Press Releases
SECURITY EXPERTS FACE OFF IN SECOND ANNUAL
“INTERACTIVE TESTING CHALLENGE” AT RSA CONFERENCE 2007
Educational Program Invites Participants to Compete
in a Hands-On Test of Software Security Skills
Wilmington, MA - January 26, 2007 - Security
Innovation, the authority on application security and leading
independent provider of risk assessment, risk mitigation and
training services, and RSAŽ Conference today announced the 2nd
Annual “Interactive Testing Challenge” (ITC) taking place from Feb.
5 - 9 during the RSA Conference 2007 in San Francisco, Calif. The
ITC is the ultimate hands-on test of software security skills,
designed to help security professionals of varying skill levels
assess their knowledge and expertise in Web application security.
“The ITC addresses the challenges today’s software deployment teams
face when creating secure applications. Our program challenges
participants to use their experience in Web application security to
uncover uncommon and obscure Web site security flaws,” said Sandra
Toms LaPedis, general manager and area vice president, RSA
Conferences. “Last year we saw that people not only enjoyed the
educational aspect of the program but most of all the competition,
which adds quite a bit of excitement to the RSA Conference show
floor.”
This year’s challenge includes a new educational component aimed at
those less involved with or less knowledgeable in the area of
application security. Self-paced, interactive eLearning modules will
be available to educate conference attendees about the various types
of Web application vulnerabilities and challenge their knowledge
with labs, an interactive Q&A and dynamic content. Experts will be
available on-hand to answer any questions and help mentor
participants during the challenge.
On Tuesday and Wednesday, each participant will test one of two Web
sites on which there are five known vulnerabilities in each site.
Using a Q&A document developed by Security Innovation, participants
earn points for each vulnerability located.
“Organizations have had enough of reactive spending to plug holes
and pay the consequences in lost data and dollars. They must now
focus on proactive investment of security technologies and
application security training, as well as feel confident about the
security applications they build and/or acquire,” said Michael
Gavin, security analyst at Security Innovation. “The ITC and
eLearning Modules offer a practical way for security professionals
to connect the dots between the software systems and development
processes, to ultimately mitigate security risk.”
The top two daily winners will compete head-to-head in afternoon
showdowns moderated by security experts. Each day’s winner will
receive a prize and progress to the final showdown on Thursday
afternoon in the ITC area on the concourse level of the Moscone
Center.
What: Orientation
When: Monday, February 5, 6:00 p.m.
Testing Challenge Hours:
Tuesday, Feb. 6, 10:30 a.m. – 3:00 p.m.
Wednesday, Feb. 7, 10:30 a.m. – 3:00 p.m.
Daily Face-Off:
Tuesday, Feb. 6, 4:00 p.m.
Wednesday, Feb. 7, 4:00 p.m.
Final Face-Off
Thursday, Feb. 8, 12:00 p.m.
ITC Wrap-up and Winner Presentation:
Thursday, Feb. 8, 1:00 p.m.
Where: Concourse level, Moscone Center, San Francisco
URL:
http://www.rsaconference.com/2007/us/content/additional/itc/
About Security Innovation
Security Innovation, Inc. is an independent application security firm
that offers education, risk assessment and risk mitigation solutions to
Fortune/Global 500 and enterprise IT organizations. Leading companies
such as Adobe, Cisco, Fidelity, IBM, ING, HP, Microsoft, VISA, SAP,
Symantec, VeriSign and government agencies, rely on Security
Innovation’s expertise to gain confidence in the security of
applications they build and/or acquire, and facilitate the technology,
process and management change necessary to mitigate security risk. The
company is headquartered in Wilmington, Mass., with offices in
Amsterdam, The Netherlands and Seattle, Wash. For more information about
Security Innovation, visit www.securityinnovation.com or call
+1.978.694.1008.
About the RSA Conference
RSA Conference is helping drive the security agenda worldwide with
annual events in the U.S., Europe and Japan. Throughout its 16 year
history, RSA Conference has consistently attracted the world’s best and
brightest in the field, creating opportunities for conference attendees
to learn about IT security’s most important issues through first-hand
interactions with peers, luminaries and both emerging and established
companies. As the IT security field continues to grow in importance and
influence, RSA Conference plays an integral role in keeping security
professionals across the globe connected and educated. For more
information and conference dates, visit www.rsaconference.com.
Contacts:
Davida Dinerman or Sadie Anderson
Schwartz Communications, Inc.
(781) 684-0770
sisecure@schwartz-pr.com



