This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Commercial Services"

From OWASP
Jump to: navigation, search
m
m
Line 61: Line 61:
 
==== Integration  ====
 
==== Integration  ====
  
<br>Commercial OWASP ESAPI integration providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. <br><br>
+
<br>Commercial OWASP ESAPI integration providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use ESAPI or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served,  company area(s) of application technology expertise, ESAPI integration platforms offered; approach to performing integrations, and contact name and email. Listings are not allowed to exceed 100 words.
  
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 +
|-
 +
! width="5%" | <br>
 +
! width="90%" | <br>
 
|-
 
|-
 
! bgcolor="#cccccc" scope="col" | OWASP&nbsp;Member<br>  
 
! bgcolor="#cccccc" scope="col" | OWASP&nbsp;Member<br>  
! bgcolor="#cccccc" scope="col" | Organization Name<br>
+
! bgcolor="#cccccc" scope="col" | Organization<br>
! bgcolor="#cccccc" scope="col" | Organization POC<br>
 
! bgcolor="#cccccc" scope="col" | Programming Languages<br>
 
 
|-
 
|-
 
| [[Image:Preferences.png|center]]<br>  
 
| [[Image:Preferences.png|center]]<br>  
|  
+
| ... another OWASP&nbsp;member organization...
[http://www.aspectsecurity.com/ Aspect Security] 9175 Guilford Road, Suite 300 Columbia, MD 21046-2565<br>
 
 
 
|
 
Mr. Jeff Williams (301) 604-4882<br> [email protected]<br>
 
 
 
|
 
ESAPI&nbsp;for Java ESAPI&nbsp;for .NET<br>
 
 
 
 
|-
 
|-
 
| bgcolor="#99cccc" | [[Image:Preferences.png|center]]<br>  
 
| bgcolor="#99cccc" | [[Image:Preferences.png|center]]<br>  
 
| bgcolor="#99cccc" |  
 
| bgcolor="#99cccc" |  
[http://www.boozallen.com Booz Allen Hamilton] 8283 Greensboro Drive McLean, VA 22102<br>
+
'''[http://www.thisisafakeurlforafakecompany.com Acme Application Security Co.] ([http://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API#tab=.NET ESAPI for .NET], [http://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API#tab=Java_EE ESAPI for Java])'''
 
 
| bgcolor="#99cccc" |
 
Mr. Mike Boberski (703) 377-0456 [email protected]
 
  
| bgcolor="#99cccc" |
+
Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. [mailto:[email protected] Contact us] for more information.
ESAPI&nbsp;for PHP<br>
+
 +
''Last modified:&nbsp;April 14, 2010 - 8:36''
  
 
|-
 
|-
 
| align="center" |  
 
| align="center" |  
This organization is not an OWASP&nbsp;member  
+
This organization is not an OWASP member  
 
 
|
 
[http://www.google.com Acme Corp.] 123 Cartoon Street<br> Cartoonland, IL 60045<br>
 
 
 
|
 
Mr. Wile E. Coyote (555) 123-4567<br> [email protected]<br>
 
  
 
|  
 
|  
ESAPI&nbsp;for Python
+
... not an OWASP member organization...<br>
  
 
|-
 
|-
 
| bgcolor="#99cccc" align="center" |  
 
| bgcolor="#99cccc" align="center" |  
This organization is not an OWASP&nbsp;member<br>  
+
This organization is not an OWASP member<br>  
 
 
| bgcolor="#99cccc" |
 
[http://www.google.com Some Other Place Inc.] 456 Avenue<br> McLean, VA&nbsp;22101<br>
 
 
 
| bgcolor="#99cccc" |
 
Mr. Who M. Eye (555) 890-1234 [email protected]
 
  
 
| bgcolor="#99cccc" |  
 
| bgcolor="#99cccc" |  
ESAPI&nbsp;for Haskell
+
[http://www.google.com]... not an OWASP member organization...<br>
  
 
|}
 
|}
Line 123: Line 102:
 
==== Process Improvement  ====
 
==== Process Improvement  ====
  
<br>Commercial OWASP SAMM process improvement providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. <br><br>
+
<br>Commercial OWASP SAMM process improvement providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use SAMM or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served,  company area(s) of application technology expertise, SAMM business function process improvement services offered; approach to performing process improvement, and contact name and email. Listings are not allowed to exceed 100 words.
  
