<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NovaInfosecPortal.com &#187; conferences</title>
	<atom:link href="http://www.novainfosecportal.com/tag/conferences/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.novainfosecportal.com</link>
	<description>News, events, &#38; resources for infosec professionals in NoVA, DC, &#38; MD</description>
	<lastBuildDate>Mon, 06 Feb 2012 18:30:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Interview About AppSec DC with OWASP’s Rex Booth</title>
		<link>http://www.novainfosecportal.com/2009/09/23/interview-about-appsec-dc-with-owasp%e2%80%99s-rex-booth/</link>
		<comments>http://www.novainfosecportal.com/2009/09/23/interview-about-appsec-dc-with-owasp%e2%80%99s-rex-booth/#comments</comments>
		<pubDate>Wed, 23 Sep 2009 17:00:48 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[appsec]]></category>
		<category><![CDATA[appsec-dc]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[owasp-dc]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=2213</guid>
		<description><![CDATA[With less than two months to go until AppSec DC is here, AppSec organizer and OWASP chapter lead and international committee member Rex Booth was nice enough to do an interview with us about all things AppSec. In this interview, Rex tells us who should attend AppSec this year, why he got involved with AppSec in the first place, and why application security is one of the most important areas of the security field. Why did you originally get involved in AppSec, and how have you seen AppSec grow since you first got involved? Following undergrad, I immediately started working as a web application developer.  In college, I had a professor who had the foresight to emphasize the importance of security within applications, and I took it to heart – first as a developer and later as a consultant.  In the years since I started professionally, AppSec has matured and grown significantly to the point where the field is almost becoming crowded – which is a great thing – but we still haven’t fully penetrated the most important market: developers. In your own words, what is the theme of AppSec this year, and which part of AppSec are you looking [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Rex+Booth+http%3A%2F%2Fj.mp%2FnkHl3p" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/09/23/interview-about-appsec-dc-with-owasp%e2%80%99s-rex-booth/&amp;t=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Rex+Booth" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>With less than two months to go until <a href="../events/infosec-conferences/#owasp-appsec-dc">AppSec DC</a> is here, AppSec organizer and <a href="../general/infosec-organizations/#owasp">OWASP</a> chapter lead and international committee member Rex Booth was nice enough to do an interview with us about all things AppSec.</p>
<p>In this interview, Rex tells us who should attend AppSec this year, why he got involved with AppSec in the first place, and why application security is one of the most important areas of the security field.</p>
<p><strong>Why did you originally get involved in AppSec, and how have you seen AppSec grow since you first got involved? </strong><br />
<em><br />
Following undergrad, I immediately started working as a web application developer.  In college, I had a professor who had the foresight to emphasize the importance of security within applications, and I took it to heart – first as a developer and later as a consultant.  In the years since I started professionally, AppSec has matured and grown significantly to the point where the field is almost becoming crowded – which is a great thing – but we still haven’t fully penetrated the most important market: developers.</em><br />
<strong><br />
In your own words, what is the theme of AppSec this year, and which part of AppSec are you looking forward to the most? </strong></p>
<p><em>From an OWASP perspective, I think the theme could easily be maturity; meaning that as an organization, we’re growing numerically, we’re growing in terms of recognition, and our products – our tools, documentation, and methodologies – have truly come into their own.  Personally, I’m looking forward to November 14th, the day after the conference, when I can look back and admire the completion of a successful event that brought together so many talented people under one roof.</em></p>
<p><strong>For those that aren&#8217;t already familiar with AppSec, who should attend, and which tracks would you recommend for those that don&#8217;t have a technical background? </strong></p>
<p><em>In an ideal world, everybody would attend, since application security is the responsibility of everybody from the end user, to the developer, to executive leadership. I think the ultimately unsatisfying answer is that it depends on your background and your role in your organization.  As a manager, I’d personally probably gravitate to the SDLC and Compliance tracks, but we’ve received so many quality presentations, I think each individual will have to make some tough decisions on what to attend.</em></p>
<p><strong>On that note, this year&#8217;s AppSec will hold hands-on training before the conference; what kind of training will be offered, and how does it tie into the conference as a whole?</strong></p>
<p><em>We’re fortunate to offer a wide variety of training from very qualified firms and individuals.  Our training selection will cover topics ranging from hands-on testing to threat modeling to secure development.  These trainings also include various technologies, so if you focus on Java or .Net or PHP, we have classes that focus on those technologies.  We made a concerted effort to provide training that reflects the diverse audience we expect at the conference; security professionals, developers, managers and everyone in-between – there’s truly something for everyone.</em></p>
<p><strong>The goal of OWASP is to make application security more visible; why do you feel that application security is one of the most important areas of the security field?</strong></p>
<p><em>Other facets of security have become something of a science over time.  Application security very much remains an art.  Accordingly, we as a community and as individual users aren’t able to apply a patch or deploy a device and call it a day.  We have to remain vigilant and continue to actively seek and develop advances in our field.  It’s not that application security is inherently more important than other aspects of security – it’s that application security is currently the weakest link in the chain and needs the most attention.</em><br />
<strong><br />
AppSec is still looking for volunteers; what kind of people are you looking for, and what kind of time commitment should they be able to give? </strong></p>
<p><em>The most important characteristic we’re looking for in our volunteers is dedication and the ability to follow-through.  Even if you only have 10 hours to give, we likely have an opportunity for you to participa</em>te.<br />
<strong><br />
Lastly, if people walk away with only one thing from AppSec this year, what do you hope it is?<br />
</strong><em><br />
I hope that everyone who attends walks away feeling that they, as individuals, as professionals, and as members of our community, can make a difference in application security.</em></p>
<p><strong>Rex&#8217;s Bio: </strong>Rex Booth is a Senior Manager with Grant Thornton’s Global Public Sector practice in Alexandria, VA.  He has over nine years of professional experience in application development and information security services for government agencies, private industry, and financial institutions.  During his tenure at previous employers, he designed and developed complex distributed web-based applications.  As a member of a managed security services team, he co-architected and implemented a scalable information detection and prevention information aggregation solution for use in a real-time 24/7 information security monitoring system, correlating and reporting on hundreds of devices.  Since joining Grant Thornton, Rex has managed and assisted with multiple information security and risk management engagements auditing IT system controls including FISMA, IV&amp;V, SOX, and OMB A-123 engagements as well as identity management and system certification and accreditation efforts.  Rex has presented on the topic of information security and assessment methodologies to various institutions and is currently a chapter lead and international committee member for the Open Web Application Security Project (OWASP).</p>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>A special thanks to Rex, Doug Wilson, and Mark Bristow for agreeing to interview with us. Doug&#8217;s interview is <a href="http://www.novainfosecportal.com/2009/09/09/interview-about-appsec-dc-with-owasps-doug-wilson/">already available</a>, and Mark&#8217;s interview will be published soon, so keep an eye out!<br />
</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Rex+Booth+http%3A%2F%2Fj.mp%2FnkHl3p" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/09/23/interview-about-appsec-dc-with-owasp%e2%80%99s-rex-booth/&amp;t=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Rex+Booth" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/09/23/interview-about-appsec-dc-with-owasp%e2%80%99s-rex-booth/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interview About AppSec DC with OWASP&#8217;s Doug Wilson</title>
		<link>http://www.novainfosecportal.com/2009/09/09/interview-about-appsec-dc-with-owasps-doug-wilson/</link>
		<comments>http://www.novainfosecportal.com/2009/09/09/interview-about-appsec-dc-with-owasps-doug-wilson/#comments</comments>
