This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Summit 2011"
Sarah Baso (talk | contribs) |
Mark.bristow (talk | contribs) |
||
Line 101: | Line 101: | ||
*Discussion on Douglas Crockford's bold statement that we should stop HTML5 development, fix XSS, and then start over. Is he right? How is OWASP active in the HTML5 development? Check [http://blip.tv/file/3755495 this webcast], jump to 20:50 to hear the XSS part. /John Wilander | *Discussion on Douglas Crockford's bold statement that we should stop HTML5 development, fix XSS, and then start over. Is he right? How is OWASP active in the HTML5 development? Check [http://blip.tv/file/3755495 this webcast], jump to 20:50 to hear the XSS part. /John Wilander | ||
+ | *Better engagement/partnerships with the development community - Mark Bristow | ||
+ | *Ways to recognize participation in OWASP in a tangable way - Mark Bristow | ||
+ | *Foundation/Board/Committee Governance & Standardization - Mark Bristow | ||
+ | *OWASP Website Re-Design | ||
+ | *OWASP Branding | ||
*[Your topic here] | *[Your topic here] | ||
Revision as of 21:55, 2 December 2010
Welcome
Dear OWASP Leaders and appsec community,
The Summit Activates *You*Whereas the OWASP AppSec conferences are great places to listen to interesting talks, go for training, and meet with OWASP people, the Global Summit is the place where we all sit down together and take the time to discuss and work out plans, projects and solutions for the appsec future. Examples of topics:
| |
Organizing CommitteeLorna Alamri, Brad Causey, Justin Clarke, Paulo Coimbra, Dinis Cruz, Martin Knobloch, Dave Wichers, John Wilander, Jason Li, Tara Causey, Sarah Baso . |
Who's Invited?As an OWASP leader you are automatically invited to the summit, but we also welcome leading experts from industry and academia. Together we can create a more secure web. Check the "How Do I Join?" tab above for more info. |
Operational guidelines
Following the first meeting of the Summit 2011 Organizational team, here are the current proposed operational guidelines:
- the summit is an annual event
- outside OWASP conference
- the summit should take place in January not later then begin of February
- the summit takes 3 to 4 days
- budget aim is US$ 150'000 US$ where 50'000 from OWASP and US$100'000 from sponsors
- attendees targets are:
- OWASP Funded:
- Board
- Committee Members
- Chapter / sponsor Funded:
- Chapter Leaders
- Project Leaders
- OWASP Funded:
- venue / location criteria (no decision on the venue)
- 1 key organizer in close contact with the venue
- hosting 30 to 100 people
- US$2'000 a head (flight/accommodation/food/beers)
- conference facilities
- multiple meeting rooms
- one big meeting room e.g. auditorium
- hotel with the conference facilities or conference venue within walking distance
- apartments if possible (to share apartments/rooms and save money)
- 4 to 5 star hotel
- local food supplier for apartment crashing
- has to be negotiated with the hotel
- max 50 km's form international airport
- sufficient Internet access!
Success factors (what indicates the summit as success)
- break even
- the summits are the place to go to discus about and working on Web Application Security
- review of the past year
- working sessions on committees, projects and industry sectors (e.g. browsers and frameworks)
- universities / education sessions
- committee member election
- board election
- strategic OWASP issues
- road map and action plans for the next 12 month
Other local Summit(s):
- The conferences are free to organize small, conference bound summit
- this are not sponsored by OWASP of OWASP summit budget
OWASP Around the World
OWASP is a fast growing global community. How should we support and manage this growth? During this session we'll look into issues of:
- Internationalization
- The global job board
- New OWASP chapters in parts of the world where we have not spread much yet
More Topics
You know how OWASP works – it's all up to you. Please edit this tab and enter topics we should cover during the Global Summit 2011! If you want you can add your name after each suggestion and we can work out the details with you.
- Discussion on Douglas Crockford's bold statement that we should stop HTML5 development, fix XSS, and then start over. Is he right? How is OWASP active in the HTML5 development? Check this webcast, jump to 20:50 to hear the XSS part. /John Wilander
- Better engagement/partnerships with the development community - Mark Bristow
- Ways to recognize participation in OWASP in a tangable way - Mark Bristow
- Foundation/Board/Committee Governance & Standardization - Mark Bristow
- OWASP Website Re-Design
- OWASP Branding
- [Your topic here]
How Do I Join? / Mailing list
As an OWASP leader you are automatically invited to the summit. Cost to attend the summit is $800 USD (shared accommodations) plus travel expenses. Please see "Applying for Chapter and Project Funding" and "Letters and Summit Materials" tabs for more information on finding funding help for expenses.
The first thing to do is to join the Summit 2011 mailing list.
On the mailing list you'll get first hand information on how to register, exact dates, updates to the agenda, funding for your trip etc.
If you are a leading appsec expert from industry or academia but not yet an OWASP leader you can just contact John.Wilander at owasp.org and we'll try to get you in.
Social Events
It goes without saying – the summit is all about meeting people. So there will be a constant mixture of workshops, dinners, beers and wine. We like to think of the summit as a very social event in itself.
