting speakers for the OWASP Track instead. I agreed.
    • We decided to wait until Wednesday of next week to take the banners down to give a bit more time for those interested to apply.
    • We asked the local team which projects they were interested in having at their conference.
    • They gave us a list, and we are in the process of getting those project representatives to apply for the OWASP Track.
  • Project Support Volunteer Role Development
    • Roles have now been allocated for each volunteer that has continued interest in working with OWASP.
    • I will have a meeting with the successful candidates regarding their project support duties come next week.
    • I will send more information to the other volunteers about the different ways they can support the Guidebook projects during their development come next year.
  • New Project Web Page
    • The new web page development is almost complete.
    • The only information missing is the Assessment Criteria and Project Terminology.
    • Please see below for my proposal on the Assessment Criteria.
  • Assessment Criteria, Lifecycle, and Graduation Processes
    • The new web page development is almost complete.
    • The only information missing is the Assessment Criteria and Project Terminology.
    • Please see below for my proposal on the Assessment Criteria.
  • Daily Project based queries and requests
    • This has not changed much since I began the post: questions are very similar in nature.
    • Global AppSec questions.
    • Funding queries.
    • Travel availability.
    • Project based administrative help.
    • Project status information.
    • Several project donations questions.
    • OWASP LinkedIn Updates.
    • What's happening with projects, questions.

More Funding Potential

  1. Guidebooks Grant Payment: We have submitted the forms, and are waiting to hear back from Deb.
  2. ESAPI Grant Proposal: The proposal has passed the first round of reviews. It is now at the peer review stage with 6 other applications.
  3. We have now begun the process of grant writing for the ModSecurity Project.
  4. Ryan and I are still developing the project plan.
  5. This will be for a $30,000 grant proposal for the DHS.