		<pubDate>Wed, 09 Sep 2009 17:00:52 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[appsec-dc]]></category>
		<category><![CDATA[appsecdc]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[doug-wilson]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[owasp-dc]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=2112</guid>
		<description><![CDATA[With AppSec DC right around the corner, we were lucky enough to secure an interview with OWASP co-chair Doug Wilson. In addition to co-chairing OWASP (a formidable feat in itself) Dough is also an integral part of this year&#8217;s AppSec DC. In this interview, Doug sheds light on what AppSec DC is all about, and why you should attend if you aren&#8217;t planning to already. Also be sure to check out the official AppSec DC wiki page to find out more about how you can attend or get involved in this year&#8217;s AppSec DC. What can people expect from this year&#8217;s AppSec compared to previous years? AppSec, like a lot of OWASP and Web App Sec in general, is still growing into full maturity. This year&#8217;s AppSec will be the biggest conference that OWASP has done to date, and probably the biggest Web Application Security conference in the world. Bigger is not always better, but I think that the size and scope this year have allowed us to get a real wealth of speakers and talent to take part in this event. The conference itself hasn&#8217;t been influenced by events in Washington, so much as current events influenced the choice [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Doug+Wilson+http%3A%2F%2Fj.mp%2Fnv5PE0" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/09/09/interview-about-appsec-dc-with-owasps-doug-wilson/&amp;t=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Doug+Wilson" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>With <a href="http://www.novainfosecportal.com/events/infosec-conferences/#owasp-appsec-dc">AppSec DC</a> right around the corner, we were lucky enough to secure an interview with <a href="http://www.novainfosecportal.com/general/infosec-organizations/#owasp">OWASP</a> co-chair Doug Wilson. In addition to co-chairing OWASP (a formidable feat in itself) Dough is also an integral part of this year&#8217;s AppSec DC.</p>
<p>In this interview, Doug sheds light on what AppSec DC is all about, and why you should attend if you aren&#8217;t planning to already. Also be sure to check out the official AppSec DC <a href="http://www.owasp.org/index.php/OWASP_AppSec_DC_2009">wiki page</a> to find out more about how you can attend or get involved in this year&#8217;s AppSec DC.</p>
<p><strong>What can people expect from this year&#8217;s AppSec compared to previous years? </strong></p>
<p><em>AppSec, like a lot of OWASP and Web App Sec in general, is still growing into full maturity. This year&#8217;s AppSec will be the biggest conference that OWASP has done to date, and probably the biggest Web Application Security conference in the world. Bigger is not always better, but I think that the size and scope this year have allowed us to get a real wealth of speakers and talent to take part in this event. The conference itself hasn&#8217;t been influenced by events in Washington, so much as current events influenced the choice by OWASP to have the event IN Washington itself. The OWASP board charged us with creating a quality conference, which they would have done regardless of location, but they especially targeted the DC Metropolitan area because of the many things that OWASP has to offer to the federal government, combined with the rapidly emerging importance of Web AppSec to the federal space at the same time.</em></p>
<p><em>Cyber Security is a big concern across the boards inside the beltway, but let&#8217;s face it &#8212; network security is a more mature field. There are more solutions and people ready to provide those solutions on that front, whereas the Web App Sec field is still somewhat immature in the federal space. Thus an organization such as OWASP that is developing practical tools and guides that can be used to build solutions for little or no cost in that space is invaluable to the government . . . if the government is aware that it is there, and how it can be utilized. We really hope that a lot of federal decision makers, at high and low levels, take advantage of the opportunity of having OWASP&#8217;s national gathering right in the middle of DC, so they can become acquainted with what we have to offer.<span id="more-2112"></span></em></p>
<p><strong>Is AppSec still looking for volunteers? If so, what do you need the most help with, and how should people go about getting involved?</strong></p>
<p><em>AppSec is always looking for volunteers. OWASP is a non-profit, and aside from specific vendors hired to come in and fulfill some contracts (such as catering), almost none of the people working the conference from the OWASP side will be paid. We are doing it because we are passionate about what OWASP stands for, and because we want to pull off an excellent conference. We&#8217;ll need help to do that, and are looking for equally passionate people to help out.</em></p>
<p><em>What we mainly need is people to staff the days of the show: Obviously, this is a trade off, because if you are working the show, you will miss out on part or all of the content that attendees get to appreciate, but you will be helping the event happen, and without that, no one would get to see the content. All of the organizers and our &#8220;Arch Minions&#8221; as we have taken to calling them (lead volunteers) are willing to make that sacrifice. However, we will have many positions that need filling that can be staffed for part of the conference, and we invite people who want to help out, or who want to see only part of the conference on the cheap to sign up and help make this event happen. You&#8217;ll get the opportunity to see some of the talks, and work the rest of the event. We&#8217;ll need folks for registration, badge checking, speaker and trainer assistance, facilities liaisons, and much more. If you are interested, you can contact myself or one of the other organizers via our OWASP emails (fairly easy to dig up), or by emailing infoATappsecdcDOTorg.</em></p>
<p><em>Another thing we will always need more of are sponsors. Sponsorships are important to the depth of our conference. Without sponsors, we can still provide the fundamental conference, but sponsorship dollars help OWASP and help us put on a better conference, with more perks and benefits for the attendees, which make for a more enjoyable overall experience. So every additional sponsor we sign up will add to the quality of the experience for everyone attending. If you are interested in sponsoring, or know an organization that would be a good fit, please <a href="http://www.owasp.org/index.php/Main_Page">contact us</a>.</em></p>
<p><strong>While AppSec places a heavy focus on people who are already in the field, you also make AppSec open to students. What do you hope college students in particular will get out of AppSec, and how do you think it will influence them when they graduate and enter the field?</strong></p>
<p><em>The biggest thing I think that anyone wants to get out of a conference like AppSec is to learn new things, and interact with other people who are knowledgeable in their field. I think that that is also a lot of what drives students in any discipline, and AppSec will provide an excellent learning environment to properly motivated individuals. My hope is that we will attract people who are developers and are curious about security, or people who are studying a standard IS/IT/IA track and want to learn more about application security. One of the most powerful people for making effective change in application security in any organization is a security conscious developer. Right now, that&#8217;s a rare animal, but someone who has development skills and security knowledge has the best of both worlds, and is in a very good position to look for great career opportunities, even in a &#8220;down market.&#8221; My hope is that we can take people who are aware of the concept of security, but haven&#8217;t really prioritized it, and make them re-evaluate how important it is, and eventually just include it in how they go about creating applications in the future. That&#8217;s the ultimate goal of Web App Sec, really &#8212; having a world where all developers are security conscious, and security is considered from the first inkling of putting a project together.</em></p>
<p><em>Recently, Mark Bristow (another organizer) and I gave a talk at the DC PHP Users Group on Web Application Security 101, and how the OWASP Top Ten applied to it. We got a fairly warm reception, and I felt good about it. But a week or so later, I was at a store near the University of Maryland College Park campus, and someone stopped me coming out the door. It was a person who had seen the talk at the DC PHP group &#8212; but was also a CS student at Maryland. He was really excited about the talk, and really wanted to know more, and to attend the conference. That made me feel much better than just &#8220;good&#8221; &#8212; that one bit of outreach had possibly taken someone who was going into the field of application development, and made them aware of something that could reshape their entire career for the better. We had made them start to prioritize security in what they did, and having them be excited about it on top of it. That&#8217;s awesome! I think that&#8217;s why we want to encourage students, and that&#8217;s what they can get out of it above and beyond what they learn at the training or talks.</em></p>
