This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Category:OWASP Enterprise Application Security Project"

From OWASP
Jump to: navigation, search
 
(5 intermediate revisions by one other user not shown)
Line 1: Line 1:
 +
#REDIRECT [[OWASP Enterprise Application Security Project]]
 +
 
==== Main ====
 
==== Main ====
  
 
== Objective ==
 
== Objective ==
  
The OWASP Enterprise Application Security Project (OWASP-EAS) exists to provide guidance to people involved in the procurement, design, implementation or sign-off of large scale (ie 'Enterprise') applications. There's also a [SOMAP-EAS http://somap.org] sister project for those interested in non-technical Enterprise Application Security.
+
The OWASP Enterprise Application Security Project (OWASP-EAS) exists to provide guidance to people involved in the procurement, design, implementation or sign-off of large scale (ie 'Enterprise') applications.
 +
 
 +
== Project purpose ==
 +
 
 +
Enterprise applications security is one of the major topics in overall security area because those applications controls money and resources and every security violation can result a significant money loss. Purpose of this project is to aware people about enterprise application security problems and create a guidelines and tools for enterprise application security assessment.  
  
== Primary Goals ==
+
== primary goals ==
  
The key goals of OWASP-EAS are as follows:
 
  
#Act as a Metaproject to provide pointers to other relevant application security information within OWASP
+
Here are our primary goals:
#Provide technical guidance for procurement, design, implementation and assessment of Enterprise Application implementations
 
#To provide an open environment for the discussion of Enterprise-level Application Security
 
  
Other goals include
+
1 Aware people about enterprise applicatio security vulnerabilities by making an Annual statistics of enterprise business application security vulnerabilities. [[Enterprise Business Application Vulnerability Statistics 2009]]
  
#Expansion of OWASP-EAS into other large scale applications using a common framework
+
2 Help companies to begin assessment of enterprise applicatios by creating a [[Enterprise Business Application Security Implementation Assessment Guide]]
#To provide encouragement for vendors and integrators to adopt open security standards
+
#World Domination (TBC)
+
3 Help software companies to improve security of their solutions by creating a [[Enterprise Business Application Security Vulnerability Testing Guide v1]]
 +
 +
4 Develop a free tools for Enterprise business applicatioons assessment
  
== Call for Volunteers ==
 
  
There's a few of us already, once the mailing list is up we'd like to get more input from others on how to go about tackling the problems.
 
  
 
== Project Roadmap ==
 
== Project Roadmap ==
  
 
Have a look at the [[OWASP Enterprise Application Security Project Roadmap]]
 
Have a look at the [[OWASP Enterprise Application Security Project Roadmap]]
 
 
 
  
  
 
==== Project Identification ====
 
==== Project Identification ====
[[Category:OWASP Project|Application Security Metrics Project]]
+
[[Category:OWASP Project|Enterprise Application Security Project]
 
[[Category:OWASP Document]]
 
[[Category:OWASP Document]]
 
[[Category:OWASP Alpha Quality Document]]
 
[[Category:OWASP Alpha Quality Document]]
  
 
{{Template:OWASP Project Identification Tab
 
{{Template:OWASP Project Identification Tab
| project_name = OWASP Application Security Metrics Project
+
| project_name = Enterprise Application Security Project
| project_description = This Project will first identify and provide the OWASP community a set of application security metrics that have been found by contributors to be effective in measuring application security. This will be followed by the development of new metrics that build on the initial metrics foundation to fulfil unmet metrics requirements. The goals of this Project are to make a baseline set of application security metrics available to the OWASP community and subsequently to provide a forum for the community to contribute metrics back into the baseline
+
| project_description = This document we will describe different areas of  Assessing Enterprise  Business applications and ERP systems. The purpose of this document to Increase awareness of Business Application security and help people to start a beginning assessment of their systems and find a most critical violations.
| leader_name = Jeff Barto
+
| leader_name = Alexander Polyakov
| leader_email = jeffrey.barto@ubs.com
+
| leader_email = sh2kerr@gmail.com
 
