This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Commercial Services"

From OWASP
Jump to: navigation, search
m
m
Line 20: Line 20:
 
==== Verification  ====
 
==== Verification  ====
  
<br>Commercial OWASP ASVS verification providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use ASVS or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served,  company area(s) of application technology expertise, ASVS verification levels offered; approach to performing verifications, and contact name and email.
+
<br>Commercial OWASP ASVS verification providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use ASVS or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served,  company area(s) of application technology expertise, ASVS verification levels offered; approach to performing verifications, and contact name and email. Listings are not allowed to exceed 100 words.
 
 
Listings are not allowed to exceed 100 words.
 
  
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""
 
{| width="100%" cellspacing="1" cellpadding="1" border="0" style=""

Revision as of 02:39, 15 April 2010


This is a DRAFT page!!


Home



OWASP's mission is to make application security "visible," so that people and organizations can make informed decisions about application security risks. As a value-add to the website we have attempted to centralize OWASP project deliverable-based services for you in a single OWASP Commercial Services Registry. Examples of OWASP project deliverable-based services include: ASVS-based verification, ESAPI-based integration, SAMM-based process improvement, OWASP Guide-based training). Firms listed on the project tabs that are accessible from this page promote the development and consumption by industry and government of tools and techniques that are based on OWASP open standards, best practices and design patterns. To be listed in the OWASP Commercial Services Registry, you can find instructions here. You can also contact the project lead here.


OWASP does not endorse commercial products or services.

Asvs-ad-where-at.png


Verification


Commercial OWASP ASVS verification providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP. Organizations listed either use ASVS or will help you use it. Provider listings are required to include the following information: company name and link to corporate web site, company location and markets served, company area(s) of application technology expertise, ASVS verification levels offered; approach to performing verifications, and contact name and email. Listings are not allowed to exceed 100 words.



OWASP Member
Organization
Preferences.png

... another OWASP member organization...
Preferences.png

Acme Application Security Co. (1A ,1B)

Acme Application Security Co. is headquartered in Memphis, Tennessee. Acme Application Security Co. serves both enterprises and governments. Areas of expertise include web 2.0 social media technologies. Acme Application Security Co.'s approach to performing dynamic scans (1A) combines passive vulnerability scanning with manually testing areas of interest. Our approach to performing source code scans (1B) targets both application code and goes beyond ASVS Level 1A requirements to additionally scan any open source underlying frameworks and libraries that were modified or extended to create your application. All reports are tailored to meet organization requirements. Contact us for more information.

Last modified: April 14, 2010 - 8:36

This organization is not an OWASP member

... not an OWASP member organization...

This organization is not an OWASP member

[1]... not an OWASP member organization...



Integration


Commercial OWASP ESAPI integration providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP.

OWASP Member
Organization Name
Organization POC
Programming Languages
Preferences.png

Aspect Security 9175 Guilford Road, Suite 300 Columbia, MD 21046-2565

Mr. Jeff Williams (301) 604-4882
[email protected]

ESAPI for Java ESAPI for .NET

Preferences.png

Booz Allen Hamilton 8283 Greensboro Drive McLean, VA 22102

Mr. Mike Boberski (703) 377-0456 [email protected]

ESAPI for PHP

This organization is not an OWASP member

Acme Corp. 123 Cartoon Street
Cartoonland, IL 60045

Mr. Wile E. Coyote (555) 123-4567
[email protected]

ESAPI for Python

This organization is not an OWASP member

Some Other Place Inc. 456 Avenue
McLean, VA 22101

Mr. Who M. Eye (555) 890-1234 [email protected]

ESAPI for Haskell



Process Improvement


Commercial OWASP SAMM process improvement providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP.

OWASP Member
Organization Name
Organization POC
Business Functions
Preferences.png

Aspect Security 9175 Guilford Road, Suite 300 Columbia, MD 21046-2565

Mr. Jeff Williams (301) 604-4882
[email protected]

Business Functions
Governance
Construction
Verification
Deployment

Preferences.png

Booz Allen Hamilton 8283 Greensboro Drive McLean, VA 22102

Mr. Mike Boberski (703) 377-0456 [email protected]

Construction
Verification
Deployment

This organization is not an OWASP member

Acme Corp. 123 Cartoon Street
Cartoonland, IL 60045

Mr. Wile E. Coyote (555) 123-4567
[email protected]

Verification

This organization is not an OWASP member

Some Other Place Inc. 456 Avenue
McLean, VA 22101

Mr. Who M. Eye (555) 890-1234 [email protected]

Business Functions



Training


Commercial OWASP Guide training providers are listed below. Organizations listed are not accredited by OWASP. Neither their products nor services have been endorsed by OWASP.

OWASP Member
Organization Name
Organization POC
Guides
Preferences.png

Aspect Security 9175 Guilford Road, Suite 300 Columbia, MD 21046-2565

Mr. Jeff Williams (301) 604-4882
[email protected]

Code Review Guide
Development Guide
Testing Guide

Preferences.png

Booz Allen Hamilton 8283 Greensboro Drive McLean, VA 22102

Mr. Mike Boberski (703) 377-0456 [email protected]

Development Guide

This organization is not an OWASP member

Acme Corp. 123 Cartoon Street
Cartoonland, IL 60045

Mr. Wile E. Coyote (555) 123-4567
[email protected]

Testing Guide

This organization is not an OWASP member

Some Other Place Inc. 456 Avenue
McLean, VA 22101

Mr. Who M. Eye (555) 890-1234 [email protected]

Code Review Guide