<p><em>In the press release for this year&#8217;s AppSec, you say &#8220;AppSec DC is a unique opportunity for federal decision makers and key technologists to become familiar with OWASP and the resources it has to offer.&#8221; AppSec has a heavy mix of both private and public sector speakers this year. Why do you feel it is especially timely for the private and public sectors to learn where each other is coming from?</em></p>
<p><em>One of the things about Web Application Security is that it&#8217;s a really big problem to try and solve. It affects everyone who uses the internet, and potentially even those who don&#8217;t. At a time where the government is trying to tackle the gigantic issues of protecting National Critical Infrastructure and securing IT resources across the government, the main access method to both control of infrastructure and information (i.e. the &#8220;Web&#8221;) is the most important thing to focus on. Only by working together and collaborating will we be able to make inroads on this massive problem, and both sides have resources that the other do not.</em></p>
<p><em>If we wait for the government to figure out all the expertise that has been developed in the private sector, or if we wait for the private sector to have the reach and impact of the government, we&#8217;re doomed. However, if the government reaches out to  the public and private companies and groups (such as OWASP) who are already focused in this area, it can be a winning situation all round. The government (and the citizens!) of many countries, not just the United States, can have more confidence in the stability of their infrastructure and their government resources, while the governments provide growth opportunities for companies and organizations that provide the expertise. I think that every day we do NOT have this sort of collaboration in place is one where we get further and further away from the constantly moving target of creating more secure web applications for all walks of life.</em></p>
<p><strong>You also go on to say that, &#8220;OWASP&#8217;s mission and community align closely with the goals set forth by the US Chief Information Officer: transparency, engagement of staff, reduction of cost, and innovation in technology. OWASP can enable the government to attain these goals in the pursuit of securing critical technologies that depend on the web.&#8221; Which tracks at this year&#8217;s AppSec would you recommend for government employees who want to reach the goals you outlined?</strong></p>
<p><em>It really depends on the employees role within the government. I like to feel that we have something for everyone. For those who are new to OWASP, and/or those who focus on high level decision making, we have several tracks that talk about some of our core ideas, as well as steps to apply security at a process or management level. Tracks such as the OWASP and the SDLC track on the first day, and the Process, Metrics, and Compliance track on the second day all have a wide variety of talks that will provide value to decision makers, managers, and development team leaders, or anyone who wants to get an overview of how you can apply good web application security practices to your organization&#8217;s current efforts. Conversely, we&#8217;re not letting our technical specialists down. The Tools track, the Web 2.0 track, the OWASP track, The Attack and Defend track, and pieces of all the other tracks will appeal to engineers who are developing or attacking applications and want to know what&#8217;s new and on the cutting edge. A large number of our speakers are experienced presenters, with previous talks at AppSec, Black Hat, Defcon, Shmoocon, and others under their belts.</em><br />
<strong><br />
Do you feel that some of the training courses offered on the 10th and 11th would be good for government employees who want to learn about application security more deeply, but might not have a technical background?</strong></p>
<p><em>Again, it will depend on their role. We have good courses for technical and non-technical people who are interested in Web App Sec. For leaders and managers, we have the Threat Modeling Express course from Security Compass, and Leading the Development of Secure Applications from Aspect Security. Both of those courses are designed for non-technical decision makers, and both are being taught by experts from top companies in the field. If an attendee is interested in learning a bit more about the technical process, we have a variety of courses deal with &#8220;how to learn to test&#8221; in various arenas, such as the Samurai Web Testing Framework class from Inguardians, and the Applying the OWASP Testing Guide with the OWASP Live CD course taught by Matt Tesauro (creator and project lead on the Live CD). These courses will probably require a little more technical knowledge, but will teach some of the fundamentals of how to test a web application and walk users through some of the steps involved in the process.</em></p>
<p><strong>And lastly, what would you say to those who are still sitting on the fence about attending AppSec? </strong></p>
<p><em>I&#8217;d say that this is a great opportunity for everyone interested or affected by Web Application Security, but especially those located near Washington DC. DC has a huge population of people who are interested in security, and an even bigger population who should be and are affected daily by decisions that are made (or not made) regarding security. AppSecDC offers a very inexpensive, extremely valuable learning and networking opportunity which is unlike anything else ever offered in the District. If you are not from DC, it&#8217;s a chance to come and see the infosec climate in the Nation&#8217;s Capital, and interact with government employees and those who work with them, at the same time listening to and learning from some of the top minds in Web Application Security from around the world. This is the biggest OWASP event, and likely the biggest Web Application Security Event ever held. Considering the price tag (especially with OWASP membership discount and early bird registration discounts), it should be a very simple decision when you see the value that you will get for your investment.</em></p>
<p><em>As an additional incentive to out of towners, our location is right in the middle of downtown at the Walter E. Washington Convention Center, and our host hotel, the Grand Hyatt Washington has been nice enough to extend our convention rate through the weekend, so if you are coming in from out of town, you can stay the weekend and see the sites of the nation&#8217;s capital as well.</em></p>
<p><strong>Doug&#8217;s Bio</strong>: Doug Wilson is a Senior Application Engineer with SAIC, where he supports government and private sector customers. He specializes in Information Security and Highly Available Web Architectures. Doug has been working in a variety of IT positions for the past ten years, and has always been &#8220;the security guy&#8221; regardless of what he&#8217;s been doing. Prior to joining SAIC, Doug worked as a contractor at the National Institutes of Health for almost six years. While at NIH, his main duties were developing progressive security and application hosting programs for a group that supports infrastructure at NIH for over 40,000 users. Prior to NIH, Doug had worked for several local web hosting companies.</p>
<p>When Doug is not working feverishly trying to get everything in order for AppSecDC, he is also a co-chair of the Washington DC Open Web Application Security Project (OWASP) chapter, and founder/organizer of the monthly CapSec DC happy hour. He also participates in the DC web design and development community, having presented on Web Application Security at Refresh DC, Barcamp DC, the DC PHP Users Group, George Washington University, and other events in the DC metro area.</p>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>A special thanks to Doug, Rex Booth, and Mark Bristow for agreeing to interview with us. Mark and Rex&#8217;s interviews will be published in the upcoming weeks, so keep an eye out for them!</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Doug+Wilson+http%3A%2F%2Fj.mp%2Fnv5PE0" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/09/09/interview-about-appsec-dc-with-owasps-doug-wilson/&amp;t=Interview+About+AppSec+DC+with+OWASP%E2%80%99s+Doug+Wilson" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/09/09/interview-about-appsec-dc-with-owasps-doug-wilson/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>In Focus: Conferences Page</title>
		<link>http://www.novainfosecportal.com/2009/09/04/in-focus-conferences-page/</link>
		<comments>http://www.novainfosecportal.com/2009/09/04/in-focus-conferences-page/#comments</comments>
		<pubDate>Fri, 04 Sep 2009 15:00:13 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[in-foucus]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=2034</guid>