| leader_username =  
 
| leader_username =  
 
| maintainer_name =
 
| maintainer_name =
 
| maintainer_email =  
 
| maintainer_email =  
 
| maintainer_username =  
 
| maintainer_username =  
| contributor_name1 =  
+
| contributor_name1 = Dmitriy Evdokimov
| contributor_email1 =  
+
| contributor_email1 = [email protected]
 
| contributor_username1 =  
 
| contributor_username1 =  
| contributor_name2 =  
+
| contributor_name2 = Michail Markevich
 
| contributor_email2 =  
 
| contributor_email2 =  
 
| contributor_username2 =  
 
| contributor_username2 =  
Line 76: Line 76:
 
| contributor_username10 =   
 
| contributor_username10 =   
 
| pamphlet_link =  
 
| pamphlet_link =  
| mailing_list_name = owasp-metrics
+
| mailing_list_name = owasp-eas
| links_url1 =  
+
| links_url1 = http://dsecrg.com
| links_name1 =  
+
| links_name1 = Digital Security Research Group
 
| links_url2 =  
 
| links_url2 =  
 
| links_name2 =  
 
| links_name2 =  
Line 133: Line 133:
 
__NOTOC__
 
__NOTOC__
 
<headertabs/>
 
<headertabs/>
 +
 +
[[Category:OWASP Project|Enterprise Application Security Project]] [[Category:OWASP Document]] [[Category:OWASP Alpha Quality Document]]

Latest revision as of 21:09, 15 September 2010

Main

Objective

The OWASP Enterprise Application Security Project (OWASP-EAS) exists to provide guidance to people involved in the procurement, design, implementation or sign-off of large scale (ie 'Enterprise') applications.

Project purpose

Enterprise applications security is one of the major topics in overall security area because those applications controls money and resources and every security violation can result a significant money loss. Purpose of this project is to aware people about enterprise application security problems and create a guidelines and tools for enterprise application security assessment.

primary goals

Here are our primary goals:

1 Aware people about enterprise applicatio security vulnerabilities by making an Annual statistics of enterprise business application security vulnerabilities. Enterprise Business Application Vulnerability Statistics 2009

2 Help companies to begin assessment of enterprise applicatios by creating a Enterprise Business Application Security Implementation Assessment Guide

3 Help software companies to improve security of their solutions by creating a Enterprise Business Application Security Vulnerability Testing Guide v1

4 Develop a free tools for Enterprise business applicatioons assessment


Project Roadmap

Have a look at the OWASP Enterprise Application Security Project Roadmap


Project Identification

[[Category:OWASP Project|Enterprise Application Security Project]


PROJECT INFO
What does this OWASP project offer you?
RELEASE(S) INFO
What does this OWASP project release offer you?
what is this project?
Enterprise Application Security Project

Purpose: This document we will describe different areas of Assessing Enterprise Business applications and ERP systems. The purpose of this document to Increase awareness of Business Application security and help people to start a beginning assessment of their systems and find a most critical violations.

License: N/A

who is working on this project?
Project Leader: Alexander Polyakov @

Project Maintainer:

Project Contributor(s):

  • Dmitriy Evdokimov @
  • Michail Markevich
how can you learn more?
Project Pamphlet: N/A

3x slide Project Presentation: N/A

Mailing list: Subscribe or read the archives

Project Roadmap: N/A

Main links:

Project Health: Yellow button.JPG Not Reviewed (Provisional)
To be reviewed under Assessment Criteria v2.0

Key Contacts
  • Contact Alexander Polyakov @ to contribute, review or sponsor this project
  • Contact the GPC to report a problem or concern about this project or to update information.
current release
First Release - Unknown Date - (no download available)

Release Leader: N/A

Release details: N/A :

Rating: Yellow button.JPG Not Reviewed
To be reviewed under Assessment Criteria v2.0



This category currently contains no pages or media.