Summit Pricing and Reservations
- Costs
- Tickets
- Accommodations
- Reservation Process
- Cost Details
- Costs
- Tickets
- Accommodations
- Reservation Process
- Cost Details
- Introduction
Category: Summit 2011 Metrics Track
Category: Summit 2011 Browser Security Track
Category: Summit 2011 XSS Eradication Track
Category: Summit 2011 Mitigation Track
Category: Summit 2011 University Education Training Track
Category: Summit 2011 OWASP Secure Coding Workshop Track
Category: Summit 2011 Individual OWASP Projects Track
Category: Summit 2011 OWASP Governance Track
Category: Summit 2011 OWASP Track
PERSON(S) | TICKET COMBINATION | COST IN EUROS | COST IN USD |
Individual | Summit Participant Ticket (includes meals, no accommodation) |
€260 EUR | $350 USD |
Individual | Summit Participant Ticket + 4 Nights Shared Accommodation |
€590 EUR | $800 USD |
The total cost for most attendees will be €590 EUR or $800 USD (Summit Participant Ticket + 4 Nights Shared Accommodation). Shared accommodations will be contained in multi-room villas which hold between four and six persons. You should expect to share a room in these villas - in fact, the shared experience has been cited as the most fun and beneficial part of the previous Summit.
A more detailed price chart with variations based on how many nights you will be staying, whether you want shared or private accommodations, and whether you have a companion is available below.
Summit Participant Tickets are tickets for individual participants and include the meals listed below during each day of the Summit. Individual participants should also select their preferred accommodations (shared or private).
Individual participants may also bring companions who are not participating in the Summit. Participants with companions must reserve private accommodations and purchase the Summit Companion Ticket. The Summit Companion Ticket covers the meals each day for the companion and the additional fees for an appropriate private room for both the participant and companion.
*NOTE CHANGE* As of 10 January 2011, all Summit Tickets must be purchased through the RegOnline System. OWASP Sponsored attendees must contact Sarah Baso for a coupon code before going to RegOnline to get their Summit Ticket and book their accommodations. For help regarding the RegOnline System, contact Kate Hartmann. Please note if you previously booked your Summit Ticket, accommodations, or flight through Diplomata Tours, we still have your reservation and you 'DO NOT' need to re-register.
Included Meals
The following meals are included each day of the Summit for Summit Participant and Companion Tickets:
- Morning Coffee Break
- Lunch (consisting of pack of a sandwich, bag of chips, yogurt, fruit, cake, and soft drink or mineral water)
- Afternoon Coffee Break
- Dinner (buffet style with beverages)
If you are staying at Campo Real, 3 meals per day as well as 2 coffee breaks will be provided (Tuesday through Friday) If you are not staying at Campo Real and purchased only a Summit Participant Ticket, only 2 meals per day (lunch and dinner) and 2 coffee breaks will be provided.
Shared Accommodations will be villa-style suites each containing two or three bedrooms. The bedrooms will contain multiple beds and attendees will be expected to share rooms with other attendees. Each villa has a common area living room and kitchenette which can be used to socialize and collaborate. Private Accommodations will be a single hotel room containing one bed.
In addition, breakfast is included with all accommodation packages.
If you wish to arrive early at Campo Real or stay after the Summit is over, you are more than welcome. The extra night rates are €67 EUR for a single (with breakfast) and €127 EUR for a couple (with breakfast).
As of 10 January 2011, accommodations must be booked through the RegOnline System instead of Diplomata Tours. Also, do not book directly with the Campo Real Resort.
*NOTE CHANGE* Attendees should purchase Summit Tickets and reserve accommodations through the RegOnline System. All OWASP Sponsored attendees must contact Sarah Baso for a coupon code before going to RegOnline to get their Summit Ticket and book their accommodations. For help regarding the RegOnline System, contact Kate Hartmann.
Attendees should arrange for their own airfare, unless they are being funded by OWASP, in which case the attendee must book their airfare through Sarah Baso. Attendees arranging their own air travel should send their flight itinerary to Lorna, Sarah or Jason so that we can arrange airport transfers to the Summit venue.
While we encourage all participants to stay in shared accommodations, we recognize that not all participants will be comfortable sharing accommodations. Individual hotel rooms with single beds are available at an additional cost. The typical total cost for single attendees desiring these private accommodations will be €664 EUR (Summit Participant Ticket + 4 Nights Private Accommodation).
Participants that wish to bring a companion must stay in private accommodations and the companion will cost an additional €404 EUR for a typical grand total of €1068 EUR (Summit Participant Ticket + Summit Companion Ticket + 4-Nights Private Accommodation).
PERSON(S) | TICKET COMBINATION | COST IN EUROS | APPROXIMATE COST IN USD |
Individual | Summit Participant Ticket (includes meals, no accommodation) |
€260 EUR | ≈$350 USD |
Individual | Summit Participant Ticket + 3 Nights Shared Accommodation |
€515 EUR | ≈$700 USD |
Individual | Summit Participant Ticket + 3 Nights Private Accommodation |
€590 EUR | ≈$800 USD |
Individual | Summit Participant Ticket + 4 Nights Shared Accommodation |
€590 EUR | ≈$800 USD |
Individual | Summit Participant Ticket + 4 Nights Private Accommodation |
€664 EUR | ≈$900 USD |
Couple | Summit Participant Ticket + Summit Companion Ticket + 3 Nights Private Accommodation *Attendees with companions must stay in Private Accommodations |
€920 EUR | ≈$1250 USD |
Couple | Summit Participant Ticket + Summit Companion Ticket + 4 Nights Private Accommodation |
€1068 EUR | ≈$1450 USD |
Individual | Extra Night of Private Accommodation (includes breakfast) | €67 EUR | ≈$90 USD |
Couple | Extra Night of Private Accommodation with Companion (includes breakfast) | €127 EUR | ≈$170 USD |
PDF or Google Docs version of pricing table on OWASP Global Summit Letterhead.