		<description><![CDATA[You&#8217;ve all all seen our Conferencespage, right? After all, it&#8217;s one of the most comprehensive lists of infosec conferences in and around the NoVA, MD, and DC area, so it&#8217;s safe to assume that you&#8217;ve already referenced it and used it to attend a ton conferences. We kid, we kid. The truth is, many people don&#8217;t know that in addition to a detailed list of infosec meetups, we also have a listing of infosec conferences that we update on a regular basis. We do this so you can plan ahead for conferences that you&#8217;d like to attend. Like our NoVA Meetups page, we list the name of the conference and provide a link to its website or registration page. Unlike the NoVA Meetups page, we organize the conferences by the month they are estimated to take place in. And we don&#8217;t just stop at conferences taking place in the NoVA, MD, or DC area; we also have a listing of what we call &#8220;Drivable from NoVA Infosec Conference Events&#8221;—conferences that aren&#8217;t in the immediate area, but can be driven to within a days time. We also have a listing of national and international conferences for those of you who like to get out of the [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=In+Focus%3A+Conferences+Page+http%3A%2F%2Fj.mp%2FnNGYyZ" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/09/04/in-focus-conferences-page/&amp;t=In+Focus%3A+Conferences+Page" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>You&#8217;ve all all seen our <a href="http://www.novainfosecportal.com/events/infosec-conferences/">Conferences</a>page, right? After all, it&#8217;s one of the most comprehensive lists of infosec conferences in and around the NoVA, MD, and DC area, so it&#8217;s safe to assume that you&#8217;ve already referenced it and used it to attend a ton conferences.</p>
<p>We kid, we kid. The truth is, many people don&#8217;t know that in addition to a detailed list of <a href="http://www.novainfosecportal.com/events/nova-meetups/">infosec meetups</a>, we also have a listing of infosec conferences that we update on a regular basis. We do this so you can plan ahead for conferences that you&#8217;d like to attend.</p>
<p>Like our <a href="http://www.novainfosecportal.com/events/nova-meetups/">NoVA Meetups</a> page, we list the name of the conference and provide a link to its website or registration page. Unlike the NoVA Meetups page, we organize the conferences by the month they are estimated to take place in.</p>
<p>And we don&#8217;t just stop at conferences taking place in the NoVA, MD, or DC area; we also have a listing of what we call &#8220;Drivable from NoVA Infosec Conference Events&#8221;—conferences that aren&#8217;t in the immediate area, but can be driven to within a days time.<span id="more-2034"></span></p>
<p>We also have a listing of national and international conferences for those of you who like to get out of the area every once in a while. These include favorites such as <a href="http://www.novainfosecportal.com/events/infosec-conferences/#blackhateurope">BlackHat</a> (the one in Europe) and the <a href="http://www.novainfosecportal.com/events/infosec-conferences/#rsa">RSA</a> conference in San Francisco.</p>
<p>So if you&#8217;re looking for a good conference to attend, you now know where to look. Why not tell a friend about our Conferences page and plan to attend one together?</p>
<p>Don&#8217;t forget—you can also search <a href="http://www.twitter.com/grecs">@grecs</a> <a href="http://twitter.com/#search?q=grecs%20%23con">#con</a> during the week for any new or updated conference new.</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=In+Focus%3A+Conferences+Page+http%3A%2F%2Fj.mp%2FnNGYyZ" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/09/04/in-focus-conferences-page/&amp;t=In+Focus%3A+Conferences+Page" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/09/04/in-focus-conferences-page/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PrivacyCampDC Infosec Conference Event &#8211; Saturday, 06-20</title>
		<link>http://www.novainfosecportal.com/2009/06/16/privacycampdc-infosec-conference-event-saturday-06-20/</link>
		<comments>http://www.novainfosecportal.com/2009/06/16/privacycampdc-infosec-conference-event-saturday-06-20/#comments</comments>
		<pubDate>Tue, 16 Jun 2009 15:00:27 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[governmental-policy]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[privacycampdc]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1687</guid>
		<description><![CDATA[There&#8217;s been quite a bit of buzz surrounding this year&#8217;s PrivacyCampDC, and it&#8217;s easy to see why. Described as &#8220;an unconference about [p]rivacy with a particular focus on electronic privacy and Government Policy,&#8221; the goal of PrivacyCampDC is to &#8220;connect researchers, developers, practitioners, citizens and other enthusiasts for a day of intense collaboration and knowledge sharing.&#8221; And lets be honest: the world &#8216;camp&#8217; just sounds so much more interesting than &#8216;conference,&#8217; doesn&#8217;t it? We&#8217;re really excited to see how this event plays out, so if you end up attending, please drop us a line about how it went. Also be sure to check out the helpful information below. Who: PrivacyCampDC What: &#8220;[A]n unconference about [p]rivacy with a particular focus on electronic privacy and Government Policy.&#8221; When: 06-20 &#8211; 06-20-2009 Where: Center for American Progress Action Fund (1333 H Street, NW &#8211; Washington, DC 20005) For more information on PrivacyCampDC, see its description in our Infosec Conferences section. View our Calendar for a list of similar infosec events in and around the NoVA area. See the PrivacyCampDC registration page for more information. o o o o o If you attend this event, why not write about it for NovaInfosecPortal? Contact us [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=PrivacyCampDC+Infosec+Conference+Event+%E2%80%93+Saturday%2C+06-20+http%3A%2F%2Fj.mp%2FpRvJT1" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/06/16/privacycampdc-infosec-conference-event-saturday-06-20/&amp;t=PrivacyCampDC+Infosec+Conference+Event+%E2%80%93+Saturday%2C+06-20" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p style="border: 1px solid #ffffff; cursor: text;">There&#8217;s been quite a bit of buzz surrounding this year&#8217;s <a title="PrivacyCampDC" href="../events/infosec-conferences/#pcdc">PrivacyCampDC</a>, and it&#8217;s easy to see why. Described as &#8220;an unconference about [p]rivacy with a particular focus on electronic privacy and Government Policy,&#8221; the goal of PrivacyCampDC is to &#8220;connect researchers, developers, practitioners, citizens and other enthusiasts for a day of intense collaboration and knowledge sharing.&#8221;</p>
<p style="border: 1px solid #ffffff; cursor: text;">And lets be honest: the world &#8216;camp&#8217; just sounds so much more interesting than &#8216;conference,&#8217; doesn&#8217;t it?</p>
<p style="border: 1px solid #ffffff; cursor: text;">We&#8217;re really excited to see how this event plays out, so if you end up attending, please <a title="drop us a line" href="../contact-us/">drop us a line</a> about how it went. Also be sure to check out the helpful information below. <span id="more-1687"></span></p>
<p style="border: 1px solid #ffffff; cursor: text;"><!--more--></p>
<ul style="border: 1px solid #ffffff; cursor: text;">
<li><strong>Who:</strong> PrivacyCampDC</li>
<li><strong>What:</strong> &#8220;[A]n unconference about [p]rivacy with a particular focus on electronic privacy and Government Policy.&#8221;</li>
<li><strong>When:</strong> 06-20 &#8211; 06-20-2009</li>
<li><strong>Where:</strong> <a title="Center for American Progress Action Fund" href="http://www.americanprogressaction.org/">Center for American Progress Action Fund</a> (<a title="1333 H Street, NW - Washington, DC 20005" href="http://maps.google.com/maps?f=d&amp;source=s_d&amp;saddr=&amp;daddr=1333+H+Street,+NW+-+Washington,+DC+20005&amp;hl=en&amp;geocode=&amp;mra=ls&amp;sll=37.579413,-95.712891&amp;sspn=47.42872,88.242187&amp;ie=UTF8&amp;z=16">1333 H Street, NW &#8211; Washington, DC 20005</a>)</li>
</ul>
<p style="border: 1px solid #ffffff; cursor: text;">For more information on PrivacyCampDC, see its <a href="../events/infosec-conferences/#pcdc">description</a> in our I<a href="../events/infosec-conferences/">nfosec Conferences</a> section. View our <a title="Calendar" href="../events/full-calendar/">Calendar</a> for a list of similar infosec events in and around the NoVA area. See the PrivacyCampDC <a title="registration page" href="http://privacycampdc09-fbevent.eventbrite.com/" target="_blank">registration page</a> for more information.</p>
<p style="border: 1px solid #ffffff; cursor: text; text-align: center;">o o o o o</p>
<p style="border: 1px solid #ffffff; cursor: text; text-align: center;"><em>If you attend this event, why not write about it for NovaInfosecPortal? <a href="http://www.novainfosecportal.com/contact-us/">Contact us</a> if you&#8217;re interested. </em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=PrivacyCampDC+Infosec+Conference+Event+%E2%80%93+Saturday%2C+06-20+http%3A%2F%2Fj.mp%2FpRvJT1" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/06/16/privacycampdc-infosec-conference-event-saturday-06-20/&amp;t=PrivacyCampDC+Infosec+Conference+Event+%E2%80%93+Saturday%2C+06-20" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/06/16/privacycampdc-infosec-conference-event-saturday-06-20/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Reminder: Secure Americas Infosec Conference Starts 06-04</title>
		<link>http://www.novainfosecportal.com/2009/05/28/reminder-secure-americas-infosec-conference-starts-06-04/</link>
		<comments>http://www.novainfosecportal.com/2009/05/28/reminder-secure-americas-infosec-conference-starts-06-04/#comments</comments>
		<pubDate>Thu, 28 May 2009 14:00:16 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[arlington-va]]></category>
		<category><![CDATA[bob-west]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[elizabeth-nichols]]></category>
		<category><![CDATA[government-security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[international-information-security-certification-consor]]></category>
		<category><![CDATA[isc2]]></category>
		<category><![CDATA[marc-pearl]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[public-private-security]]></category>
