User:Mchalmers
From OWASP
								
												
				
Contents
OWASP Involvement
OWASP Wiki
Click here to see my wiki contributions.
OWASP Projects
- OWASP brand/image
- OWASP awareness
- Local Chapters
- Certification Project
- Application Security Requirements Project (interim project manager)
- ESAPI
- OWASP EU Summit 2008
- OWASP PR Project
- Global Chapter Committee (pending)
OWASP Chapters
-  Founding member of the original DC Local Chapter (now the DC-Maryland chapter).
- Active member from 2004-2005.
- Recorded meeting minutes and maintained the chapter's web pages.
 
- "Member-at-Large" of the Chicago and Madison Local Chapters.
- Presently organising a new chapter in Milwaukee.
Non-OWASP Involvement
- ACFEI (American College of Forensic Examiners Institute)
- EC-Council (International Council of Electronic Commerce Consultants)
- IATFF (Information Assurance Technical Framework Forum)
- IEEE CS TCSP (IEEE Computer Society Technical Committee on Security & Privacy)
- IETF SAAG (Internet Engineering Task Force Security Area Advisory Group)
-  IIA (Institute of Internal Auditors)
- Board of Governors, Milwaukee Chapter
 
- ISACA (Information Systems Audit and Control Association)
- SANS Institute (System administration, Audit, Networking and Security Institute)
- WASC (Web Application Security Consortium)
"Credentials"
Certifications
- CISA - Certified Information Systems Auditor
- GSNA - GIAC Certified Systems and Network Auditor
- GCFA - GIAC Certified Forensic Analyst
- CEH - Certified Ethical Hacker
- CHS - Certified in Homeland Security (Level III)
Training Courses
- SOScorp - ITIL v3 Foundation Course (9/2008)
- SANS – Computer Forensics, Investigation, and Response (4/2008)
- Entellus Technology Group – SAP ERP Basis Auditing & Security Risks (12/2007)
- SAP America – Virsa Compliance Calibrator Training (10/2006)
- IIA/Deloitte – SAP ERP Technical Audit (8/2006)
- SPI Dynamics – Web Application Security Assessment with WebInspect (11/2005)
- SANS – Hacker Techniques, Exploits and Incident Handling (10/2005)
- Infosec Institute – Advanced Ethical Hacking: Expert Penetration Testing (1/2005)
- EC-Council/Mile2 – Certified Ethical Hacker Training (7/2004)
- Foundstone – Ultimate Web Hacking (9/2003)
- Siegeworks – Advanced AppAuditor Training (12/2002)
- SANS – Auditing Networks, Perimeters, and Systems (4/2002)
- Sanctum – AppScan AppAuditor Training (5/2001)
-  Bank One University (1/2001 – 2/2005)
- Numerous soft skills courses including Planning and Executing Projects, Understanding Personality Styles, Incident Management, Presentation Skills, SMART Goals, and Using the Gallup Q12
 
-  National Cryptologic School (2/1997 – 11/2000)
- Over 45 classified & unclassified courses including Information Systems Security Engineering, Technical Writing & Documentation, Encryption Key Management, Operational Information Systems Security, Computer Network Exploitation, and Operations Security
 