PERSON(S) | TICKET COMBINATION | COST IN EUROS | COST IN USD |
Individual | Summit Participant Ticket (includes meals, no accommodation) |
€260 EUR | $350 USD |
Individual | Summit Participant Ticket + 4 Nights Shared Accommodation |
€590 EUR | $800 USD |
The total cost for most attendees will be €590 EUR or $800 USD (Summit Participant Ticket + 4 Nights Shared Accommodation). Shared accommodations will be contained in multi-room villas which hold between four and six persons. You should expect to share a room in these villas - in fact, the shared experience has been cited as the most fun and beneficial part of the previous Summit.
A more detailed price chart with variations based on how many nights you will be staying, whether you want shared or private accommodations, and whether you have a companion is available below.
Summit Participant Tickets are tickets for individual participants and include the meals listed below during each day of the Summit. Individual participants should also select their preferred accommodations (shared or private).
Individual participants may also bring companions who are not participating in the Summit. Participants with companions must reserve private accommodations and purchase the Summit Companion Ticket. The Summit Companion Ticket covers the meals each day for the companion and the additional fees for an appropriate private room for both the participant and companion.
*NOTE CHANGE* As of 10 January 2011, all Summit Tickets must be purchased through the RegOnline System. OWASP Sponsored attendees must contact Sarah Baso for a coupon code before going to RegOnline to get their Summit Ticket and book their accommodations. For help regarding the RegOnline System, contact Kate Hartmann. Please note if you previously booked your Summit Ticket, accommodations, or flight through Diplomata Tours, we still have your reservation and you 'DO NOT' need to re-register.
Included Meals
The following meals are included each day of the Summit for Summit Participant and Companion Tickets:
- Morning Coffee Break
- Lunch (consisting of pack of a sandwich, bag of chips, yogurt, fruit, cake, and soft drink or mineral water)
- Afternoon Coffee Break
- Dinner (buffet style with beverages)
If you are staying at Campo Real, 3 meals per day as well as 2 coffee breaks will be provided (Tuesday through Friday) If you are not staying at Campo Real and purchased only a Summit Participant Ticket, only 2 meals per day (lunch and dinner) and 2 coffee breaks will be provided.
Shared Accommodations will be villa-style suites each containing two or three bedrooms. The bedrooms will contain multiple beds and attendees will be expected to share rooms with other attendees. Each villa has a common area living room and kitchenette which can be used to socialize and collaborate. Private Accommodations will be a single hotel room containing one bed.
In addition, breakfast is included with all accommodation packages.
If you wish to arrive early at Campo Real or stay after the Summit is over, you are more than welcome. The extra night rates are €67 EUR for a single (with breakfast) and €127 EUR for a couple (with breakfast).
As of 10 January 2011, accommodations must be booked through the RegOnline System instead of Diplomata Tours. Also, do not book directly with the Campo Real Resort.
*NOTE CHANGE* Attendees should purchase Summit Tickets and reserve accommodations through the RegOnline System. All OWASP Sponsored attendees must contact Sarah Baso for a coupon code before going to RegOnline to get their Summit Ticket and book their accommodations. For help regarding the RegOnline System, contact Kate Hartmann.
Attendees should arrange for their own airfare, unless they are being funded by OWASP, in which case the attendee must book their airfare through Sarah Baso. Attendees arranging their own air travel should send their flight itinerary to Lorna, Sarah or Jason so that we can arrange airport transfers to the Summit venue.
While we encourage all participants to stay in shared accommodations, we recognize that not all participants will be comfortable sharing accommodations. Individual hotel rooms with single beds are available at an additional cost. The typical total cost for single attendees desiring these private accommodations will be €664 EUR (Summit Participant Ticket + 4 Nights Private Accommodation).
Participants that wish to bring a companion must stay in private accommodations and the companion will cost an additional €404 EUR for a typical grand total of €1068 EUR (Summit Participant Ticket + Summit Companion Ticket + 4-Nights Private Accommodation).
PERSON(S) | TICKET COMBINATION | COST IN EUROS | APPROXIMATE COST IN USD |
Individual | Summit Participant Ticket (includes meals, no accommodation) |
€260 EUR | ≈$350 USD |
Individual | Summit Participant Ticket + 3 Nights Shared Accommodation |
€515 EUR | ≈$700 USD |
Individual | Summit Participant Ticket + 3 Nights Private Accommodation |
€590 EUR | ≈$800 USD |
Individual | Summit Participant Ticket + 4 Nights Shared Accommodation |
€590 EUR | ≈$800 USD |
Individual | Summit Participant Ticket + 4 Nights Private Accommodation |
€664 EUR | ≈$900 USD |
Couple | Summit Participant Ticket + Summit Companion Ticket + 3 Nights Private Accommodation *Attendees with companions must stay in Private Accommodations |
€920 EUR | ≈$1250 USD |
Couple | Summit Participant Ticket + Summit Companion Ticket + 4 Nights Private Accommodation |
€1068 EUR | ≈$1450 USD |
Individual | Extra Night of Private Accommodation (includes breakfast) | €67 EUR | ≈$90 USD |
Couple | Extra Night of Private Accommodation with Companion (includes breakfast) | €127 EUR | ≈$170 USD |
PDF or Google Docs version of pricing table on OWASP Global Summit Letterhead.
