This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Application Security Guide For CISOsVs2"

From OWASP
Jump to: navigation, search
 
(23 intermediate revisions by the same user not shown)
Line 9: Line 9:
 
'''Application Security Guide For CISOs''' Version 2.0 is current a DRAFT  
 
'''Application Security Guide For CISOs''' Version 2.0 is current a DRAFT  
  
This Version of the Guide is currently a work in progress and planned for publication in Q2 2018.
+
The OWASP 2018 OWASP Guide for CISOs is currently a work in progress and planned for publication in Q2 2018.
  
 
== Contents ==
 
== Contents ==
  
  
* Preamble
+
* Preamble Of Version 2
** [[CISO AppSec Guide: Introduction|Introduction]]
+
** [[CISO AppSec Guide v2: Introduction|Introduction]]
** [[CISO AppSec Guide: Executive Summary|Executive Summary]]
+
** [[CISO AppSec Guide v2: Executive Summary|Executive Summary]]
** [[CISO AppSec Guide: Foreword|Foreword]]
+
** [[CISO AppSec Guide v2: Foreword|Foreword]]
* The CISO Guide
+
* The CISO Guide Version 2
** [[CISO AppSec Guide: Reasons for Investing in Application Security|Part I: Reasons for Investing in Application Security]]
+
** [[CISO AppSec Guide v2: How To Start  |Part I: How To Start]]
** [[CISO AppSec Guide: Criteria for Managing Application Security Risks|Part II: Criteria for Managing Application Security Risks]]
+
** [[CISO AppSec Guide v2: How to Create  |Part II: How to Create ]]
** [[CISO AppSec Guide: Application Security Program|Part III: Application Security Program]]
+
** [[CISO AppSec Guide v2: How To Manage  |Part III: How To Manage]]
** [[CISO AppSec Guide: Metrics For Managing Risks & Application Security Investments|Part IV: Metrics For Managing Risks & Application Security Investments]]
+
** [[CISO AppSec Guide v2: How To Improve  |Part IV: How To Improve ]]
 
* Supporting Information
 
* Supporting Information
 
** [[CISO AppSec Guide: References|References]]
 
** [[CISO AppSec Guide: References|References]]
Line 29: Line 29:
 
** [[CISO AppSec Guide: Value of Data & Cost of an Incident|Appendix A: Value of Data & Cost of an Incident]]
 
** [[CISO AppSec Guide: Value of Data & Cost of an Incident|Appendix A: Value of Data & Cost of an Incident]]
 
** [[CISO AppSec Guide: Quick Reference to OWASP Guides & Projects|Appendix B: Quick Reference to OWASP Guides & Projects]]
 
** [[CISO AppSec Guide: Quick Reference to OWASP Guides & Projects|Appendix B: Quick Reference to OWASP Guides & Projects]]
 +
** [[CISO AppSec Guide v2: Application Security Playbooks|Appendix C: Application Security Playbooks]]
  
 
== Licensing ==
 
== Licensing ==
Line 55: Line 56:
 
Co-authors, contributors and reviewers:
 
Co-authors, contributors and reviewers:
  
* [[User:Tobias|Tobias Gondrom]]
 
* [[Eoin_Keary|Eoin Keary]]
 
* [[User:Andylew|Andy Lewis]]
 
* [[User:Stephanie_Tan|Stephanie Tan]]
 
* [[User:Clerkendweller|Colin Watson]]
 
 
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan]
 
* [https://www.owasp.org/index.php/User:Brennan Tom Brennan]
 +
* [https://www.owasp.org/index.php/User:Ingo_Hanke Ingo Hanke]
 +
* [https://pralab.diee.unica.it/en/DavideAriu Davide Ariu]
 +
* [https://idc-cema.com/eng/profiles/presenter/298280-naiden-nedelchev?lan=ENG Naiden Nedelchev]
 +
* [https://cybersecuritysummit.org/speakers/yan-kravchenko/ Yan Kravchenko]
 +
* [https://www.linkedin.com/in/marc-rimbau-b9396a1/ Marc Rimbau]
 +
* [https://www.linkedin.com/in/agulam/ Ante Gulam]
  
 
== Versión en español ==
 
== Versión en español ==
Line 69: Line 71:
  
 
For full information about the Application Security Guide For CISOs Project, including mailing list details, the forward plan, how to contribute, the project status, and alternative media, see the project page:
 
For full information about the Application Security Guide For CISOs Project, including mailing list details, the forward plan, how to contribute, the project status, and alternative media, see the project page:
* [https://www.owasp.org/index.php/OWASP_Application_Security_Guide_For_CISOs_Project CISO Guide Project Page]
+
* [https://www.owasp.org/index.php/OWASP_Application_Security_Guide_For_CISOs_Project_v2 CISO Guide 2018 Edition Project Page]
  
 
[[Category:OWASP_Application_Security_Guide_For_CISO_Project]]
 
[[Category:OWASP_Application_Security_Guide_For_CISO_Project]]

Latest revision as of 21:53, 3 November 2017


The CISO Guide

Application Security Guide For CISOs Version 2.0 is current a DRAFT

The OWASP 2018 OWASP Guide for CISOs is currently a work in progress and planned for publication in Q2 2018.

Contents

Licensing

The OWASP Application Security Guide For CISOs is free to use. It is licensed under the Creative Commons Attribution-ShareAlike 3.0 license, so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.

Feedback & Contributions

We hope you find the information in the OWASP CISO guide project useful. Please contribute back to the project by sending your comments, questions, and suggestions to the OWASP CISO guide mailing list. You can subscribe to the list by selecting the link herein

CISO-Guide-bar.jpg

Credits

Project lead and main author

Other contributors

Co-authors, contributors and reviewers:

Versión en español

TBD

Further Information

For full information about the Application Security Guide For CISOs Project, including mailing list details, the forward plan, how to contribute, the project status, and alternative media, see the project page: