Difference between revisions of "User:Achim"

From OWASP
Jump to: navigation, search
m (SoC2008 link)
(bsi link updated)
Line 26: Line 26:
  
 
* [http://www.owasp.org/images/1/1b/Best_Practices_Guide_WAF.pdf Best Practices: Einsatz von Web Application Firewalls] (co-author, 2008)
 
* [http://www.owasp.org/images/1/1b/Best_Practices_Guide_WAF.pdf Best Practices: Einsatz von Web Application Firewalls] (co-author, 2008)
 +
* [https://www.bsi.bund.de/cae/servlet/contentblob/476464/publicationFile/30632/WebSec_pdf.pdf Sicherheit von Webanwendungen: BSI-Maßnahmenkatalog und Best Practices] (author, 2005/2006)
 +
<!-- link outdated 9/2009
 
* [http://www.bsi.de/literat/studien/websec/WebSec.pdf Sicherheit von Webanwendungen: BSI-Maßnahmenkatalog und Best Practices] (author, 2005/2006)
 
* [http://www.bsi.de/literat/studien/websec/WebSec.pdf Sicherheit von Webanwendungen: BSI-Maßnahmenkatalog und Best Practices] (author, 2005/2006)
 +
-->
 
* [http://www.webappsec.org/projects/wafec/ Web Application Firewall Evaluation Criteria] (contributor, 2005)
 
* [http://www.webappsec.org/projects/wafec/ Web Application Firewall Evaluation Criteria] (contributor, 2005)
 
* [http://www.webappsec.org/projects/threat/ Web Application Security Threat Classification] (contributor and German translation, 2004/2005)
 
* [http://www.webappsec.org/projects/threat/ Web Application Security Threat Classification] (contributor and German translation, 2004/2005)

Revision as of 04:10, 10 October 2009

Hello and welcome to my user page at OWASP.org. You'll find some details about my public work and things related to web application security here.

You can reach me mailto: achim (at) owasp -dot- org.


"some" Security ..

It's difficult to describe my knowledge in the security world without being subjective, hence replace some by whatever your feel happy with. The official title on the v-card will be senior security consultant, which means something too.

(Short) CV

Doing software development since early '80s, used to networking all the time, focused on web application security starting this millenium. Have seen coming, have evaluated, have configured and used and have seen disappearing a lot of WAFs and web application security scanners. Currently employed at SecureNet GmbH.

OWASP Activities

Public Papers / Work


Things should be made as simple as possible, but no simpler (Einstein)
KISS - keep it simple stupid