Venue
Below is the link to the Venue of the 2011 OWASP Global Summit -- CampoReal Resort. CampoReal is located in central Oeste Portugal 38 km north of Lisbon and 18 km inland from the Atlantic Ocean.
http://www.camporeal.pt/en/hotel-residences.aspx
Download a PDF factsheet about CampoReal Resort
The hotel has an Airport Shuttle, Gym and Fitness Center, Gootball camp, Horse Back Riding, Day Spa, Internet WiFi, and Golfcourse as well as many other amenities.
Meals and coffee breaks will be provided by OWASP.
Villa Accommodations:
Residence-Pool 3 or 4 bedrooms
- Villa
Each Residence includes:
- Private bathroom(s)
- Kitchenette
- Balcony or garden
- Swimming-pool shared by apartment/townhouse block
- Residence-Pool for 3 bedroom and 4 bedroom villas include a private swimming-pool
A Day in Lisbon, Portugal:
Click this link to see all the City of Lisbon has to offer, which is only a short train ride from the resort.
http://www.golisbon.com/portugal/cities/cascais.html
or
http://www.travel-in-portugal.com/Cascais/
Lisbon - Spreading out along the right bank of the Tagus, its downtown, the Baixa, is located in the 18th-century area around Rossio. East of the arcade Praça do Comércio, are the medieval quarters of Alfama and Mouraria, crowned by the magnificent St. George's Castle. To the west lie Bairro Alto and Madragoa, with their typical streets, and on the western extreme is Belém, with its Belém Tower, (the sentinel over the Tagus river that protects the entrance into Lisbon), the Jerónimos Monastery (masterpieces of Manueline architecture and classified in UNESCO's International Heritage list) and the Cultural Center of Belém.
Museums: Ancient Art, Chiado (Contemporary Art), Tile, Archaeology, Ethnology, Coach, Costume, Theater, Maritime, Military, City, Gulbenkian, Modern Art Center, and the Ricardo Espirito Santo Silva Foundation. Palaces open to the public: Ajuda and Fronteira. Churches: Cathedral (with Treasury); São Vicente de Fora; Conceição Velha (Manueline), São Roque and Sacred Art; Madre Deus; Santa Engrácia Pantheon (Baroque), and the Estrela Basilica.
Shopping: Downtown; Avenida de Roma, Praça de Londres, Avenida Guerra Junqueiro, and Amoreiras.
Nightlife: Bairro Alto and Avenida 24 de Julho.
Guided Tours
Sponsoring
We will welcome a few sponsors of this very special event, typically organization that participate in the summit. If you are interested in supporting the global summit, please contact Lorna.Alamri at owasp.org.
Attendees that qualify to be sponsored by OWASP
Some leaders that are active within OWASP may qualify to have all or partial transportation and lodging paid for by OWASP.
To be considered for qualification, you must meet one or more of the following criteria:
- Member of the OWASP Board
- Active member of a Global Committee (as determined by the OWASP Board)
- Operational personnel that are necessary for the operation of the Summit
Current sponsorship budget is $50,000 for the Summit.
If you feel you might qualify, please contact Brad Causey or Jason Li. If you do not meet these criteria, and still feel that you should be sponsored, please contact Brad Causey @ or Jason Li @
Applying for Chapter or Project Sponsorship
Application for OWASP Chapter or Project Funding
Summit Attendees
CONFIRMED 2011 OWASP GLOBAL SUMMIT ATTENDEES
- 1 Welcome
- 2 Dear OWASP Leaders and appsec community,
- 3 The Summit Activates *You*
- 4 Organizing Committee
- 5 Who's Invited?
