US and Ireland Application Security Conferences 2010
This week OWASP has been holding its United States national application security (appsec) conference in University of California, Irvine.
AppSec US 2010 concludes today and, although I was unable to attend, I am looking forward to reviewing the recordings online. I'm particularly sorry I will be missing a new presentation by Michael Coates (Mozilla) on "Real Time Application Defenses - The Reality of AppSensor & ESAPI", later today.
However, I received an email last night confirming I have been provisionally accepted to speak at the next regional OWASP conference in the US—AppSec Washington DC in November. I'm delighted.
My proposed presentation topic also relates to the OWASP AppSensor project which I have mentioned previously, more than once, and is provisionally titled "Attack Detection and Prevention with OWASP AppSensor". It will describe a methodology to develop an AppSensor implementation strategy which includes sensor selection and positioning, and determination of the appropriate type of response to block or mitigate attacks based on an analysis of business risk. A lightweight implementation will also be described for organisations wishing to pilot AppSensor in their applications.
But before then. I'll be over in Dublin next Friday for a few pints of Guinness OWASP Ireland 2010. OWASP conferences elsewhere in the world are listed on the appsec conferences page.
Please introduce yourself, if you see me at an event.
Posted on: 10 September 2010 at 13:19 hrs

Comments are filtered automatically and should appear shortly after they been checked.