This is a monthly meeting of the DC chapter of OWASP (the Open Web Application Security Project), which is designed to be a forum for local web professionals to come together and discuss Web Application Security in an open and collaborative environment.
Upon arrival, please go to the 9th floor and sign in, and you will be escorted to the meeting space. The meeting will be held in room 8S026.
Agenda for this month:
· Introduction to OWASP, Rex Booth
· The Big Picture: Web Risks and Assessments Beyond Scanning, Matt Fisher
· Security Conference Review: Black Hat & DefCon (group discussion)
· Open floor
Matt's talk will focus on the need to risk and threat model software and pick appropriate peoples, tools, and testing techniques to test against the threat model. In today's resource-constrained market many organizations are simply turning to automation to test their software security without truly understanding the limitations. This talk will discuss some of the broader threat cases, testing techniques for them, and whether current state of the industry technology is effective against them.