- 6 Costs
- 7 Tickets
- 8 Accommodations
- 9 Reservation Process
- 10 Cost Details
- 11 Costs
- 12 Tickets
- 13 Accommodations
- 14 Reservation Process
- 15 Cost Details
- 16 Introduction
- 17 Category: Summit 2011 Metrics Track
- 18 Category: Summit 2011 Browser Security Track
- 19 Category: Summit 2011 XSS Eradication Track
- 20 Category: Summit 2011 Mitigation Track
- 21 Category: Summit 2011 University Education Training Track
- 22 Category: Summit 2011 OWASP Secure Coding Workshop Track
- 23 Category: Summit 2011 Individual OWASP Projects Track
- 24 Category: Summit 2011 OWASP Governance Track
- 25 Category: Summit 2011 OWASP Track
Confirmed Summit Attendees: with Funding
2011 OWASP Global Summit Attendees | ||||||||
Name | Company | Reason for Summit Participation Working Group Interest |
Summit Time Paid By | Summit Expenses Paid By | Reason for Sponsorship | |||
view edit | Dinis Cruz @ | Self |
![]() |
OWASP Board Member, Summit Organizing Team | ||||
view edit | Lorna Alamri @ | Self |
![]() |
Summit Organizing Team | ||||
view edit | Tom Brennan @ | OWASP | |
![]() |
OWASP Board Member | |||
view edit | Larry Casey @ | Aspect Security | ![]() |
![]() |
OWASP Staff | |||
view edit | Brad Causey @ | |
![]() |
Summit Organizing Team | ||||
view edit | Justin Clarke @ | Gotham Digital Science | ![]() |
![]() |
Summit Organizing Team | |||
view edit | Paulo Coimbra @ | OWASP | ![]() |
![]() |
OWASP Staff, Summit Organizing Team | |||
view edit | Seba Deleersnyder @ | SAIT Zenitel | ![]() |
![]() |
OWASP Board Member | |||
view edit | Kate Hartmann @ | OWASP | |
![]() |
OWASP Employee | |||
view edit | Eoin Keary @ | Ernst & Young | Ernst & Young |
![]() |
OWASP Board Member | |||
view edit | Martin Knobloch @ | PervaSec | PervaSec |
![]() |
Summit Organizing Team | |||
view edit | Jason Li @ | Aspect Security | ![]() |
![]() |
Summit Organizing Team | |||
view edit | Matt Tesauro @ | Praetorian | ![]() |
![]() |
OWASP Board Member | |||
view edit | Dave Wichers @ | Aspect Security | ![]() |
![]() |
OWASP Board Member | |||
view edit | John Wilander @ | Omegapoint | Self |
![]() |
Summit Organizing Team | |||
view edit | Jeff Williams @ | Aspect Security | ![]() |
![]() |
OWASP Board Member | |||
view edit | Sandra Paiva @ | OWASP | |
![]() |
Working Session Editor - Summit Staff | |||
view edit | Heiko Richler @ | Georg Simon Ohm University of Applied Sciences |
|
![]() |
![]() |
|||
view edit | Elke Roth-Mandutz @ | Georg Simon Ohm University of Applied Sciences |
|
![]() |
![]() |
|||
view edit | Mario Heiderich @ | Researcher, Ruhr University Bochum / NDS |
|
![]() |
![]() |
|||
view edit | Colin Watson @ | Watson Hall Ltd | ![]() |
![]() London Local Chapter |
Active Committee Member, Local Chapter Funds | |||
view edit | David Lindsay @ | Cigital |
|
![]() |
![]() |
|||
view edit | Dan Cornell @ | CTO Denim Group | ![]() |
![]() |
Active Committee Member | |||
view edit | Doug Wilson @ | Mandiant | ![]() |
![]() Washington DC Local Chapter |
Local Chapter Funds | |||
view edit | Jim Manico @ | Self |
![]() |
OWASP Podcast/ranking system | ||||
view edit | Michael Coates @ | Mozilla | ![]() |
![]() |
||||
view edit | Chris Lyon | Mozilla | ![]() |
![]() |
||||
view edit | Lucas Adamski | Mozilla | ![]() |
![]() |
||||
view edit | Justin Fitzhugh | Mozilla | ![]() |
![]() |
||||
view edit | Brandon Sterne | Mozilla | ![]() |
![]() |
||||
view edit | Chris Hofmann | Mozilla | ![]() |
![]() |
||||
view edit | Achim Hoffmann @ | sic[!]sec |
|
![]() |
![]() ![]() |
ranking system | ||
view edit | Ralf Reinhardt @ | sic[!]sec | ![]() |
![]() ![]() |
ranking system | |||
view edit | Mark Bristow @ | Securicon LLC | ![]() |
![]() |
Active Committee Member | |||
view edit | Lucas Ferreira @ | Brazilian Chamber of Deputies (Câmara dos Deputados) | Brazilian Chamber of Deputies (Câmara dos Deputados) |
![]() |
Active Committee Member | |||
view edit | Gareth Heyes |
|
|
![]() |
||||
view edit | Chris Wysopal @ | Veracode |
|
![]() |
![]() |
|||
view edit | Chris Eng @ | Veracode |
|
![]() |
![]() |
|||
view edit | Isaac Dawson @ | Veracode |
|
![]() |
![]() |
|||
view edit | Daniel Ng @ | C-PISA/PolyU |
|
3rd party/own |
3rd party/own | |||
view edit | Kuai Hinojosa @ | Cigital | |
![]() |
Active Committee Member | |||
view edit | Bart De Win | Ascure | ![]() |
![]() OWASP Belgium Chapter |
||||
view edit | Mathias Rohr @ | SEC Consult | ![]() |
![]() |
||||
view edit | Christian Martorella @ | Verizon Business |
|
![]() |
![]() |
|||
view edit | David Campbell @ | Electric Alchemy | Electric Alchemy |
![]() Denver Chapter |
Chapter leader, GIC member, Mobile Security project member | |||
view edit | Jasvir Nagra |
|
![]() |
![]() |
||||
view edit | Neil Matatall @ | FishNet Security | FishNet Security |
![]() Orange County Chapter |
||||