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 +
|-
 +
! width="5%" | <br>
 +
! width="90%" | <br>
 
|-
 
|-
 
! bgcolor="#cccccc" scope="col" | OWASP&nbsp;Member<br>  
 
! bgcolor="#cccccc" scope="col" | OWASP&nbsp;Member<br>  
! bgcolor="#cccccc" scope="col" | Organization Name<br>
+
! bgcolor="#cccccc" scope="col" | Organization<br>
! bgcolor="#cccccc" scope="col" | Organization POC<br>
 
! bgcolor="#cccccc" scope="col" | Business Functions<br>
 
 
|-
 
|-
 
| [[Image:Preferences.png|center]]<br>  
 
| [[Image:Preferences.png|center]]<br>  
|  
+
| ... another OWASP&nbsp;member organization...
[http://www.aspectsecurity.com/ Aspect Security] 9175 Guilford Road, Suite 300 Columbia, MD 21046-2565<br>
 
 
 
|
 
Mr. Jeff Williams (301) 604-4882<br> jeff.williams@aspectsecurity.com<br>
 
 
 
|
 
Business Functions<br>Governance<br>Construction<br>Verification<br>Deployment
 
 
 
 
|-
 
|-
 
| bgcolor="#99cccc" | [[Image:Preferences.png|center]]<br>  
 
| bgcolor="#99cccc" | [[Image:Preferences.png|center]]<br>  
 
| bgcolor="#99cccc" |  
 
| bgcolor="#99cccc" |  
[http://www.boozallen.com Booz Allen Hamilton] 8283 Greensboro Drive McLean, VA 22102<br>
+
'''[http://www.thisisafakeurlforafakecompany.com Acme Application Security Co.] ([http://www.owasp.org/index.php/SAMM_-_Construction Construction], [http://www.owasp.org/index.php/SAMM_-_Verification Verification])'''
  
| bgcolor="#99cccc" |
+
Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. [mailto:joecamel@thisisafakeurlforafakecompany.com Contact us] for more information.
Mr. Mike Boberski (703) 377-0456 boberski_michael@bah.com  
+
 
+
''Last modified:&nbsp;April 14, 2010 - 8:36''
| bgcolor="#99cccc" |
 
Construction<br>Verification<br>Deployment
 
  
 
|-
 
|-
 
| align="center" |  
 
| align="center" |  
This organization is not an OWASP&nbsp;member  
+
This organization is not an OWASP member  
  
 
|  
 
|  
[http://www.google.com Acme Corp.] 123 Cartoon Street<br> Cartoonland, IL 60045<br>
+
... not an OWASP member organization...<br>  
 
 
|
 
Mr. Wile E. Coyote (555) 123-4567<br> wile.e.coyote@acme.com<br>  
 
 
 
|
 
Verification
 
  
 
|-
 
|-
 
| bgcolor="#99cccc" align="center" |  
 
| bgcolor="#99cccc" align="center" |  
This organization is not an OWASP&nbsp;member<br>  
+
This organization is not an OWASP member<br>  
 
 
| bgcolor="#99cccc" |
 
[http://www.google.com Some Other Place Inc.] 456 Avenue<br> McLean, VA&nbsp;22101<br>
 
 
 
| bgcolor="#99cccc" |
 
Mr. Who M. Eye (555) 890-1234 [email protected]
 
  
 
| bgcolor="#99cccc" |  
 
| bgcolor="#99cccc" |  
Business Functions
+
[http://www.google.com]... not an OWASP member organization...<br>
  
 
|}
 
|}
Line 185: Line 143:
 
==== Training  ====
 
==== Training  ====
  
<br>Commercial OWASP Guide training providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. <br><br>
+
<br>Commercial OWASP Guide training providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use OWASP Guides or will help you use them. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served,  company area(s) of application technology expertise, OWASP Guide training offered; approach to performing training, and contact name and email. Listings are not allowed to exceed 100 words.
  
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 +
|-
 +
! width="5%" | <br>
 +
! width="90%" | <br>
 
|-
 
|-
 
! bgcolor="#cccccc" scope="col" | OWASP&nbsp;Member<br>  
 
! bgcolor="#cccccc" scope="col" | OWASP&nbsp;Member<br>  
! bgcolor="#cccccc" scope="col" | Organization Name<br>
+
! bgcolor="#cccccc" scope="col" | Organization<br>
! bgcolor="#cccccc" scope="col" | Organization POC<br>
 
! bgcolor="#cccccc" scope="col" | Guides<br>
 
 
|-
 
|-
 
| [[Image:Preferences.png|center]]<br>  
 
| [[Image:Preferences.png|center]]<br>  
|  
+
| ... another OWASP&nbsp;member organization...
[http://www.aspectsecurity.com/ Aspect Security] 9175 Guilford Road, Suite 300 Columbia, MD 21046-2565<br>
 
 
 
|
 
Mr. Jeff Williams (301) 604-4882<br> jeff.williams@aspectsecurity.com<br>
 
 
 
|
 
Code Review Guide<br> Development Guide<br> Testing Guide<br>
 
 
 
 
|-
 
|-
 
| bgcolor="#99cccc" | [[Image:Preferences.png|center]]<br>  
 
| bgcolor="#99cccc" | [[Image:Preferences.png|center]]<br>  
 
| bgcolor="#99cccc" |  
 
| bgcolor="#99cccc" |  
[http://www.boozallen.com Booz Allen Hamilton] 8283 Greensboro Drive McLean, VA 22102<br>
+
'''[http://www.thisisafakeurlforafakecompany.com Acme Application Security Co.] ([http://www.owasp.org/index.php/Category:OWASP_Guide_Project Development], [http://www.owasp.org/index.php/Category:OWASP_Code_Review_Project Code Review])'''
 
