<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: OWASP Top 10 Awareness Training in Governance, Risk, Compliance</title>
    <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88176#M1461</link>
    <description>Thanks nkeaton!</description>
    <pubDate>Fri, 20 Feb 2026 02:13:41 GMT</pubDate>
    <dc:creator>sithurralde</dc:creator>
    <dc:date>2026-02-20T02:13:41Z</dc:date>
    <item>
      <title>OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88143#M1458</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm looking for suggestions or recommendations for OWASP top 10 training for my company's developers. Looking of a overview/awareness course that can be purchased as a SCORM package.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Feb 2026 19:17:46 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88143#M1458</guid>
      <dc:creator>sithurralde</dc:creator>
      <dc:date>2026-02-18T19:17:46Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88151#M1459</link>
      <description>&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1279452087"&gt;@sithurralde&lt;/a&gt; I would see if there is an active OWASP chapter in your area. They would probably be willing to set something up for you. I use ETI Performance Improvement for that type of training. They are easy to work with and will tailor training for staff. I would also suggest familiarity with CSA’s (Cloud Security Alliance) top threats. &lt;A href="https://cloudsecurityalliance.org/artifacts/top-threats-to-cloud-computing-2025" target="_blank"&gt;https://cloudsecurityalliance.org/artifacts/top-threats-to-cloud-computing-2025&lt;/A&gt; OWASP is touched upon in ISC2’s CSSLP training as well. .</description>
      <pubDate>Wed, 18 Feb 2026 23:53:29 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88151#M1459</guid>
      <dc:creator>nkeaton</dc:creator>
      <dc:date>2026-02-18T23:53:29Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88162#M1460</link>
      <description>&lt;P&gt;We developed our own training for this based on on environment (Discrete Mfg.). but we did look at several vendors (Secureflag, Aqua, DataSunrise as well as those offered by OWASP).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The rationale was simple, these developers were also charged with keeping the systems viable (99% uptime)....so we had to build and deliver in such a way that they could implement security and still meet the business requirements.&amp;nbsp; Remember anything that slows production or potentially stops in is thrown out immediately in this environment.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In addition to your local OWASP group, check out ISC2 chapters ( there are many in the SFO area). At these meetings, you may find someone who has done this work and willing to share.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Additionally, RSA is coming up in March and is a perfect place to talk to MANY vendors about their offerings.&amp;nbsp; Many vendors offer free EXPO passes (Just a few......there are others):&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;&lt;SPAN class=""&gt;&lt;STRONG&gt;Thales:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;52E1339XP&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class=""&gt;&lt;STRONG&gt;Veeam:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;52E1300XP&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN class=""&gt;&lt;STRONG&gt;Nokia:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;52E1014XP&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN class=""&gt;DataSunrise is also offering an expo pass along with an all access pass (value $30) by using code 52AAD136.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;And of course, ISC2 offers a member discount to the conference.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;d&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Feb 2026 09:58:23 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88162#M1460</guid>
      <dc:creator>dcontesti</dc:creator>
      <dc:date>2026-02-19T09:58:23Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88176#M1461</link>
      <description>Thanks nkeaton!</description>
      <pubDate>Fri, 20 Feb 2026 02:13:41 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88176#M1461</guid>
      <dc:creator>sithurralde</dc:creator>
      <dc:date>2026-02-20T02:13:41Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88177#M1462</link>
      <description>Thanks dcontesti</description>
      <pubDate>Fri, 20 Feb 2026 02:14:06 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88177#M1462</guid>
      <dc:creator>sithurralde</dc:creator>
      <dc:date>2026-02-20T02:14:06Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88185#M1464</link>
      <description>&lt;P&gt;The OWASP Foundation itself is a non-profit that provides the standards (the list, documentation, and data), they do not sell or provide an "official" SCORM package. For that, you must use third-party vendors who build curriculum based on the OWASP standards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However, You find a nice overview on their official site:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://owasp.org/Top10/2021/" target="_blank"&gt;https://owasp.org/Top10/2021/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 20 Feb 2026 11:33:26 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88185#M1464</guid>
      <dc:creator>Blue_bird</dc:creator>
      <dc:date>2026-02-20T11:33:26Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88188#M1465</link>
      <description>&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1279452087"&gt;@sithurralde&lt;/a&gt; Very welcome. I work with our cybersecurity workforce on attaining and keeping their certifications and set up training and do study materials acquisitions for that. I do hope that you have a local OWASP chapter that is active and willing to assist. Please let me know if can assist. Giving back to the profession is very important to me as is helping others.</description>
      <pubDate>Fri, 20 Feb 2026 12:43:15 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88188#M1465</guid>
      <dc:creator>nkeaton</dc:creator>
      <dc:date>2026-02-20T12:43:15Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88249#M1466</link>
      <description>Maybe we can start with an OWASP open project. It provides detailed guidance and a solid baselines.&lt;BR /&gt;&lt;A href="https://owasp.org/Top10/2025/" target="_blank"&gt;https://owasp.org/Top10/2025/&lt;/A&gt;</description>
      <pubDate>Sun, 22 Feb 2026 22:48:13 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88249#M1466</guid>
      <dc:creator>akkem</dc:creator>
      <dc:date>2026-02-22T22:48:13Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88266#M1467</link>
      <description>&lt;P&gt;Thanks akkem.&lt;/P&gt;</description>
      <pubDate>Mon, 23 Feb 2026 19:55:23 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88266#M1467</guid>
      <dc:creator>sithurralde</dc:creator>
      <dc:date>2026-02-23T19:55:23Z</dc:date>
    </item>
    <item>
      <title>Re: OWASP Top 10 Awareness Training</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88267#M1468</link>
      <description>&lt;P&gt;Thanks Blue_bird&lt;/P&gt;</description>
      <pubDate>Mon, 23 Feb 2026 19:56:08 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/OWASP-Top-10-Awareness-Training/m-p/88267#M1468</guid>
      <dc:creator>sithurralde</dc:creator>
      <dc:date>2026-02-23T19:56:08Z</dc:date>
    </item>
  </channel>
</rss>