view edit | Nishi Kumar @ | FIS |
|
![]() |
![]() |
Active Committee Member | ||
view edit | Eduardo Vela |
|
![]() |
![]() |
||||
view edit | Joe Bernik @ | |
![]() |
Active Committee Member | ||||
view edit | Rex Booth @ | Grant Thornton | ![]() |
![]() |
Active Committee Member | |||
view edit | Ivan Buetler @ | Compass Security | ![]() |
![]() OWASP Top 10 |
||||
view edit | Vehbi Tasar | (ISC)2® | ![]() |
![]() |
||||
view edit | David Ross | Microsoft | ![]() |
![]() |
||||
view edit | Tony UcedaVelez | VerSprite | ![]() |
![]() |
||||
view edit | Justin Schuh |
|
![]() |
![]() |
||||
view edit | Mandeep Khera @ | Cenzic |
|
|
![]() SF Bay Area Chapter |
SF Bay Area Local Funds | ||
view edit | L. Gustavo C. Barbato @ | Dell | Dell |
![]() Belgium Chapter Ireland Chapter L.A. Chapter |
Chapter Leader, Global Chapter Committee Member | |||
view edit | Tom Neaves @ | Verizon Business | ![]() |
![]() |
||||
view edit | Keith Turpin @ | |
![]() |
Praetorian Corporate OWASP Sponsorship | ||||
view edit | Paolo Perego @ |
|
![]() |
![]() Italian Chapter |
Local OWASP Funds | |||
view edit | Matteo Meucci @ | Minded Security |
|
![]() |
![]() Italian Chapter |
Local OWASP Funds | ||
view edit | Giorgio Fedon @ | Minded Security S.r.l. |
|
![]() |
![]() Italian Chapter |
Local OWASP funds | ||
view edit | Stefano Di Paola @ | Minded Security |
|
![]() |
![]() |
|||
view edit | Stephen Schwartz | |
![]() |
Local OWASP Funds | ||||
view edit | Ralph Durkee @ | Durkee Consulting | Self |
![]() |
Ranking system | |||
view edit | Cecil Su @ | Grant Thornton | ![]() |
![]() |
ranking system | |||
view edit | Juan Carlos Calderon @ | Softtek | ![]() |
![]() |
ranking system | |||
view edit | Helen Gao @ | TIBCO Software Inc. |
|
|
![]() |
ranking system | ||
view edit | Pavol Luptak @ | Nethemba s.r.o. |
|
![]() |
![]() |
Ranking System | ||
view edit | Ryan Barnett @ | Trustwave |
|
|
![]() |
Ranking system | ||
view edit | Ofer Maor @ | Hacktics | Hacktics |
![]() |
Ranking System | |||
view edit | John Steven @ | Cigital | ![]() |
![]() |
Ranking System | |||
view edit | Robert Hansen | |
![]() |
Ranking System | ||||
view edit | Matthew Chalmers @ | ![]() |
Self |
![]() |
Ranking System | |||
view edit | Jeff Hodges @ | PayPal |
|
![]() |
![]() |
|||
view edit | Ryan McGeehan | ![]() |
![]() |
|||||
view edit | Collin Greene | ![]() |
![]() |
|||||
view edit | Jerry Hoff @ | self![]() |
self | ranking system | ||||
view edit | Rajeev Angal | Oracle | |
|||||
view edit | Sarah Baso @ | Self |
![]() |
Summit Team | ||||
view edit | Linda Potjes | |
![]() |
Summit assistance | ||||
view edit | Tobias Gondrom @ | IETF | |
![]() Global Industry Committee |
Selected by GIC | |||
view edit | Steven van der Baan @ |
|
|
![]() Minneapolis/St. Paul Chapter |
MSP Local Chapter Funds | |||
view edit | Fred Donovan @ | Attack Logic | self/employer |
self/employer | ||||
view edit | Andreas Falkenberg | Ruhr University Bochum, Germany | self/3rd party |
self/3rd party | ||||
view edit | Ferdinand Vroom @ | Nationale- Nederlanden |
|
Self |
![]() Summit Sponsorship Fund & Netherlands Chapter |
Local Chapter Funds and Ranking System | ||
view edit | Mateo Martinez @ | Tata Consultancy Services |
|
|
![]() |
Ranking system | ||
view edit | Mike Zusman @ | Intrepidus Group | Intrepidus Group |
![]() Summit Sponsorship & NY/NJ Chapter |
Local Chapter Funds & Ranking system | |||
view edit | Anurag Agarwal @ | MyAppSecurity | |
![]() Summit Sponsorship & NY/NY Chapter |
Local Chapter Funds & Ranking system | |||
view edit | Konstantinos Papapanagiotou @ | Syntax IT Inc. |
|
![]() |
![]() |
Ranking system | ||
view edit | Chris Schmidt @ | Aspect Security | ![]() |
![]() |
Ranking system | |||
view edit | Vasileios Vlachos @ | Technological Educational Institute of Larissa, Greece |
|
Technological Educational Institute of Larissa, Greece |
![]() |
Ranking system | ||
view edit | Carlos Serrao @ | ISCTE-IUL | ISCTE-IUL |
![]() |
Ranking System | |||
view edit | Wagner Elias @ | Conviso Application Security |
|
Conviso Application Security |
![]() |
Ranking System | ||
view edit | Ian Fette | ![]() |
![]() |
|||||
view edit | Vicente Aguilera Diaz @ | Internet Security Auditors | |
![]() |
Ranking System | |||
view edit | Arian Evans | |
Jim Manico | Industry Thought Leader | ||||
view edit | Juan Jose Rider Jimenez @ | WUL4 (What You Look For) | ![]() |
![]() |
||||
view edit | Abraham Kang |
|
|
![]() SF Bay Area Chapter |
SF Bay Area Local Funds | |||
view edit | Fredrick Donovan | Attack Logic | Attack Logic |
Attack Logic | ||||
view edit | Alexis Fitzgerald |
|
www.alexisfitzg.com |
www.alexisfitzg.com | ||||
view edit | Justin Searle | InGuardians | |
![]() Global Industry Committee |
Selected by GIC | |||
view edit | Kyprianos Vasilopoulos | |
![]() Global Industry Committee |
|||||
