OWASP Assessments: From Overview to Testing
A walk though of the OWASP (Open Web Application Security Project) Framework, the fundamental and progressive evaluation tool for web-facing servers referenced in PCI evaluations.
· Overview - OWASP and Free Resources Available
· Walkthrough – The OWASP Principles and Assessment Tool
· Navigate - Assessment Choices and Tool Options: Light Scan or Heavy Pen Test?
(Break / Exit Opportunity)
· Detailed Q&A Discussion of Tests or Mechanics of Assessment Tool
Why attend?
OWASP is helpful for every organization who wants customers to feel safe using their website.
Who should attend?
The “Onion Skin” approach to the class presents the information:
- first as a summary for executives planning for audits and staffing
- then to managers who will need to provide guidance to staff on how to use the tools
- and for those who wish to stay for the second half, practitioners will drill down together in a facilitated forum to cross-share experiences found valuable in tackling different tests. |