		<category><![CDATA[secure-americas]]></category>
		<category><![CDATA[shawn-henry]]></category>
		<category><![CDATA[tom-kellerman]]></category>
		<category><![CDATA[tony-sager]]></category>
		<category><![CDATA[winn-schwartau]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1591</guid>
		<description><![CDATA[Just a quick reminder that the Secure Americas Conference starts on June 4th—a week from today. See our original post for more information. View our Calendar for a complete list of infosec events in and around the NoVA area. o o o o o SANSFIRE 2009 is coming: Can you handle the heat?]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Reminder%3A+Secure+Americas+Infosec+Conference+Starts+06-04+http%3A%2F%2Fj.mp%2FqLqXND" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/28/reminder-secure-americas-infosec-conference-starts-06-04/&amp;t=Reminder%3A+Secure+Americas+Infosec+Conference+Starts+06-04" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><span id="contentArea" class="normtext">Just a quick reminder that the <a href="http://www.novainfosecportal.com/events/infosec-conferences/#secureamericas">Secure Americas</a> Conference starts on June 4th—a week from today. See our <a href="http://www.novainfosecportal.com/2009/05/12/secure-americas-infosec-conference-starts-06-04/"><span style="color: #3366ff;">original post</span></a> for more information. View our <a href="http://www.novainfosecportal.com/events/full-calendar/"><span style="color: #3366ff;">Calendar</span></a> for a complete list of infosec events in and around the NoVA area.</span></p>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em><a href="http://www.novainfosecportal.com/general/help-us-help-you/"><span style="color: #3366ff;">SANSFIRE 2009</span></a> is coming: Can you handle the heat?</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Reminder%3A+Secure+Americas+Infosec+Conference+Starts+06-04+http%3A%2F%2Fj.mp%2FqLqXND" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/28/reminder-secure-americas-infosec-conference-starts-06-04/&amp;t=Reminder%3A+Secure+Americas+Infosec+Conference+Starts+06-04" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/05/28/reminder-secure-americas-infosec-conference-starts-06-04/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Secure Americas Infosec Conference Starts 06-04</title>
		<link>http://www.novainfosecportal.com/2009/05/12/secure-americas-infosec-conference-starts-06-04/</link>
		<comments>http://www.novainfosecportal.com/2009/05/12/secure-americas-infosec-conference-starts-06-04/#comments</comments>
		<pubDate>Tue, 12 May 2009 16:00:18 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[arlington-va]]></category>
		<category><![CDATA[bob-west]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[elizabeth-nichols]]></category>
		<category><![CDATA[government-security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[international-information-security-certification-consor]]></category>
		<category><![CDATA[isc2]]></category>
		<category><![CDATA[marc-pearl]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[public-private-security]]></category>
		<category><![CDATA[secure-americas]]></category>
		<category><![CDATA[shawn-henry]]></category>
		<category><![CDATA[tom-kellerman]]></category>
		<category><![CDATA[tony-sager]]></category>
		<category><![CDATA[winn-schwartau]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1488</guid>
		<description><![CDATA[Starting June 4th, the International Information Systems Security Certification Consortium, Inc., (ISC)² will be having its fifth annual Secure Americas information security conference in Arlington, Virginia. Bringing together notable speakers from both public and private sectors, the Secure Americas conference is known for addressing timely (and often controversial) topics relating to information security. Featuring two tracks—one on government-related security issues and the other on the public/private partnership around security—Secure Americas conference attendees will have the opportunity to hear from respected speakers Shawn Henry, Tom Kellerman, Elizabeth Nichols, Marc Pearl, Tony Sager, Winn Schwartau, and Bob West. According to the (ISC)² website, the government track will focus on &#8220;on security issues from the Federal level down to State and Local. It will also address topics &#8220;ranging from what web 2.0 means to govt. security professionals, to how a change of administration is affecting securing federal government agencies while we also focus on the importance of how government and law enforcement work internationally in the ongoing battles against terrorism, organized crime and corruption.&#8221; The Professional Development/Management track will address &#8220;the continued struggle to protect the Nations critical infrastructure from finance to SCADA systems,&#8221; and will discuss &#8220;some of the realities in working [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Secure+Americas+Infosec+Conference+Starts+06-04+http%3A%2F%2Fj.mp%2FqJqBMT" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/12/secure-americas-infosec-conference-starts-06-04/&amp;t=Secure+Americas+Infosec+Conference+Starts+06-04" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>Starting June 4th, the <a href="http://www.novainfosecportal.com/general/infosec-organizations/#isc2">International Information Systems Security Certification Consortium, Inc., (ISC)²</a> will be having its fifth annual <a href="http://www.novainfosecportal.com/events/infosec-conferences/#secureamericas">Secure Americas</a> information security conference in Arlington, Virginia. Bringing together notable speakers from both public and private sectors, the Secure Americas conference is known for addressing timely (and often controversial) topics relating to information security.</p>
<p>Featuring two tracks—one on government-related security issues and the other on the public/private partnership around security—Secure Americas conference attendees will have the opportunity to hear from respected speakers Shawn Henry, Tom Kellerman, Elizabeth Nichols, Marc Pearl, Tony Sager, Winn Schwartau, and Bob West.</p>
<p>According to the (ISC)² website, the government track will focus on &#8220;on security issues from the Federal level down to State and Local. It will also address topics &#8220;ranging from what web 2.0 means to govt. security professionals, to how a change of administration is affecting securing federal government agencies while we also focus on the importance of how government and law enforcement work internationally in the ongoing battles against terrorism, organized crime and corruption.&#8221;</p>
<p>The Professional Development/Management track will address &#8220;the continued struggle to protect the Nations critical infrastructure from finance to SCADA systems,&#8221; and will discuss &#8220;some of the realities in working with the ever increasing pool of defense contractors and what that means for security as well as discuss the ever increasing security compliance and regulatory environment.&#8221;</p>
<p>To learn more about this conference, continue reading below.<span id="more-1488"></span></p>
<p><span id="contentArea" class="normtext"></p>
<ul style="border: 1px solid #ffffff; cursor: text;">
<li><strong>Who: </strong>International Information Systems Security Certification Consortium, Inc., (ISC)²</li>
<li><strong>What:</strong> Secure Americas
<ul>
<li>Features two tracks: One on government security and the other of professional development/management.</li>
</ul>
</li>
<li><strong>When:</strong> 06-04 &#8211; 06-05-2009</li>
<li><strong>Where:</strong> <a href="http://embassysuites1.hilton.com/en_US/es/hotel/WASCRES-Embassy-Suites-Crystal-City-National-Airport-Virginia/index.do">Embassy Suites Crystal City &#8211; National Airport</a> (<a href="http://maps.google.com/maps?f=d&amp;source=s_d&amp;saddr=&amp;daddr=1300+Jefferson+Davis+Highway+Arlington,+VA+22202&amp;hl=en&amp;geocode=&amp;mra=ls&amp;sll=37.0625,-95.677068&amp;sspn=40.59616,93.164063&amp;ie=UTF8&amp;z=16">1300 Jefferson Davis Highway Arlington, VA 22202</a>)</li>
</ul>
<p style="border: 1px solid #ffffff; cursor: text;">For more information on Secure Americas, see its <a href="../events/infosec-conferences/#secureamericas">description</a> in our <a href="../events/infosec-conferences/">Infosec Conferences</a> section. View our <a href="../events/full-calendar/">Calendar</a> for a list of similar infosec events in and around the NoVA area. See the <span id="contentArea" class="normtext"><a href="https://www.isc2.org/EventDetails.aspx?id=3720&amp;display=eventdetails&amp;origin=">(ISC)² website</a> for more information.</span></p>
<p></span></p>
<p style="text-align: center;">###</p>
<p style="text-align: center;"><em>Was this post helpful? If so, consider passing it along to a friend or becoming a </em><a href="../2009/05/05/general/help-us-help-you/"><span style="color: #b85b5a;"><em>subscriber</em></span></a><em> of our site. Or, you can always do both—we won’t complain.</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Secure+Americas+Infosec+Conference+Starts+06-04+http%3A%2F%2Fj.mp%2FqJqBMT" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/12/secure-americas-infosec-conference-starts-06-04/&amp;t=Secure+Americas+Infosec+Conference+Starts+06-04" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/05/12/secure-americas-infosec-conference-starts-06-04/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SANSFIRE 2009 Infosec Conference Event: June 13-22</title>
		<link>http://www.novainfosecportal.com/2009/05/06/sansfire-2009-infosec-conference-event-june-13-22/</link>
