| Open Web Application Security Project (OWASP) Top Ten Application Security Flaws and Tools Demonstration |
| Please join the Boise ISACA chapter on Thursday, November 16th as we host a presentation on the OWASP Top Ten and Tools Demo presented by Dennis A. McLaughlin, CISA, Sr. Security Engineer for SUPERVALU and Dawn Teply, CISA, IT and Financial Auditor for Boise Cascade. |
|
| The OWASP Top Ten provides a minimum standard for web application security. The OWASP Top Ten represents a broad consensus about what the most critical web application security flaws are. Adopting the OWASP Top Ten is perhaps the most effective first step towards changing the software development culture within your organization into one that produces secure code. WebGoat is a deliberately insecure J2EE web application maintained by OWASP designed to teach web application security lessons. WebScarab is a framework for analyzing applications that communicate using the HTTP and HTTPS protocols. Biographies Dennis A. McLaughlin, CISA, Security+, is a Senior Security Engineer at SUPERVALU, Inc. where he is responsible for Information Security Policies and Communication, Security in the Application Development Lifecycle as well as SUPERVALU’s Information Security Awareness campaign and training. Prior to working at SUPERVALU, Dennis spent 13 years as a Software Engineer and IT Auditor for Micron Technology. In addition to working at SUPERVALU, Dennis is also an adjunct faculty member at ITT-Tech Boise where he teaches Information Security and Web Programming classes. Dawn Teply, CISA, is an internal audit project manager at Boise Cascade, LLC, where she is responsible for both financial and IT audits within the corporate function in addition to coordinating Boise's SOX 404 program. She holds Bachelor of Science degrees in Accounting and Information Systems from the University of Idaho . In addition to working at Boise, Dawn is also a full-time educator with her three young children, ages 4, 2, and 1. |