view edit | Steven Cheng | Amorize | ![]() |
![]() |
||||
view edit | Mark Thomas | Springsource - a division of vmware | ![]() |
![]() |
||||
view edit | Antonio Fontes @ | L7 Sécurité | ![]() |
![]() |
||||
view edit | Luis Vilares Da Silva | OPCW | self/3rd party |
self/3rd party | ||||
view edit | Vlatko Kosturjak @ | |
![]() |
Ranking System (3) | ||||
view edit | Talal AlBasha @ | alremh |
|
Self |
![]() |
|||
view edit | Gandhi Aryavalli @ | McAfee |
|
|
![]() |
Ranking System (3) | ||
view edit | Vishal Garg @ | AppSecure Labs | AppSecure Labs |
![]() |
Ranking System (3) | |||
view edit | Mohd Fazli Azran @ | ![]() |
|
![]() |
Chapter Leader Ranking System (3) | |||
view edit | Jeremy Long @ |
|
|
![]() |
Ranking system (3) | |||
view edit | Zaki Akhmad @ | ![]() |
|
![]() |
Ranking system (3) | |||
view edit | Daniel Brzozowski @ |
|
|
![]() |
Ranking System (3) | |||
view edit | Alexandre Augustini | Brazil Academy - PUC RS | |
|||||
view edit | Sherif Koussa @ | Software Secured |
|
|
![]() |
Ranking System (3) | ||
view edit | Jeff Ichnowski @ |
|
|
![]() |
||||
view edit | Anastasios Stasinopoulos | |
![]() |
Paid Student Staff | ||||
view edit | Rajeev Angal | Oracle | |
|||||
view edit | Alexandre Aniceto | Willway, S.A. | |
|||||
view edit | Rodrigo Assad | C.E.S.A.R - Centro de Estudos e Sistemas Avançados do Recife | |
|||||
view edit | Mattias Bergling | |
||||||
view edit | Deb Brewer | LXstudios | ![]() |
![]() |
Summit Staff - Event Organizer | |||
view edit | Bil Corry | Paypal | ![]() |
![]() |
||||
view edit | Sarah Cruz | |
![]() |
Summit Graphical Designer and Event Support | ||||
view edit | Wojciech Dworakowski | SecuRing | |
|||||
view edit | Felipe Ferraz | C.E.S.A.R - Centro de Estudos e Sistemas Avançados do Recife | |
|||||
view edit | Mauro Flores | |
![]() |
|||||
view edit | Julio Cesar Fort | |
![]() |
Summit - Student Support Staff | ||||
view edit | Pedro Fortuna @ | AuditMark |
|
![]() |
![]() |
|||
view edit | Leandro Gomes | SERPRO | |
![]() |
||||
view edit | Giles Hogben | |
||||||
view edit | Ricardo Melo @ | DRI | ![]() |
![]() |
||||
view edit | Tiago Mendo | SAPO | |
![]() |
Summit Video Support | |||
view edit | Nuno Loureiro | SAPO | |
![]() |
Summit Video Support | |||
view edit | Marta Pergorelli | Anggulo | |
![]() |
Summit Support Team | |||
view edit | Rogerio Lauritao | SAPO | |
![]() |
Summit Video Support | |||
view edit | Tanya Secker | Trustwave | |
|||||
view edit | Anastasios Stasinopoulos | |
![]() |
Summit - Student Support Team | ||||
view edit | Jason Taylor | Secure Innovation | Secure Innovation |
![]() |
||||
view edit | Benjamin Tomhave | Gemini Security Solutions | |
![]() |
||||
view edit | Peleus Uhley | Adobe Systems, Inc. | |
|||||
view edit | David Weston | Microsoft | ![]() |
![]() |
||||
view edit | Stefan Wuensch | Hacker Network News | |
![]() |
Summit Video Support & PR | |||
view edit | John Yeo | Trustwave | |
|||||
view edit | Pedro Campos Galvão @ | |
||||||
view edit | Marinus Kuivenhoven @ | |
||||||
view edit | Massimo Biagiotti @ | Business-e | ![]() |
![]() |
||||
view edit | Lucilla Mancini @ | Business-e | ![]() |
![]() |
||||
view edit | Edward Bonver @ | Symantec |
|
![]() |
![]() Los Angeles Chapter |
Local OWASP Funds | ||
view edit | Mikko Saario @ | Nokia | |
|||||
view edit | Mike Samuel @ | Google, Inc. |
|
|
||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
Confirmed Summit Attendees: Seeking Funds/Sponsorship
2011 OWASP Global Summit Attendees | ||||||||
Name | Company | Reason for Summit Participation Working Group Interest |
Summit Time Paid By | Summit Expenses Paid By | Reason for Sponsorship | |||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
Unconfirmed Summit Attendees
2011 OWASP Global Summit Attendees | ||||||||
Name | Company | Reason for Summit Participation Working Group Interest |
Summit Time Paid By | Summit Expenses Paid By | Reason for Sponsorship | |||
view edit | Steven Christey @ | Mitre | |
|||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | |
|||||||
view edit | Sample Only! Go to Summit_2011_Attendee to enter your info. | |
Letters and Summit Materials
Summit 2011 Presentation for AppSec DC
Application for OWASP Chapter or Project Funding
Confirmed 2011 OWASP Global Summit Attendees
Template Letter - 2011 Global Summit Basic Invitation
Template Letter - 2011 Global Summit University Outreach Invitation
Template Letter - 2011 Global Summit Government Invitation
Template Letter - 2011 Global Summit Request for Employer Funding and Sponsorship
Template Letter - 2011 Global Summit Request for Employer Funding, Version 2
Working Sessions
Click on the working session name to see the home page for that particular session. During the Summit those working session home pages will be used to document discussions and outcomes.
