Difference between revisions of "New Jersey"

From OWASP
Jump to: navigation, search
m
(28 intermediate revisions by 3 users not shown)
Line 1: Line 1:
{{Chapter Template|chaptername=NY/NJ |extra= | mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-newjersey|emailarchives=http://lists.owasp.org/pipermail/owasp-newjersey}} 
+
= OWASP New Jersey =
  
==SEPTEMBER 6th MEETING==
+
<center>[[Image:Trustwave_banner_ad_Sept_18,_2012.png|link=https://www.trustwave.com/application-security/]]</center>
OWASP supports Global Security Week (Sept. 3rd-9th) [http://www.globalsecurityweek.com/index.html Click Here More Info...]. In local support of this worldwide effort, the next NY/NJ OWASP Chapter meeting will be on <b> <u>September 6th 5:30pm-9:00pm </u></b>
+
  
===PRIMARY SPONSOR: [http://www.amex.com AMERICAN STOCK EXCHANGE]===
+
<h2>[http://www.meetup.com/OWASP-New-Jersey https://www.owasp.org/images/8/82/Meetup_logo3.jpg] [http://www.meetup.com/OWASP-New-Jersey New Jersey Chapter] [http://www.meetup.com/OWASP-New-Jersey Click Here More Info]</h2>
Special thanks to OWASP Board Member: Doug Shin of the AMEX
+
<b>Meeting Address:</b> 86 Trinity Place, NY NY 10006 ~ [http://tinyurl.com/2c5ohu Directions]
+
  
<b>Event coSponsors:</b> [http://signacert.com SIGNACERT] ~~ [http://www.ouncelabs.com OUNCE LABS] ~~ [http://www.accessitgroup.com ACCESSIT] ~~ [http://www.fortifysoftware.com FORTIFY SOFTWARE] ~~ [http://www.cenzic.com CENZIC]
 
  
---
+
<headertabs />  
 
+
TOPIC: <b>Global Security Week Working Group</b>
+
What is the current state of Privacy on Web Application Security?
+
What should we be focusing on?
+
 
+
Panel Leader: Tom Brennan [http://www.globalsecurityweek.com/html/calendar.html GSW]
+
 
+
---
+
 
+
TOPIC: <b>Why today's vulnerability assessments are failing and a case for industry standardization</b>
+
 
+
As organizations mature their information security capabilities they start to extend their requirements to their partners and providers.  Providing for the identification and management of information security issues are becoming part of contractual language. Vulnerability Assessment / ethical reports today are used today as one measurable data point to build a confidence in the status of other parties’ web applications and is generally an accepted set in due diligence.  The challenge today is these Vulnerability Assessments are inconsistent in scope & rigor, and reported in a form that makes them incomparable between institutions.  It is frequently impossible to understand what test design was used (black box/white box), what set of conditions were tested (OWASP top ten only, CVE, items found by common scanning tools, manually exercised conditions, etc) and how issues were rated for severity (CVSS, vendor provided, customer provided, etc).  A similar problem existed with information security assessments of operational and physical security at outsourced service providers used by financial institutions and was address by developing an “agreed upon procedures” approach to outline common things needed by institutions so that assessments could be done once by a neutral party and then reused. This presentation, while not offering the complete answer for application security testing, will attempt to outline the components needed for such a solution.
+
 
+
SPEAKER BIO: Mark Clancy is Senior Vice President at [http://www.citigroup.com Citigroup]
+
 
+
---
+
 
+
TOPIC: <b>Hackers...BotNets oh My!</b>
+
FBI Cybercrimes task force to discuss global status of BotNets.
+
 
+
SPEAKER BIO: Chris Stangel [http://newyork.fbi.gov/nyfohome.htm NYC FBI Cyber Crime Unit]
+
 
+
---
+
 
+
TOPIC: <b>OWASP Project JBroFuzz: Fuzzing for Network and Web Applications </b>
+
 
+
JBroFuzz is a OWASP stateless network protocol fuzzer that emerged from the
+
needs of penetration testing. This presentation will aim to illustrate
+
efficient ways of fuzzing in order to minimize the amount of time spent in
+
discovering application and network protocol vulnerabilities.
+
 
+
SPEAKER: Dr. Yiannis Pavlosoglou is a Security Project Manager at
+
[http://www.irmplc.com Information Risk Management]
+
 
+
---
+
 
+
TOPIC: <b>Stock fluctuation from an unrecognized influence. </b>
+
 
+
SPEAKER: Justine Bone - Aitel - [http://www.immunityinc.com Immunity Security]
+
 
+
---
+
 
+
<center><b> Meetings are FREE and open to the PUBLIC - </b>[http://fs7.formsite.com/OWASP/form185804020/index.html RSVP IS REQUESTED] </center>
+
  
 
<hr>
 
<hr>
 +
Who are the active chapter members that are helping to build a robust chapter in 2012?
  
