OWASP AppSec Ireland This Thursday
This week, the first Irish Application Security conference is being held at Trinity College, Dublin. OWASP Ireland AppSec 2009 Conference is a full-day event with two conference tracks and optional training courses on the previous day.
I am sorry not to be attending, but did at least hear Dinis Cruz's updated presentation about OunceOpen (O2), an open platform for automating application security knowledge and workflows, at the OWASP London chapter meeting last week.
This has developed considerably since I last heard Dinis speak at AppSec EU09 in May and the vision is starting to shine through. Dinis' presentation is now on the OWASP London chapter page, but I'd recommend downloading and trying the various modules from the project website and joining the mailing list. Also at last week's meeting, Dave Marsh gave a comprehensive presentation on using tokenisation surrogates to protect sensitive data. I was surprised this approach could potentially reduce the PCS DSS scope so much, with even payment card entry forms on web pages being out-of-scope. I'll need to read the justification for that.
Apart from Dublin this week, the next big application security conferences are OWASP AppSec Germany 2009 in Nuremberg, Germany on 12-13 October 2009 and OWASP AppSec 2009 in Washington, United States on 10-13 November 2009.
Posted on: 08 September 2009 at 09:28 hrs

Comments are filtered automatically and should appear shortly after they been checked.