The amount of "pros" in App Sec / Red Team / Vulnerability Assessment that cannot explain OWASP as a general entity, or even as a concept, is frustrating and scary.
1
2
GIF
I think it's a symptom of how people find their way into the industry. I wouldn't want OWASP to become a gatekeeping signal, but do encourage those who don't know about OWASP to join their local chapter -- it's free! And global!
owasp.org/chapters/
1
1
As a member of the OWASP Board of Directors, I definitely agree it’s foundational! And I agree it’s odd that someone hasn’t been exposed to OWASP if they’ve done AppSec for 5+ years, but is plausible. We do not have a cert program, which means less visibility for newer people.
Apr 7, 2021 · 9:49 PM UTC
1