 
| bgcolor="#99cccc" |
 
Mr. Mike Boberski (703) 377-0456 [email protected]
 
  
| bgcolor="#99cccc" |
+
Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. [mailto:[email protected] Contact us] for more information.
Development&nbsp;Guide
+
 +
''Last modified:&nbsp;April 14, 2010 - 8:36''
  
 
|-
 
|-
 
| align="center" |  
 
| align="center" |  
This organization is not an OWASP&nbsp;member  
+
This organization is not an OWASP member  
  
 
|  
 
|  
[http://www.google.com Acme Corp.] 123 Cartoon Street<br> Cartoonland, IL 60045<br>
+
... not an OWASP member organization...<br>  
 
 
|
 
Mr. Wile E. Coyote (555) 123-4567<br> wile.e.coyote@acme.com<br>  
 
 
 
|
 
Testing Guide
 
  
 
|-
 
|-
 
| bgcolor="#99cccc" align="center" |  
 
| bgcolor="#99cccc" align="center" |  
This organization is not an OWASP&nbsp;member<br>  
+
This organization is not an OWASP member<br>  
  
 
| bgcolor="#99cccc" |  
 
| bgcolor="#99cccc" |  
[http://www.google.com Some Other Place Inc.] 456 Avenue<br> McLean, VA&nbsp;22101<br>  
+
[http://www.google.com]... not an OWASP member organization...<br>  
  
| bgcolor="#99cccc" |
+
|}
Mr. Who M. Eye (555) 890-1234 [email protected]
 
  
| bgcolor="#99cccc" |
+
<br> <br>
Code Review Guide
 
  
|}
 
  
<br> <br> __NOTOC__ <headertabs />  
+
__NOTOC__ <headertabs />  
  
 
<br>  
 
<br>  
  
 
[[Category:OWASP_Application_Security_Verification_Standard_Project]]
 
[[Category:OWASP_Application_Security_Verification_Standard_Project]]

Revision as of 14:42, 23 April 2010


This is a DRAFT page!!


Home



OWASP's mission is to make application security "visible," so that people and organizations can make informed decisions about application security risks. As a value-add to the website we have attempted to centralize OWASP project deliverable-based services for you in a single OWASP Commercial Services Registry. Examples of OWASP project deliverable-based services include: ASVS-based verification, ESAPI-based integration, SAMM-based process improvement, OWASP Guide-based training). Firms listed on the project tabs that are accessible from this page promote the development and consumption by industry and government of tools and techniques that are based on OWASP open standards, best practices and design patterns. To be listed in the OWASP Commercial Services Registry, you can find instructions here. You can also contact the project lead here.


OWASP does not endorse commercial products or services.

Asvs-ad-where-at.png


Verification


Commercial OWASP ASVS verification providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use ASVS or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served, company area(s) of application technology expertise, ASVS verification levels offered; approach to performing verifications, and contact name and email. Listings are not allowed to exceed 100 words.



OWASP Member
Organization
Preferences.png

... another OWASP member organization...
Preferences.png

Acme Application Security Co. (1A ,1B)

Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. Contact us for more information.

Last modified: April 14, 2010 - 8:36

This organization is not an OWASP member

... not an OWASP member organization...

This organization is not an OWASP member

[1]... not an OWASP member organization...



Integration


Commercial OWASP ESAPI integration providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use ESAPI or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served, company area(s) of application technology expertise, ESAPI integration platforms offered; approach to performing integrations, and contact name and email. Listings are not allowed to exceed 100 words.



OWASP Member
Organization
Preferences.png

... another OWASP member organization...
Preferences.png

Acme Application Security Co. (ESAPI for .NET, ESAPI for Java)

Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. Contact us for more information.

Last modified: April 14, 2010 - 8:36

This organization is not an OWASP member

... not an OWASP member organization...

This organization is not an OWASP member

[2]... not an OWASP member organization...



Process Improvement


Commercial OWASP SAMM process improvement providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use SAMM or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served, company area(s) of application technology expertise, SAMM business function process improvement services offered; approach to performing process improvement, and contact name and email. Listings are not allowed to exceed 100 words.



OWASP Member
Organization
Preferences.png

... another OWASP member organization...
Preferences.png

Acme Application Security Co. (Construction, Verification)

Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. Contact us for more information.

Last modified: April 14, 2010 - 8:36

This organization is not an OWASP member

... not an OWASP member organization...

This organization is not an OWASP member

[3]... not an OWASP member organization...



Training


Commercial OWASP Guide training providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use OWASP Guides or will help you use them. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served, company area(s) of application technology expertise, OWASP Guide training offered; approach to performing training, and contact name and email. Listings are not allowed to exceed 100 words.



OWASP Member
Organization
Preferences.png

... another OWASP member organization...
Preferences.png

Acme Application Security Co. (Development, Code Review)

Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. Contact us for more information.

Last modified: April 14, 2010 - 8:36

This organization is not an OWASP member

... not an OWASP member organization...

This organization is not an OWASP member

[4]... not an OWASP member organization...