		<comments>http://www.novainfosecportal.com/2009/05/06/sansfire-2009-infosec-conference-event-june-13-22/#comments</comments>
		<pubDate>Wed, 06 May 2009 14:15:00 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[infosec-training]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[sans]]></category>
		<category><![CDATA[sansfire]]></category>
		<category><![CDATA[sansfire-2009]]></category>
		<category><![CDATA[security-training]]></category>
		<category><![CDATA[Training]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1474</guid>
		<description><![CDATA[What beats a week of security training with your peers? Not much. That’s why SANSFIRE 2009 is an event that you should add to your calendar right now, before you get distracted by any other pesky summer plans. Taking place in Baltimore this year, SANSFIRE will be held between June 13th and 22nd at the Hilton Baltimore. There are special rates available before slots fill up, so register now if you haven’t already. And speaking of special rates… if you register by the end of today, May 6th, you get $350 off the regular price of the event. If you can’t quite swing registering today, the good news is that you’re also eligible to receive a $250 discount if you register before May 20th. According to the SANSFIRE website, “[a]t SANSFIRE 2009 you will be provided with new information about new threats, and you can acquire the solid foundation in InfoSec that you need to stay on top of them.” There will be over 30 courses to choose from this year, with new courses alongside tried-and-true classics. You can check out the list below to get an idea of what’s being offered. Security 401: SANS Security Essentials Bootcamp Style Security [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=SANSFIRE+2009+Infosec+Conference+Event%3A+June+13-22+http%3A%2F%2Fj.mp%2Fo166rr" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/06/sansfire-2009-infosec-conference-event-june-13-22/&amp;t=SANSFIRE+2009+Infosec+Conference+Event%3A+June+13-22" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>What beats a week of security training with your peers? Not much. That’s why <a href="http://www.novainfosecportal.com/events/infosec-conferences/#sans">SANSFIRE</a> 2009 is an event that you should add to your <a href="http://www.novainfosecportal.com/events/full-calendar/">calendar</a> right now, before you get distracted by any other pesky summer plans.</p>
<p>Taking place in Baltimore this year, SANSFIRE will be held between June 13th and 22nd at the Hilton Baltimore. There are <a href="http://www.sans.org/sansfire09/location.php">special rates</a> available before slots fill up, so register now if you haven’t already.</p>
<p>And speaking of special rates… if you <a href="http://www.novainfosecportal.com/general/help-us-help-you/">register</a> by the end of today, May 6th, you get $350 off the regular price of the event. If you can’t quite swing registering today, the good news is that you’re also eligible to receive a $250 discount if you <a href="http://www.novainfosecportal.com/general/help-us-help-you/">register</a> before May 20th.</p>
<p><span id="more-1474"></span></p>
<p>According to the SANSFIRE website, “[a]t SANSFIRE 2009 you will be provided with new information about new threats, and you can acquire the solid foundation in InfoSec that you need to stay on top of them.” There will be over 30 courses to choose from this year, with new courses alongside tried-and-true classics. You can check out the list below to get an idea of what’s being offered.</p>
<ul>
<li>Security 401: SANS Security Essentials Bootcamp Style</li>
<li>Security 504: Hacker Techniques, Exploits &amp; Incident Handling</li>
<li>Security 560: Network Penetration Testing and Ethical Hacking</li>
<li>Management 414: SANS® +S™ Training Program for the CISSP® Certification Exam</li>
<li>Security 503: Intrusion Detection In-Depth</li>
<li>Security 508: Computer Forensics, Investigation, and Response</li>
<li>Security 610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques</li>
<li>Security 301: Intro to Information Security</li>
<li>Audit 507: Auditing Networks, Perimeters &amp; Systems</li>
<li>Management 512: SANS Security Leadership Essentials for Managers with Knowledge Compression™</li>
<li>Security 501: Advanced Security Essentials &#8211; Enterprise Defender &#8211; NEW</li>
</ul>
<p>The courses also come with distinguished faculty, including: Stephen Northcutt, Johannes Ullrich, Dr. Eric Cole, Rob Lee, Lenny Zeltzer, Joshua Wright, John Strand, Chris Brenton, Kevin Johnson, Scott Moulton, Frank Kim, Jason Fossen, Eric Conrad, David Hoelzer, Stephen Sims, Michael Murr, Jonathan Ham, Bryce Galbraith, Fred Kerby, Mike Poor, and Jeff Frisk.</p>
<p>SANSFIRE even has options for those of us who learn better at night, with evening events focusing on the SANS web application honeynet. According to the SANS website, “[e]vening talks at SANSFIRE 2009 will provide extraordinary insights into actual attacks that have taken place over the past year. […] You&#8217;ll learn about current threats and how the SANS Internet Storm Center can help you in your fight against these threats.” Free to registered attendees, volunteer incident handlers will be present at these evening events.</p>
<p><span id="contentArea" class="normtext"></p>
<ul style="border: 1px solid #ffffff; cursor: text;">
<li><strong>Who:</strong> <a href="http://www.novainfosecportal.com/events/infosec-conferences/#sans">SANS</a></li>
<li><strong>What:</strong> SANSFIRE 2009</li>
<li><strong>When:</strong> 06-13 -06-22-09</li>
<li><strong>Where:</strong> Hilton Baltimore (<a href="http://maps.google.com/maps?f=d&amp;source=s_d&amp;saddr=&amp;daddr=401+West+Pratt+Street,+Baltimore,+MD+21201&amp;hl=en&amp;geocode=&amp;mra=ls&amp;sll=37.0625,-95.677068&amp;sspn=40.59616,93.164063&amp;ie=UTF8&amp;z=16">401 West Pratt Street, Baltimore, MD 21201</a>)</li>
</ul>
<p></span><span id="contentArea" class="normtext">For more information on SANSFIRE 2009, see its <a href="http://www.novainfosecportal.com/events/infosec-conferences/#sans">description</a> in our <a href="../events/infosec-conferences/">Infosec Conferences</a> section. View our <a href="../events/full-calendar/">Calendar</a> for a list of similar infosec events in and around the NoVA area. Register for SANSFIRE <a href="http://www.novainfosecportal.com/general/help-us-help-you/">here</a>. </span></p>
<p style="text-align: center;">###</p>
<p style="text-align: center;"><em>In addition to <a href="http://www.novainfosecportal.com/general/help-us-help-you/">registering for SANS events</a> through NovaInfosecPortal, you can also help keep the site going by becoming a <a href="http://www.novainfosecportal.com/general/help-us-help-you/">subscriber</a>. </em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=SANSFIRE+2009+Infosec+Conference+Event%3A+June+13-22+http%3A%2F%2Fj.mp%2Fo166rr" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/06/sansfire-2009-infosec-conference-event-june-13-22/&amp;t=SANSFIRE+2009+Infosec+Conference+Event%3A+June+13-22" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/05/06/sansfire-2009-infosec-conference-event-june-13-22/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SANS Application Security Workshop Tomorrow, 4-29: Preventing Common Attacks</title>
		<link>http://www.novainfosecportal.com/2009/04/28/sans-application-security-workshop-tomorrow-4-29-preventing-common-attacks/</link>
		<comments>http://www.novainfosecportal.com/2009/04/28/sans-application-security-workshop-tomorrow-4-29-preventing-common-attacks/#comments</comments>
		<pubDate>Tue, 28 Apr 2009 22:03:52 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[jeremiah-grossman]]></category>
		<category><![CDATA[konrad-vessey]]></category>
		<category><![CDATA[nsa]]></category>
		<category><![CDATA[preventing attacks]]></category>
		<category><![CDATA[sans]]></category>
		<category><![CDATA[Training]]></category>
		<category><![CDATA[whitehat]]></category>
		<category><![CDATA[workshop]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1430</guid>
		<description><![CDATA[Have you registered for the SANS AppSec event yet? If not, there’s still time left to purchase your registration. While the event starts tomorrow, April 29th, registration is still open. You can purchase your registration through our SANS section (just click on the SANS image to be taken to the official website), which won’t cost you anything extra, but will help us keep this site running strong. Entitled “Application Security Workshop — What Works? What Products, Services and Configurations Work Best to Protect Applications From Common Atttacks?” this SANS training workshop gives attendees real information from real professionals in the field. The primary speakers for this event are Jeremiah Grossman of WhiteHat and Konrad Vessey of NSA, meaning that they’ll have information that you won’t be able to get anywhere else. So if you’d like to learn about solutions that are more than just nice sounding theories, this is definitely a workshop you should attend. Who: SANS, with Jeremiah Grossman of WhiteHat and Konrad Vessey of NSA What: &#8221;Application Security Workshop — What Works? What Products, Services and Configurations Work Best to Protect Applications From Common Atttacks?&#8221; According to the SANS website, workshop attendees will &#8220;hear from actual users of multiple [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=SANS+Application+Security+Workshop+Tomorrow%2C+4-29%3A+Preventing+Common+Attacks+http%3A%2F%2Fj.mp%2Frfewby" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/04/28/sans-application-security-workshop-tomorrow-4-29-preventing-common-attacks/&amp;t=SANS+Application+Security+Workshop+Tomorrow%2C+4-29%3A+Preventing+Common+Attacks" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p style="cursor: text; border: #ffffff 1px solid;">Have you registered for the <a href="http://www.novainfosecportal.com/events/infosec-conferences/#sans">SANS</a> AppSec event yet?</p>
