Global Conferences Committee/
- About the Committee
- 2012 Committee Plan
- 2011 Committee Plan
- Planner Resources
- Committee Policies
- Conference Liaison Initiative
- GCC Records
The Global Conferences Committee was created during the OWASP EU Summit in Portugal 2008. The Global Conferences Committee exists to coordinate and facilitate OWASP conferences and events worldwide. The committee is governed by the Global Conferences Committee Governance document
- Mark Bristow (U.S, 2011 Chair Election)
- John Wilander (Sweden)
- Lucas Ferreira (Brazil)
- Richard Greenberg (US)
- Ralph Durkee (US)
- Mohd Fazli Azran (Malaysia)
- Lorna Alamri (US)
- Benny Ketelslegers (Japan)
Operational Support: Sarah Baso
Upcoming Meeting
Date: Wednesday, May 30th at 3pm GMT/UTC
Date: Tuesday, June 19 at 11pm GMT/UTC
GoToMeeting link: https://www3.gotomeeting.com/join/491851430
- Use your microphone and speakers (VoIP) - a headset is recommended.
Access Code: 491-851-430
Audio PIN: Shown after joining the meeting - Meeting ID: 491-851-430
International Dial-in:
Australia: +61 (0) 7 3123 6030
Austria: +43 (0) 7 2088 1407
Belgium: +32 (0) 28 08 4297
Canada: +1 (778) 785-0724
Denmark: +45 (0) 69 91 88 70
Finland: +358 (0) 942 59 9697
France: +33 (0) 182 880 463
Germany: +49 (0) 898 7806 6464
Ireland: +353 (0) 14 845 983
Italy: +39 0 553 98 95 69
Netherlands: +31 (0) 208 080 385
New Zealand: +64 (0) 4 974 7216
Norway: +47 21 04 29 13
Spain: +34 955 32 9911
Sweden: +46 (0) 313 613 559
Switzerland: +41 (0) 225 3314 55
United Kingdom: +44 (0) 207 151 1805
United States: +1 (213) 289-0030
Approved: 10/17/2011 | Vote Thread
Goals
Conduct events to support the OWASP mission around the world
a. Conduct 4 Global AppSec, 10 Regional and 15 Local events,
b. Hold an OWASP Summit in 2013 with over 250 attendees,
c. Support Loss-Leader events in North America, South America, Asia, Europe
Generate $250000 in profits from events
Support the OWASP mission at non-owasp events
a. 25 Promotional events
b. 2 Developer event outreach
c. Booth in a box program
Provide better support for OWASP event planners
a. Centralized providers for Video, Equipment Rental, Online messaging, Website Hosting
b. Central feedback on speakers, events & training
c. Professional Marketing + lead generation
d. Graphics design
e. Con-Network in a box
Recruit regional participation in the committee
a. Desired committee composition at least 1 US, 1 EU, 1 LATAM, 1 Asiapac
b. Strengthen participation requirements in governance (meeting attendance 75%), Liaison requirement
Initiatives
TBD
Budget Request
- Expenses: $291,800 (GCC initiatives = $126,800)
- Loss-leader events $25,000
- 2013 Summit $140,000
- Outreach Support $24,000
- GCC Technology $21,500
- Travel $15,500
- Operational Support $20,800
- OWASP Track $20,000
- Marketing $25,000
- Income: $296,000
- Global AppSec Conferences $225,000
- Regional Conferences $69,000
- Local Events $2,000
- Net: $4,200
2011 Goals
2011 Comprehensive Committee Plan | 2010 Plan
- Have a Global Appsec in NA, SA, EU, Asia in 2011
- Promote OWASP Projects/Initiatives at OWASP Conferences
- Enhance Services for Conference Planners
- Reach out to developers (have 20% of attendees in a dev position)
- Reach out to non-members (have 70% of attendees at cons non-members)
- Bring more into the fold (Generate 300 new/renewed members at conferences)
- Streamline Sponsorships (Global Conference Sponsors, Targeted Conference Sponsors)
- Revise GCC Governance
- Have a profit of $200k in 2011 across all conferences
Major Initiatives
| Initiative | Priority | Associated Goals | Description | Status | Deadline | Assignees |
|---|---|---|---|---|---|---|
| Revise GCC Governance | 1 | 8 | Generate self governance document for voting rules, quorum and other functional committee requirements | Complete - Global Conferences Committee Governance | January 2011 | All Committee Members |
| OWASP Conference Management System (help) | 1 | 1, 3 | Develop a system to take in applications for all non-chapter meeting events, vet them, and schedule them. This system shall serve as the "official" registration path for all events and allow the GCC to get a firm grip on the OWASP Event Calendar. | Preparing for Release | Release - 3/5/2011 | Mark (Code), Lucas & Neil (Alpha Testing, Requirements) |
