|
This month we will be holding our meeting at the DC offices of Deloitte & Touche (1001 G St NW Washington DC 20001).
The meeting will start at 1830. Upon arriving, please go to the 9th floor and sign in, someone will escort you to the meeting location, Rm. 8S026. If you are late and can not get in, please call 202.270.8715.
This month, our agenda is as follows:
* Introduction to OWASP, Rex Booth
* The Big Picture: Web Risks and Assessments Beyond Scanning, Matt Fisher
* Security Conference Review: Black Hat & DefCon (group discussion)
* Open floor
Matt's talk will focus on the need to risk and threat model software and pick appropriate peoples, tools, and testing techniques to test against the threat model. In today's resource-constrained market many organizations are simply turning to automation to test their software security without truly understanding the limitations. This talk will discuss some of the broader threat cases, testing techniques for them, and whether current state of the industry technology is effective against them.
|
| Open Web Application Security Project (OWASP) - The Open Web Application Security Project (OWASP) is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at www.owasp.org. |
| https://www.owasp.org/index.php/Washington_DC |
|