This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "OWASP Security Ninja Project"

From OWASP
Jump to: navigation, search
(OWASP Security Ninja)
(FAQs)
Line 104: Line 104:
 
==Who is the target consumer for this project?==
 
==Who is the target consumer for this project?==
 
The target audience begins with the OWASP faithful, the builders and breakers  that are already part of the OWASP community. Our secondary audiences  are educators / students and industry. We see the real benefit for this program in reaching builders and breakers in industry and the next generation studying now.
 
The target audience begins with the OWASP faithful, the builders and breakers  that are already part of the OWASP community. Our secondary audiences  are educators / students and industry. We see the real benefit for this program in reaching builders and breakers in industry and the next generation studying now.
 +
 +
==What is different about the learning created in this project versus regular security learning?==
 +
Face it, regular security learning training is boring. Voice over powerpoint is painful to listen to. Someone reading off a script in front of a camera is as interesting as watching paint dry. We do learning modules differently. We bake in fun to the process of how we record. Think of our modules as more of a late night talk show talking security then boring script readers. We use a laid back conversational style to deal with complex topics, ask lots of questions, and share our personal experiences within the content.
  
 
==What roles / specializations are needed for this project?==
 
==What roles / specializations are needed for this project?==

Revision as of 00:11, 7 December 2015

OWASP Project Header.jpg

OWASP Security Ninja

The world of application security has a gaping hole when it comes to interesting and engaging security learning. Builders, breakers, and defenders lack a solid foundation of application security knowledge and an appreciation for the evolving threat landscape. These same folks also lack experience with secure development practices and tools. Finally, they lack the motivation to volunteer to improve application security.

Enter the OWASP Security Ninja program, a content and action based application security learning adventure. The project recognizes the learning and activity achievements of OWASP application security practitioners using a system of security belts. The OWASP security belts are white, yellow, green, brown, and black. Similar to belts in the world of martial arts, a student in our "virtual dojo" begins their journey reviewing video learning modules and taking an assessment per module. When the learner achieves passing status on all the white belt modules, they earn the OWASP Security White Belt and are eligible to continue to Yellow Belt.

Mission

OWASP Security Ninja educates, empowers, reaches, and recognizes builders and breakers in web application security.

  • Educates — providing the content to expand the application security knowledge of both the OWASP faithful and academia / industry
  • Empowers — opens doors and minds to new facets of application security
  • Reaches — connects with those who have had no historical appreciation or understanding of security
  • Recognizes — provides recognition for those that expand their minds and put forth effort to improve application security

Licensing

OWASP Security Ninja is free to use. Its licensing is dependent on several factors:

  • OWASP Security Ninja created documentation is licensed under the Creative Commons Attribution 4.0 license, so you can distribute, remix, tweak, and build upon our work, even commercially, as long as you credit us for the original creation.
  • OWASP Security Ninja created software and tools are licensed under the GPLv3 or later license. You are free to use and modify this software as well as having the right to re-distribute this software as long as any changes you've made are contributed back to the project under the same license. For questions, see the GPL FAQ

New-ninja-base-stand-black.png

Presentation

Coming Soon.

Project Leader

Related Projects

Code Repository

The OWASP Security Ninja code will be stored on GitHub shortly.

News and Events

  • [2015-12-06] Project site kicked off, and search for volunteers begins.

Classifications

New projects.png Owasp-builders-small.png
Owasp-breakers-small.png