| OWASP Global Conference Sponsors | 2 | 3, 7 | Provide unified sponsorship mechanism for all Global AppSec conferences. This will help us plan our conference revenue annually and help sponsors plan for their spending (identified as an issue by several vendors). This is intended to augment, not replace individual conference sponsorships. | Released 2011 Global Sponsorship Packages | Feb 2011 | Richard, All Review |
| OWASP AppSec Track | 3 | 2 | Joint venture with the GPC. The track would consist of a cadre (10-20) of speakers from inew/high profile OWASP projects. The GCC would manage these speakers through an internal call for papers that would be vetted by the GCC/GPC for some of our best speakers from high profile projects. As a new conference requests an OWASP Speaking track (or for Global AppSec conferences, this will be required) the GCC would reach out to the selected presenters to verify their availability for the event and provide a list of 6-7 speakers to the local event coordinators for the schedule. | Planning for AppSecUSA release in Sept. | June 2011 | Ralph |
| OWASP Marketing at Conferences | 3 | 4,5,6 | Promote OWASP at targeted industry and developer events. Provide OWASP support and schwag for OWASP booths at other conferences | Applications accepted via OCMS | In progress | Mark |
| OWASP Conference Marketing - Attendees | 3 | 4,5,6 | Provide additional mechanisms for marketing conferences to attendees | None | TBD | Neil |
| OWASP Conference Marketing - Sponsors | 3 | 4,5,6 | Provide additional mechanisms for marketing conferences to Sponsors | None | TBD | Neil, Richard |
| Conference Web Marketing | 4 | 3 | Obtain Twitter accounts, domain names, and @owasp.org email addresses for use by approved conferences. See Conference Planner Resources | Complete | Complete | Mark |
| Central Conference Support Services | 4 | 3 | RegOnline is setup. Investigate costs for hiring a conference organizer. | RegOnline - Complete Conference Organizer - Investigate |
TBD | All |
| OWASP Short URLS | 5 | 3 | Provide short URLs on the OWASP website (e.g. https://owasp.org/AppSecBR) to make it easier to access content on the wiki, especially in emails and the like | Need to investigate with Larry | TBD | Ralph |
| Regional targeted mailing lists | 5 | 3 | Provide email lists for targeted, regional email distributions. Only GlobalAppSec conferences will be advertised on OWASP-ALL | Need to investigate leveraging Salesforce for this. | TBD | Ralph |
| OWASP Merchandise Model | 6 | 3,9 | Provide OWASP Merchandise for sale at conferences | May be a bit OBE as Kate has established something similar already. May just need an "inventory" we can send places. | TBD | None |
How to Host a Conference - The comprehensive guide for hosting an OWASP event.
Access to any/all of these resources must be first pre-coordinated with the GCC via the OWASP Conference Management System (OCMS). All requests for assistance need to go through this system and get approved by the Global Conferences Committee. If you do not have an account, you can signup for an OCMS account here, please use an @owasp.org email address if available.
General
OWASP Registration System - Official OWASP Event registration system for ALL OWASP events (Conferences, Events and Chapter Meetings) email Sarah Baso for access
Pre-Negotiated hotel contracts
Supplies
- Table top tripod (4)
- 1.8 m SVGA Cable
- 2m cable video DVI/HDMI (2)
- MacBook air micro-DVI to video adapter
- Motorola radios (10)
- Net gear N150 wireless USB Adapter
- Preferred US rental provider: CRS
Promotion
To request general OWASP Promotional Materials, fill out this Google Form.
via Free OWASP Banner Ads
via Articles and mentions in the OWASP Newsletter
via OWASP Twitter Accounts (@OWASPConference, @OWASP)
Wiki
AppSec Sample Conference Wiki Page
Web Presence/Social Media
| Region | URL(s) | Emails | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ASIAPAC |
|
|
| ||||||||||||||||||
| Europe |
|
|
| ||||||||||||||||||
| Latin America |
|
|
| ||||||||||||||||||
| North America |
|
|
|
Video
OWASP Video Cameras
OWASP Currently owns 5 sets of consumer grade video cameras (Canon VIXIA HF M300), tri-pods, memory cards, and audio connection equipment. For examples of the video taken from these cameras see the AppSec DC Vimeo stream. The cameras can shoot HD Video and have an audio input jack for taking in a house line. The system also has a QNAP TS-459 PRO network attached storage device that can be used for on-site reliable storage and backup of the video.