<p style="cursor: text; border: #ffffff 1px solid;">If not, there’s still time left to purchase your registration. While the event starts tomorrow, April 29th, registration is still open. You can purchase your registration through our SANS section (just click on the SANS image to be taken to the official website), which won’t cost you anything extra, but will help us keep this site running strong.</p>
<p style="cursor: text; border: #ffffff 1px solid;">Entitled “Application Security Workshop — What Works? What Products, Services and Configurations Work Best to Protect Applications From Common Atttacks?” this SANS training workshop gives attendees real information from real professionals in the field. The primary speakers for this event are Jeremiah Grossman of WhiteHat and Konrad Vessey of NSA, meaning that they’ll have information that you won’t be able to get anywhere else. <span id="more-1430"></span></p>
<p style="cursor: text; border: #ffffff 1px solid;">So if you’d like to learn about solutions that are more than just nice sounding theories, this is definitely a workshop you should attend.</p>
<p><!--more--></p>
<ul>
<li><strong>Who:</strong> SANS, with Jeremiah Grossman of <a title="WhiteHat" href="http://www.whitehatsec.com/home/index.html">WhiteHat</a> and Konrad Vessey of <a title="NSA" href="http://www.nsa.gov/">NSA</a></li>
<li><strong>What:</strong> &#8221;Application Security Workshop — What Works? What Products, Services and Configurations Work Best to Protect Applications From Common Atttacks?&#8221;
<ul>
<li>According to the SANS website, workshop attendees will &#8220;hear from actual users of multiple products &#8211; senior people from the federal government and from major financial organizations. They will tell you which products and services they implemented, what worked, what didn&#8217;t and the lessons they learned along the way. It is real-world, from-the-trenches information that you really cannot get any other way.&#8221;  </li>
</ul>
</li>
<li><strong>When:</strong> 04-29, 8:30 AM - 6:30 PM EST</li>
<li><strong>Where:</strong> <a title="The Marriott Wardman Park" href="http://www.marriott.com/hotels/travel/wasdt-washington-marriott-wardman-park/">The Marriott Wardman Park</a> (<a title="2660 Woodley Rd. NW Washington, D.C. 20008" href="http://maps.google.com/maps?f=d&amp;source=s_d&amp;hl=en&amp;geocode=&amp;saddr=&amp;daddr=2660+Woodley+Rd.+NW+Washington,+D.C.+20008&amp;sll=37.0625,-95.677068&amp;sspn=62.186014,135&amp;ie=UTF8&amp;t=h&amp;z=17">2660 Woodley Rd. NW Washington, D.C. 20008</a>)</li>
</ul>
<p>For more information on SANS, see its <a href="http://www.novainfosecportal.com/events/infosec-conferences/#sans">description</a> in our <a href="http://www.novainfosecportal.com/events/infosec-conferences">Conferences</a> section. View our <a href="http://www.novainfosecportal.com/events/full-calendar/">Calendar</a> for a complete list of infosec events in and around the NoVA area. To purchase registration for an upcoming SANS event, click <a href="http://www.novainfosecportal.com/general/help-us-help-you/">here</a>.</p>
<p style="text-align: center;">###</p>
<p style="text-align: center;"><em>Speaking of SANS,</em> <em>Do you have your pass to <a href="http://www.novainfosecportal.com/events/infosec-conferences/#sans">SANSFIRE</a> yet? If not, why not </em><a href="http://www.novainfosecportal.com/general/help-us-help-you/"><em>purchase it through NovaInfosecPortal</em></a><em>? It doesn’t cost you anything extra, and it helps us keep the site going. </em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=SANS+Application+Security+Workshop+Tomorrow%2C+4-29%3A+Preventing+Common+Attacks+http%3A%2F%2Fj.mp%2Frfewby" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/04/28/sans-application-security-workshop-tomorrow-4-29-preventing-common-attacks/&amp;t=SANS+Application+Security+Workshop+Tomorrow%2C+4-29%3A+Preventing+Common+Attacks" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/04/28/sans-application-security-workshop-tomorrow-4-29-preventing-common-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Reminder: GovSec Infosec Conference Event Starts Tomorrow, 03-11</title>
		<link>http://www.novainfosecportal.com/2009/03/10/reminder-isaca-govsec-infosec-conference-event-starts-tomorrow-03-11/</link>
		<comments>http://www.novainfosecportal.com/2009/03/10/reminder-isaca-govsec-infosec-conference-event-starts-tomorrow-03-11/#comments</comments>
		<pubDate>Wed, 11 Mar 2009 00:39:46 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[1105 government]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[countering-terrorism]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[fbi]]></category>
		<category><![CDATA[fose-2009]]></category>
		<category><![CDATA[govsec]]></category>
		<category><![CDATA[govsec-2009]]></category>
		<category><![CDATA[information group]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[louis-freeh]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[securing-critical-infrastructure]]></category>
		<category><![CDATA[strategizing-safety-security]]></category>
		<category><![CDATA[uslaw]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1186</guid>
		<description><![CDATA[Just a quick reminder that the GovSec infosec conference event starts tomorrow. For more information about the GovSec conference, see its description in our Infosec Meetups section. You can view our Calendar for a list of similar infosec events in and around the NoVA area. See our original post for more information about this conference. You can also view our interview with Paul Joyal to get insider details about GovSec and Paul&#8217;s security predictions for 2009. ### Was this post helpful? If so, consider passing it along to a friend or becoming a subscriber of our site. Or, you can always do both—we won’t complain.]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Reminder%3A+GovSec+Infosec+Conference+Event+Starts+Tomorrow%2C+03-11+http%3A%2F%2Fj.mp%2FqyMl88" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/03/10/reminder-isaca-govsec-infosec-conference-event-starts-tomorrow-03-11/&amp;t=Reminder%3A+GovSec+Infosec+Conference+Event+Starts+Tomorrow%2C+03-11" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><small></small></p>
<p>Just a quick reminder that the <a title="GovSec" href="http://www.novainfosecportal.com/events/infosec-conferences/#govsec" target="_blank">GovSec</a> infosec conference event starts tomorrow. For more information about the GovSec conference, see its <a href="http://www.novainfosecportal.com/events/infosec-conferences/#govsec">description</a> in our Infosec Meetups section. You can view our <a href="http://www.novainfosecportal.com/events/full-calendar/"><span style="color: #b85b5a;">Calendar</span></a> for a list of similar infosec events in and around the NoVA area.</p>
<p>See our <span style="color: #b85b5a;"><a href="http://www.novainfosecportal.com/2009/03/03/isaca-nca-chapter-infosec-meetup-event-tuesday-03-10-security-performance/"><span style="color: #b85b5a;">original post</span></a></span> for more information about this conference. You can also view our <a href="http://www.novainfosecportal.com/2009/03/08/interview-with-govsec-moderator-paul-joyal/">interview</a> with Paul Joyal to get insider details about GovSec and Paul&#8217;s security predictions for 2009.</p>
<p class="entry" style="text-align: center;">###</p>
<p class="entry" style="text-align: center;"><em>Was this post helpful? If so, consider passing it along to a friend or becoming a </em><a href="http://www.novainfosecportal.com/general/help-us-help-you/"><span style="color: #b85b5a;"><em>subscriber</em></span></a><em> of our site. Or, you can always do both—we won’t complain.</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Reminder%3A+GovSec+Infosec+Conference+Event+Starts+Tomorrow%2C+03-11+http%3A%2F%2Fj.mp%2FqyMl88" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/03/10/reminder-isaca-govsec-infosec-conference-event-starts-tomorrow-03-11/&amp;t=Reminder%3A+GovSec+Infosec+Conference+Event+Starts+Tomorrow%2C+03-11" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/03/10/reminder-isaca-govsec-infosec-conference-event-starts-tomorrow-03-11/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interview with GovSec Moderator Paul Joyal</title>
		<link>http://www.novainfosecportal.com/2009/03/08/interview-with-govsec-moderator-paul-joyal/</link>
		<comments>http://www.novainfosecportal.com/2009/03/08/interview-with-govsec-moderator-paul-joyal/#comments</comments>
		<pubDate>Mon, 09 Mar 2009 00:30:11 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Conferences]]></category>
		<category><![CDATA[5-day-war]]></category>
		<category><![CDATA[brave-new-world]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[georgia]]></category>
		<category><![CDATA[govsec]]></category>
		<category><![CDATA[govsec-2009]]></category>
		<category><![CDATA[homeland security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[obama]]></category>
		<category><![CDATA[paul-m-joyal]]></category>
		<category><![CDATA[russia]]></category>
		<category><![CDATA[war]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1172</guid>
