• Email
  • Like
  • Save
  • Private Content
  • Embed
 

Skeletons in the Closet: Securing Inherited Applications

by on Feb 03, 2011

  • 846 views

Many security officers worry less about the security of new applications being built and more about the security of hundreds of applications they inherited. What applications represent the biggest ...

Many security officers worry less about the security of new applications being built and more about the security of hundreds of applications they inherited. What applications represent the biggest risk? What attributes make them more or less risky? What are the most cost-effective courses of action given budget constraints in today’s business environment? This interactive workshop will help participants understand how to attack this problem and create a risk-based approach to managing the security of an existing application portfolio using tools like the OWASP ASVS model. The session will decompose an example application to determine how to conduct a bottom-up risk profile for future risk comparison against other applications. The audience will also participate in an exercise comparing different applications to better understand the ranking process. The audience will leave with a framework, action plan and basic understanding of the risk-ranking process that they can immediately apply to their work environment.

Accessibility

Upload Details

Uploaded via SlideShare as Adobe PDF

Usage Rights

© All Rights Reserved

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

Cancel

3 Embeds 60

http://blog.denimgroup.com 45
http://denimgroup.typepad.com 12
http://denimgroup.posterous.com 3

Statistics

Likes
0
Downloads
11
Comments
0
Embed Views
60
Views on SlideShare
786
Total Views
846
Post Comment
Edit your comment

Skeletons in the Closet: Securing Inherited Applications Skeletons in the Closet: Securing Inherited Applications Presentation Transcript