Equipment
- Turbo NAS TS-459 pro (for on-site redundant storage)
- Seagate Barracuda 1.5TB Hard Drives (for NAS)
- Final Cut express
- In Each Camera Kit
- Canon VIXIA HF M300
- 8 Kingston 16 GB Class 4 SDHC Flash Memory Card
- Pelican 0910-010-110 Secure Digital Memory Card Case
- AVerTV Hybrid Volar HD (enables streaming via a computer)
- Current converter
- 60" Tripod
Contact Kate Hartmann or Doug Wilson for more informaiton.
Video Editing/Post Processing via IEHD Productions
File:IEHD - OWASP Video Production Services.pdf Full proposal from IEHD contact patrick@iehdproductions.com or Mark Bristow for more information
| Service Name | Description | Rate |
|---|---|---|
| Basic Post-Production |
|
$40.00 per finished presenter of approx. 60 minutes with no minimum |
| Full Post-Production |
and other key sources. (client provided notations for slide transitions) |
$60.00 per finished presenter of approx. 60 minutes with no minimum |
| On site Video Production |
|
|
Completion/turn around model 30+ speakers with production and/or post production is 4-6 weeks with projects uploading starting second week after conference end. Smaller or larger conferences/projects are adjusted accordingly.
Budget Management
Conference Budget Planning Tool
Sponsorships
OWASP Global Conference Sponsors
Institutional knowledge about past sponsors and sponsorships
Presentations and Training
OWASP Track
Call For Training proposal template.
Schwag
To request general OWASP Promotional Materials, fill out this Google Form.
Event planners are welcome to use any vendor that they feel can provide appropriate items for their conference. However OWASP has relationships with the following vendors that can ease the process.
Konik - Preferred SCHWAG Vendor
Rocksports - Preferred apparel Vendor
OWASP Store - Merchandise for sale at conferences
If you have questions or require an exception to any of these please contact the Global Conferences Committee. Comprehensive tracking of committee votes was not started until January 2011, policies with an NA entered into the "votes" column were conducted before this policy was implemented.
| Policy | Rationale | Last Updated | Applicability | Votes |
|---|---|---|---|---|
| All content must be vendor neutral | OWASP Core Value | N/A | All Events - Core Value | N/A |
| All content must be made available to the public after the conference | OWASP Core Value | N/A | All Events - Core Value | N/A |
| All calls for papers, training and registration must be open to the public | OWASP Core Value | N/A | All Events - Core Value | N/A |
| All events must be conducted in a manor consistent with the OWASP Mission, Principles and Code of Ethics | OWASP Core Value | N/A | All Events - Core Value | N/A |
| OWASP Event Definitions | These definitions were established to define the different categories of OWASP events to support OWASP GCC Planning and Policies. | 12/22/2010 | All Events | Vote Thread |
| OWASP Event Requirements | These definitions were established to define requirements imposed on individual events by type. | N/A | All Events | N/A |
Local host chapters will share in OWASP event profits under the following schedule. In the case of multiple host chapters, the host chapters will be responsible for determining the division before the event.
|
In addition to the Membership Committee membership split that provides funds to local chapters, it is also appropriate to allow local chapters to leverage the hard work that goes into planning events as additional revenue streams. The committee considered weighing the needs of the OWASP Foundation, Local Chapters entrepreneurship, the desire not to create "haves and have not" chapters within OWASP in addition to many other factos when setting this policy. | 2011/01/13 | All Events | Jan 11 mtg |
| All Events must be coordinated with the Global Conferences Committee and receive their approval | These ensures coordination of event schedules, content and budget priorities | N/A | All Events | N/A |
| Events must have an OWASP Wiki Page | The Wiki remains the authoritative source of OWASP information | N/A | All Events | N/A |
| Only OWASP Board members or their designates may enter into contracts on behalf of the foundation | Required by the OWASP By-Laws | N/A | All Events | N/A |
| All finances must be handled by the OWASP Foundation unless exceptions are granted by the Global Conferences Committee | This ensures the central management of Foundation resources for activities occurring under the OWASP Brand | N/A | All Events | N/A |
| Free admission should be made available for OWASP Leaders, Committee and Board members | OWASP Board Decision | N/A | All Events | N/A |
| OWASP individual members in good standing shall receive $50 off admission to all OWASP events charging more than $50 entry fee. | OWASP Membership Perk | N/A | All Events | N/A |