==OCTOBER 25th MEETING==
+
NJ = http://www.meetup.com/OWASP-New-Jersey/members/?op=leaders
Full Day, information security summit happening in New Jersey on October 25th. At this all day event, learn from industry experts on topics of information security.  There is no charge for this event. <b> <u>October 25th 9:30am-4:30pm </u></b>
+
 
+
===PRIMARY SPONSOR: [http://aboutus.vzw.com/aboutusoverview.html VERIZON WIRELESS]===
+
Special thanks to: Philip Varughese
+
<b>Meeting Address:</b> 295 N Maple Ave, Basking Ridge, NJ 07920 ~ [http://tinyurl.com/2vuh7f Directions]
+
 
+
<b>Event coSponsors:</b> [http://www.accessitgroup.com ACCESSIT] ~~ [http://www.cenzic.com CENZIC]
+
~~ [http://www.archer-tech.com ARCHER TECHNOLOGIES]  ~~ [http://www.intrepidusgroup.com INTREPIDUS GROUP] ~~ [http://www.mandiant.com MANDIANT]
+
---
+
 
+
TOPIC: <b>Keynote</b>
+
 
+
SPEAKER: Renato Delatorre, Verizon Wireless
+
 
+
---
+
 
+
TOPIC: <b>Social Engineering</b>
+
 
+
SPEAKER: Kevin Mitnick
+
 
+
---
+
 
+
TOPIC: <b>ISO 27001 What is it... Why do you care?</b>
+
 
+
SPEAKER BIO: Mahi Dontamsetti
+
 
+
--
+
 
+
TOPIC: <b>VOIP - Can you hear me now?</b>
+
 
+
SPEAKER BIO: Paul Rohmeyer
+
 
+
--
+
 
+
TOPIC: <b>Internet Fraud - War Stories</b>
+
 
+
SPEAKER BIO: Mike Esposito
+
 
+
---
+
 
+
TOPIC: <b>Dig Your Own Hole: 12 Ways to Go Wrong with Java Security</b>
+
 
+
SPEAKER BIO:  Richard Bowen
+
 
+
--
+
 
+
TOPIC: <b>IMS = Is Missing Security? </b>
+
 
+
SPEAKER: Peter Thermos, Michael McCobb
+
 
+
 
+
--
+
 
+
 
+
TOPIC: <b>TBD</b>
+
 
+
SPEAKER BIO: TBD
+
 
+
--
+
 
+
<center><b> Meetings are FREE and open to the PUBLIC - </b> </center>
+
 
+
<hr>
+
 
+
To submit educational topic for upcoming meeting please provide submit your powerpoint using the [http://www.owasp.org/images/5/54/Presentation_template.ppt OWASP Template] and include a speaker BIO. If you wish to become a sponsor or co-sponsor please click on one of the below email addresses of our active board members.
+
 
+
= NY/NJ OWASP Chapter Leaders =
+
<ul>
+
Officers
+
*<b>President:</b> [mailto:jinxpuppy(at)gmail.com Tom Brennan]
+
*<b>Vice President:</b> [mailto:pperfetti(at)nba.com Pete Perfetti]
+
*<b>Secretary:</b> [mailto:santoniewicz(at)net2s.com Steve Antoniewicz]
+
*<b>Treasurer:</b> [mailto:tom.ryan(at)providesecurity.com Tom Ryan]
+
Board of Directors
+
*<b>Board Member:</b> [mailto:mdontamsetti(at)gmail.com Mahi Dontamsetti]
+
*<b>Board Member:</b> [mailto:pstern100(at)gmail.com Peter Stern]
+
*<b>Board Member:</b> [mailto:KReiter(at)insidefsi.net Kevin Reiter]
+
*<b>Board Member:</b> [mailto:BrianPei(at)yahoo.com Brian Peister]
+
*<b>Board Member:</b> [mailto:dougshin(at)gmail.com Douglas Shin]
+
Educational Advisors
+
*<b>New Jersey Institute of Technology:</b> [mailto:oe2(at)njit.edu Osama Eljabiri]
+
*<b>Polytechnic University:</b> [mailto:memon(at)poly.edu Nasir Memon]
+
</ul>
+
 
+
 
+
The chapter mailing address is:
+
  
NY/NJ Metro OWASP
+
[[Category:OWASP Chapter]]
759 Bloomfield Ave #172
+
West Caldwell, New Jersey 07006 <br>
+
973-202-0122
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
<br>
+
[http://www.proactiverisk.com ~]
+

Revision as of 07:33, 25 September 2012

OWASP New Jersey

Trustwave banner ad Sept 18, 2012.png

Meetup_logo3.jpg New Jersey Chapter Click Here More Info



Who are the active chapter members that are helping to build a robust chapter in 2012?

NJ = http://www.meetup.com/OWASP-New-Jersey/members/?op=leaders