Name
B1. AppSec Pen Test Metrics
Date & Time
Wednesday, May 10, 2017, 11:15 AM - 12:15 PM
Caroline Wong
Description
Session Description:
 
What's your current level of confidence in your application security program? Are you tracking any pen test metrics? Maybe you should. This session will detail several application security metrics used to measure the effectiveness of penetration testing at both program and engagement levels. Caroline Wong, author of the popular textbook Security Metrics: A Beginner's Guide, will also share real world data from ~ 100 individual pen test engagements performed in 2016.
 
 
Location Name
Room 703
Full Address
Colorado Convention Center
700 14th Street
Denver, CO 80202
United States
Category
AppSec
Speaker(s)
Caroline Wong
Learner Objectives
After completing this session, learner will have a strong understanding of how to present and discuss their application security pen testing in terms of depth, breadth, and effectiveness. They can use this information to evaluate their current approach and become better equipped to communicate capably about the value of their program to executives, auditors, regulators, customers, and other stakeholders.
 
Speaker Bio(s)
Caroline's close and practical information security knowledge stems from broad experience as a Cigital consultant, a Symantec product manager, and day-to-day leadership roles at eBay and Zynga. She is a well known thought leader on the topic of security metrics and authored the popular textbook Security Metrics: A Beginner 's Guide, published by McGraw-Hill in 2011.
 
Sorting Order
1