| A complete budget must be submitted and approved by the Global Conferences Committee | It is the responsibility of the Global Conferences Committee to ensure that OWASP Foundation resources are appropriately managed as it relates to OWASP conferences. This requirement ensures GCC visibility into conference expenditures and allows the GCC to assist where appropriate. | N/A | Regional/Theme Conferences | N/A |
| A board member must be present at all OWASP AppSec and Regional Conferences to provide a welcoming statement | OWASP Board Decision | N/A | Regional/Theme Conferences | N/A |
| Global AppSec Conferences must include training | As the flagship events for OWASP Global AppSec Conferences must also have a training component. | N/A | Global AppSec Conferences | N/A |
| Global AppSec Conferences must charge an admission fee | Global AppSec Conferences are large expenditures for the OWASP foundation. In order to ensure that the foundation can recover some or all of these costs, an admission fee must be charged. | N/A | Global AppSec Conferences | N/A |
| Sessions must be recorded and posted to the public after the conference | As the flagship events for OWASP Global AppSec Conferences must also provide video coverage and post it post conference. See the [Global Conference Resources] for information on additional resources. | N/A | Global AppSec Conferences | N/A |
| There must be at least one networking event at the conference | As the flagship events for OWASP Global AppSec Conferences must have a networking event. | N/A | Global AppSec Conferences | N/A |
| All Training providers are required to sign a Training Instructor Agreement | Clearly outline responsibilities and provide some legal cover for the foundation. | N/A | Training | N/A |
| Training revenue will be split 60/40 (OWASP/Training Provider) | GCC has set what it considers a fair policy in order to share training profits with training providers | N/A | Training | N/A |
| Free training should be made available for OWASP Leaders. This must be included in the Training Instructor Agreement | Board Policy | N/A | Training | N/A |
| Speakers must sign a Speaker Agreement | The allows OWASP to use the speaker's materials as well as their likeness as well as set some boundaries for content. Electronic signatures are permissible. | N/A | Speakers | N/A |
| Speakers will not receive compensation for their speaking engagement | This policy allows OWASP to keep admissions costs low so that OWASP can help spread knowledge of application security issues to the widest audience. Exceptions to this policy may be granted in certain cases so contact the Global Conferences Committee if you need an exception. | N/A | Speakers | N/A |
As one of their 2011 initiatives, the Global Conferences Committee started a Conference Liaison Program, where a member of the committee is paired with each of the Global AppSec organizing teams in order to assist them with their planning process as well as attend the conference to help trouble shoot any issues and sign necessary paperwork.
The following duties were initially set forth for the GCC liaison:
The GCC member shall:
- interface with the local planning committee at least 1 month before trip (attend planning call)
- Interact with planners/attendees while at conference
- Interact with Sponsors
- Sign conference contracts under $20,000 (once approved)
At the GCC meeting following the event, the traveling member will be expected to provide an post trip report covering:
- Assessment of facility
- Event Marketing Strategy
- Examination of Event Budget
- Estimation of Speaker Quality
- Sponsor engagement/cost-effectiveness & feedback
- Any notable comments from planners/attendees
- Any unique outstanding elements
- Any issues
| Event Name | Event Location | Date | GCC Liaison | Post-Event Report |
|---|---|---|---|---|
| AppSec EU 2011 | Dublin, Ireland | June 7-10, 2011 | Ralph Durkee | AppSecEU Liaison Report |
| AppSec North America 2011 | Minneapolis, MN, USA | Sept. 20-23, 2011 | Mark Bristow | AppSecNA Liaison Report |
| AppSec Latin America 2011 | Porto Alegre, Brazil | Oct. 4-7, 2011 | Lucas Ferreira | AppSecLatam Liaison Report |
| AppSec Asia 2011 | Beijing, China | Nov. 8-11, 2011 | Lucas Ferreira | AppSec Asia Liaison Report |
| AppSec Asia 2011 | Beijing, China | Nov. 8-11, 2011 | Sarah Baso (GCC Admin) | AppSec Asia Event Report* |
| AppSec Asia 2012 | Sydney, Australia | Spring, 2012 | Mohd Fazli Azran | |
| AppSec Europe 2012 | Athens, Greece | July 9-13, 2012 | John Wilander | |
| AppSec North America 2012 | Austin, Texas, USA | Oct. 22-26, 2012 | TBD | |
| AppSec Latin America 2012 | Buenos Aires, Argentina | Nov. 2012 | TBD | |
Mailing List | Archives - Official Global Conferences Committee Mailing list. Used for all GCC communications and meeting announcements.
Budget
Global Conference Committee Budget
Meeting Minutes
Committee meeting minutes - Committee Meeting minutes taken by the GCC Chair at each GCC meeting.