If you're interested in adding a Working Session for the 2011 Summit, there still is time to start a session! Please review the Working Session methodology for Working Session rules.
Schedule
![]() |
<paypal>Summit</paypal> |
Click to return to Summit 2011's main page
Work Model
The Fixed Working Sessions Model
Given the number of existent working sessions, trying to include them all into a fixed agenda would mean that each session would need to be allocated to a slot of 15 minutes.
In order to make the Summit a hub of productive and meaningful discussions, we have decided that the fixed schedule would only include the sessions with:
- Higher number of attendees;
- Focus on matters of interest to the wider community.
The rest of the sessions are scheduled during the Dynamic sessions, which are available HERE
The fixed schedule working sessions are organized into 2 tracks in the 2 main conference rooms:
Here is the list of the fixed schedule working sessions:
- XSS and the Frameworks: XSS - Awareness, Resources, and Partnerships
- OWASP Training: OWASP Academies
- WAF Mitigations for XSS: Virtual Patching Best Practices
- OWASP Exams: University Outreach
- Risk Metrics: Metrics and Labeling
- Government Outreach
- Counting and Scoring Application Security Defects
- OWASP Testing Guide
- Enterprise Web Defense Roundtable
- Threat Modeling
- Protecting Information Stored Client-Side
- Common structure and numbering for all guides: OWASP Common vulnerability list
- Providing Access to Persisted Data
- OWASP Secure Coding Practices Project
- DOM Sandboxing: EcmaScript 5 Security
- Industry
- Microsoft's SDL in 16 steps (and lessons learned)
- Projects
- HTML5 Security
- Overhauling the OWASP Website
- Contextual Output Encoding: ESAPI-CORE
- OWASP Board/Committee Governance: Board Structure
- ESAPI for Ruby: Applying ESAPI Input Validation
- Professionalize OWASP: Should OWASP hire a Chief Executive Officer (CEO)?
- Site Security Policy
- OWASP Certification
- What is an OWASP Leader? Tracking OWASP Participation
- Mobile Security
- OWASP Licensing
Tuesday, Feb 8
Time | Conference Room: CampoReal 1 | Conference Room: Alentejo |
Work Time Slot | Work Time Slot | |
08h30 - 09h30 | Final Registration | |
09h40 - 10h00 | Summit Launch | |
10h00 - 11h20 |
XSS and the Frameworks
|
|
11h20 - 11h30 | Coffee Break | |
11h30 - 13h00 |
WAF Mitigations for XSS
|
|
13h00 - 14h00 | Lunch | |
14h00 - 14h15 | Luis Magalhães - Head of Knowledge Society Agency - addresses OWASP | |
14h15 - 15h30 |
Risk Metrics
|
|
15h30 - 16h50 |
Counting and scoring application security defects
|
|
16h50 - 17h00 | Coffee Break | |
17h00 - 18h30 |
Enterprise Web Defense Roundtable
|
|
18h30 - 19h50 | Leisure Time | |
20h00 | Dinner |
Wednesday, Feb 9
Time | Conference Room: CampoReal 1 | Conference Room: Alentejo |
Work Time Slot | Work Time Slot | |
09h40 - 10h00 | Keynote | |
10h00 - 11h20 |
Protecting Information Stored Client-Side
|
Common structure and numbering for all guides
|
11h20 - 11h30 | Coffee Break | |
11h30 - 13h00 |
Providing Access to Persisted Data
|
|
13h00 - 13h50 | Lunch | |
14h00 - 15h20 |
|
|
15h30 - 16h45 |
Microsoft's SDL in 16 steps (and lessons learned)
|
|
16h45 - 17h00 | Coffee Break | |
17h00 - 18h20 |
|
|
18h30 - 19h50 | Leisure Time | |
20h00 | Dinner |
Thursday, Feb 10
Time | Conference Room: CampoReal 1 | Conference Room: Alentejo |
Work Time Slot | Work Time Slot | |
09h40 - 10h00 | Keynote | |
10h00 - 11h20 |
Contextual Output Encoding
|
OWASP Board/Committee Governance
|
11h20 - 11h30 | Coffee Break | |
11h30 - 13h00 |
ESAPI for Ruby
|
|
13h00 - 13h50 | Lunch | |
14h00 - 15h20 |
|
|
15h30 - 16h45 |
|
|
16h45 - 17h00 | Coffee Break | |
17h00 - 18h20 |
|
OWASP Licensing Test |
18h30 - 19h50 | Leisure Time | |
20h00 | Dinner | |
22h00 | OWASP Band gig!!! |
Friday, Feb 11
Time | Conference Room: CampoReal 1 | Conference Room: Alentejo |
Work Time Slot | Work Time Slot | |
10h00 - 11h15 |
|
|
11h15 - 11h30 | Coffee Break | |
12h00 - 13h30 | Closing Session Campo Real I Room |