		<description><![CDATA[With GovSec right around the corner, we were lucky enough to secure an interview session with Paul Joyal—one of the key security moderators at GovSec, and one of the most respected professionals in the security field. In our interview with Paul, he tells us why he chose to be involved with GovSec, and why 2009 could be one of the most notable years for security yet. What is your role in GovSec this year? This year I am organizing a luncheon presentation* with the National Security Advisor for the Government of Georgia to discuss the Cyber Warfare attack which occurred during the military invasion of Georgia by Russia in August last year. I will moderate the session and provide an overview of Soviet and Russian doctrine on information warfare. This allows us to better understand how Information Warfare or Cyber Warfare fits into a military combined arms strategy. Also participating is Stephen Spoonamore, who will describe the nature of the cyber attack on the banking structure and how it produced a number of unintended consequences internationally. *The Brave New World of the 5 Day War: Where Cyber and Military Combined. Guest Speaker is Eka Tkeshelashvili, the Secretary of the National Security Council [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Interview+with+GovSec+Moderator+Paul+Joyal+http%3A%2F%2Fj.mp%2Fnh75Ss" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/03/08/interview-with-govsec-moderator-paul-joyal/&amp;t=Interview+with+GovSec+Moderator+Paul+Joyal" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>With <a href="http://www.novainfosecportal.com/events/infosec-conferences/#govsec">GovSec</a> right around the corner, we were lucky enough to secure an interview session with Paul Joyal—one of the key security moderators at GovSec, and one of the most respected professionals in the security field.</p>
<p>In our interview with Paul, he tells us why he chose to be involved with GovSec, and why 2009 could be one of the most notable years for security yet.</p>
<p><strong>What is your role in GovSec this year?</strong></p>
<p><em>This year I am organizing a luncheon presentation* with the National Security Advisor for the Government of Georgia to discuss the Cyber Warfare attack which occurred during the military invasion of Georgia by Russia in August last year. </em></p>
<p><em>I will moderate the session and provide an overview of Soviet and Russian doctrine on information warfare. This allows us to better understand how Information Warfare or Cyber Warfare fits into a military combined arms strategy. <span id="more-1172"></span>Also participating is Stephen Spoonamore, who will describe the nature of the cyber attack on the banking structure and how it produced a number of unintended consequences internationally.</em></p>
<p>*<a href="http://www.govsecinfo.com/conference-schedule-by-track.html" target="_blank">The Brave New World of the 5 Day War</a>: Where Cyber and Military Combined. Guest Speaker is Eka Tkeshelashvili, the Secretary of the National Security Council of Georgia<br />
 <br />
<strong>What made you want to be involved with GovSec?</strong></p>
<p><em>I have been involved in GovSec for a number of years. It has provided an excellent forum for bringing Federal, State, local Law Enforcement, and the security community together for relevant Homeland Security educational exchanges. It is also a terrific networking opportunity for those who attend the full conference. </em></p>
<p><em>In fact, 3 years ago I contacted a friend—<a href="http://en.wikipedia.org/wiki/Alexander_Litvinenko" target="_blank">Alexander Litvinenko</a>—in London, inviting him to visit the United States for the first time and address the GovSec convention on his book,</em> <a href="http://en.wikipedia.org/wiki/Blowing_up_Russia:_Terror_from_within" target="_blank">Blowing Up Russia</a><em>. Shortly after committing to attend [GovSec], he was poisoned with Polonium and died. Unfortunately for me, my attempts to find a substitute speaker were thwarted by my <a href="http://www.washingtonpost.com/wp-dyn/content/article/2007/03/03/AR2007030301332.html" target="_blank">being shot</a> after appearing on NBC’s “DateLine” program on the Litvinenko poisoning and blaming the Russian government.</em></p>
<p><em>Last year […] I was able to invite and moderate Marina Litvinenko’s presentation at GovSec, which allowed her to present the talk her husband was thwarted from giving.</em></p>
<p><strong>Along those lines, DC has many security conferences related to government security featuring high profile speakers. How do feel GovSec stands out from other conferences?</strong></p>
<p><em>As I stated before, the fact that Alexander Litvinenko had committed to address Govsec, matched with the fact his wife did address GovSec, is an indication that this convention can hold its own with any convention of this nature. This year’s GovSec— with Louis Freeh and the National Security Advisor of the government of Georgia—simply underlines this point.<br />
</em> <br />
<strong>What does GovSec offer cyber security professionals specifically?</strong></p>
<p><em>The luncheon I have organized is one example of a timely and unique window into the most dramatic cyber warfare case study available to the profession today. There will be new and dramatic information covered in this session. (To see an example of other sessions, click <a href="http://www.govsecinfo.com/conference-schedule-by-track.html" target="_blank">here</a>).</em></p>
<p><strong>What are your predictions for cyber security trends in the upcoming year?</strong></p>
<p><em>We will find out that the government and the private sector have been “had” more than we ever realized. This will lead to more attention and commitment of resources.</em></p>
<p><em>Additionally, this year the United States is led by our first Web 2.0 President. He [Obama] has made it clear that technological improvements are needed for government to become more responsive and effective. Keeping with this imperative is his pledge to elevate Cyber Security as never before. </em></p>
<p><em>In her first week as Homeland Security Director, Janet Napolitano has ordered a review of the Cyber Security program. President Barack Obama wants $355 million for the Homeland Security Department’s cybersecurity efforts in fiscal 2010. The document states that the funds will be used to support DHS’ National Cybersecurity Division and the department&#8217;s role in the Comprehensive National Cybersecurity Initiative (CNCI). The money would be “targeted to make private- and public-sector cyber infrastructure more resilient and secure.” This is an important development because vulnerabilities in either sector can harm the other.</em></p>
<p><em>The Russian-Georgian war illustrates how governments can utilize private individuals and groups as deniable cut outs in cyber attacks. Determining “who is who” has become a much more difficult problem. In the case of the Cyber attack on Georgia, the role of the Russian Business Network (RBN) has been mentioned. RBN is an organized crime group with very sophisticated capabilities in hacking into banks and financial institutions. This should remind us that the connection of crime, intelligence, and foreign operations are at times indistinguishable. This complicates the threat environment.</em></p>
<p><strong>And finally, why do you feel that cyber security is an important topic for security and non-security professionals to learn more about?</strong></p>
<p><em>Cyber security will experience a greater growth in jobs and requirements in the next 2 years than any other sector of the security profession.</em></p>
<p><strong>Paul&#8217;s Bio</strong>: A graduate of Catholic University with a Masters in International Relations, Paul M. Joyal is the managing director for NSI’s public safety practice and directs the law enforcement and public safety practice. Currently, Paul serves on the Prince Georges County Law Enforcement Task Force and Governor Martin O’Malley transition team for Public Safety. Paul also serves as the president of the State of Maryland Chapter of the FBI InfraGard and was recently selected as delegate for the State of Maryland at the annual national InfraGard conference. Paul has been recognized as one of the principal leadership awardees by the Respect for Law Alliance, having received the Golden Eagle Award, “Defender of Counterintelligence and Homeland Security” along with Attorney General Michael B. Mulkasey and NYPD Police Commissioner Raymond W. Kelly<em>.</em></p>
<p style="text-align: center;"><em>###</em></p>
<p style="text-align: center;"><em>Special thanks to Paul and the GovSec Team for making this interview possible. For more information on GovSec, see its </em><a href="http://www.novainfosecportal.com/events/infosec-conferences/#govsec"><em>description</em></a><em> in our </em><a href="http://www.novainfosecportal.com/events/infosec-conferences/"><span style="color: #b85b5a;"><em>Infosec Conferences</em></span></a><em> section. View our </em><a href="http://www.novainfosecportal.com/events/full-calendar/"><span style="color: #b85b5a;"><em>Calendar</em></span></a><em> for a list of similar infosec events in and around the NoVA area. See the </em><a title="GovSec website" href="http://www.govsecinfo.com/" target="_blank"><span style="color: #b85b5a;"><em>GovSec website</em></span></a><em> for more information. </em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Interview+with+GovSec+Moderator+Paul+Joyal+http%3A%2F%2Fj.mp%2Fnh75Ss" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/03/08/interview-with-govsec-moderator-paul-joyal/&amp;t=Interview+with+GovSec+Moderator+Paul+Joyal" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/03/08/interview-with-govsec-moderator-paul-joyal/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