Contracts
Contracts/Partnership agreement archive
Conference Sponsorship
2012 Sponsorship Documents
Global Sponsorships:
Individual Event Sponsorships:
- AppSec Research 2012 - Athens, Greece
- AppSec India 2012 - Delhi, India
- AppSec North America (USA) 2012 - Austin, Texas
- AppSec Latam 2012 - Buenos Aires, Argentina
- AppSec China 2012
- AppSec Brazil 2012
Archived Event Documents:
- AppSec DC 2012 - Washington DC, AppSec DC Sponsor Information Pack
- AppSec Asia Pacific 2012 - Sydney, Australia
Event Management
OWASP Conference Management System
Google Form for requesting general OWASP schwag/promotional materials.
Voting Record
Current Global Conferences Committee Members:
- Mark Bristow (chair) - MB
- John Wilander - JW
- Richard Greenberg - RG
- Ralph Durkee - RD
- Lucas Ferreira - LF
- Mohd Fazli Azran - MFA
Ben Tomhave - BTresigned 25-July-2011-
Neil Matatall - NMResigned 17-Sep-2011 -
Cassio Goldschmidt - CGResigned 23-Nov-2011 - Lorna Alamri - LA, new 14-Mar-2012
- Benny Ketelslegers - BK, new 5/3/2012
Note - Tracking started as of 7/15/2011 on this page (previous voting records can be found in the Global Conference Committee Meeting Minutes
2011 Voting Records
| Date vote proposed | Details on item for proposed vote | Yes Votes | No Votes | Pass/Fail | Decision Date | Thread on mailing list |
|---|---|---|---|---|---|---|
| 15-July-2011 | GCC pay for 50% of Sarah Baso's travel to AppSec LATAM in order to support their event (other 50% to be paid by Chapters Committee) | 5 of 9 MB, BT, LF, MFA, RD |
Pass | 19-July-2011 | Link to request for vote Link to final vote | |
| 8-Aug-2011 | ISSA International Co-Marketing Agreement | 8 of 8 MB, RG, NM, LF, RD, JW, MFA, CG |
Pass | 10-Aug-2011 | Link to final vote | |
| 28-Aug-2011 | Automatic Approvals of Events in OCMS | 6 of 8 MB, JW, RD, NM, MFA, LF |
Pass | 29-Aug-2011 | Link to vote details | |
| 26-Sept-2011 | Change to GCC Air Travel Policy | 6 of 7 MB, RG, LF, RD, MFA, CG |
Pass | 27-Sept-2011 | Link to vote details | |
| 09-Oct-2011 | Creation of GCC Hotel Travel Policy | 4 of 7 MB, LF, CG, MFA, RD |
Pass | 10-Oct-2011 | Link to vote details | |
| 09-Oct-2011 | 2012 Committee Goals | MB, MFA, LF | Goals amended for re-vote | Link to vote details | ||
| 10-Oct-2011 | 2012 Committee Goals Amended: Desired committee composition at least 1 US, 1 EU, 1 LATAM, 1 Asiapac |
MB, MFA, LF, JW, RG, CG, RD | Pass | 17-Oct-2011 | Link to final vote | |
| 28-Nov-2011 | Purchase 1 year subscription to Survey Monkey (Gold Plan - $300)to standardize/track event feedback | MB, JW, RD, RG | LF, MFA, CG (all 3 did not submit a vote) | Pass | 28-Nov-2011 | JW & MB Vote, RG & RD Vote |
| 16-Jan-2012 | Vote of Confidence - re-elect Mark as GCC Chair for 2012 | LF, JW, RD, RG | MB (Abstain), MFA (did not vote) | Passes | 16-Jan-2012 | Jan 2012 GCC Meeting Minutes |
| 16-Jan-2012 | Grant exception to GCC Attendance Governance Rules for JW and MFA | LF, MB, RD, RG | JW & MFA (abstain) | Passes | 16-Jan-2012 | Jan 2012 GCC Meeting Minutes |
| 22-Jan-2012 | Approve allocation of $40,000 Conference Committee Budget | MB, LF, JW, MFA | RD, RG (did not vote) | Passes | 30-Jan-2012 | Conference Committee Budget |
| 14-March-2012 | Approve Lorna Alamri's Application to join GCC | MB, LF, RG, RD | JW, MFA (no vote submitted) | Passes | 14-March-2012 | March 2012 Meeting Minutes |
| 14-March-2012 | Vote to confirm 2013 Summit venue as Cruise | MB, LF, RG, RD, LA | JW, MFA (no vote submitted) | Passes | 14-March-2012 | March 2012 Meeting Minutes |
| 3-May-2012 | Vote to confirm Benny Ketelslegers as new GCC Member | MB, RG, RD, LA, MFA | JW(no vote submitted) | Passes | 3-May-2012 | May 2012 Meeting Minutes |