Thursday, September 12, 2013

Meet our new Technical Project Advisors!

As the OWASP Projects Inventory continues to grow, we continue to work towards improving the operations side of OWASP Projects. One of the major items on the agenda in 2013 is to review and update the current . The update is needed as there are now over 100 OWASP Projects, and the assessment criteria and process must be able to meet the demand for quality reviews. This is why the Technical Project Advisors were brought together.

The Technical Project Advisors were recruited as volunteers to help the organization review and update the current assessment criteria and project graduation process. They each are responsible for six different areas that encompass the subject matter of our projects. Please help me in welcoming our new Technical Project Advisors.

TECHNICAL PROJECT ADVISORS




CHUCK COOPER

SECURE DEVELOPMENT ADVISORCHUCK.COOPER@OWASP.ORG

Chuck has been developing and/or managing several award winning software products for over 25 years including working on Great Plains Property Management, Borland Paradox, Acuity Projects, CA Clarity, and Paylocity Web Pay.For the past 8 years he has been working as the CIO at Paylocity, and recently he earned his CISSP certification and became the CISO and Sr. VP of Enterprise Architecture. Now he can focus primarily on network and application security for Paylocity's Software-as-a-Service Payroll, HR, TimeInformation Security Summit 2006, Cleveland, OH; Software Security Summit 2007, San Mateo, CA.*"Secure Coding: Tips and Techniques", Information Security Summit 2005, Cleveland, OH.

Chris is a Certified Information Systems Security Professional (CISSP) and holds a Masters Degree in Computer Science from Binghamton University, Binghamton, New York and a Bachelors Degree in Computer Science from University of Buffalo, Buffalo, New York.



JOHANNA CURIEL STATIC ANALYSIS ADVISORJOHANNA.CURIEL@OWASP.ORG

Johanna Curiel is a senior security information analyst with more than 10 years of extensive experience in programming and software development. She works, at the moment, in the Banking sector in the Dutch Caribbean, Curacao. She has extensive experience as a software developer in the .NET platform, but also open source tools and languages such as Java.

Johanna is married, has a kid of 11 years old and 2 cats. She loves sports like swimming and tennis, and tries to eat healthy most of the time. She enjoys programming even in her free time, and loves to read about the latest security breaches and hacks.

From June 2012, Johanna is an active chapter leader of the OWASP Curacao Chapter. Johanna also has an M.Sc. in Computer Security from the Liverpool University (2010).



JOHN KROGULSKIDYNAMIC ANALYSIS ADVISORJOHN.KROGULSKI@OWASP.ORG

My current position is a Software Architect. In this role, I lead a team of developers designing and building .Net custom interfaces used to integrate disparate third party applications for a health insurance company. These systems must comply with all DIACAP regulations as the company does extensive work with Tricare.

I develop both Client server and Web based applications. I have been trained on the current FDA guidelines for medical devices and software systems. I worked as a software developer for the UW Hospital designing their new organ transplant system ensuring it met all HIPAA, HITECH Act and FDA requirements. I have designed and built active directory modules for use with web applications. I have extensive knowledge of SQL Server and Oracle database design and development, and I have been a windows server administrator.

Last year, I assisted a client in developing a module to allowed them to properly manage credit card information in their systems. This involved both database re-design as well as ensuring their web component did not leak any PCI data.

I hold a current Comptia Security + certification as well as a Certified Ethical Hacker certification, and I have designed enterprise systems that meet federal security requirements. I am trying to transition to a full-time security role.



Please feel free to reach out to me, or any of our advisors above, if you need more information on the work we are doing.
Full Post

No comments:

Post a Comment