Skip to content

Commit 9b46851

Browse files
authored
provide dedicated section on security champions
2 parents 9fcfa37 + 5c5cc16 commit 9b46851

File tree

23 files changed

+428
-77
lines changed

23 files changed

+428
-77
lines changed

.github/workflows/ci.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
uses: actions/[email protected]
1616

1717
- name: Link Checker
18-
uses: lycheeverse/lychee-action@v1.9.1
18+
uses: lycheeverse/lychee-action@v1.10.0
1919
with:
2020
# skip the jekyll files
2121
args: --verbose --no-progress --max-retries 5 --exclude-path './_includes/*.html' '**/*.md' '*.md'

.github/workflows/housekeeping.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -35,7 +35,7 @@ jobs:
3535
uses: actions/[email protected]
3636

3737
- name: Link Checker
38-
uses: lycheeverse/lychee-action@v1.9.1
38+
uses: lycheeverse/lychee-action@v1.10.0
3939
with:
4040
# skip the jekyll files
4141
args: --verbose --no-progress --max-retries 5 --exclude-path './_includes/*.html' '**/*.md' '*.md'

.github/workflows/pr.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ jobs:
1515
uses: actions/[email protected]
1616

1717
- name: Link Checker
18-
uses: lycheeverse/lychee-action@v1.9.1
18+
uses: lycheeverse/lychee-action@v1.10.0
1919
with:
2020
# skip the jekyll files
2121
args: --verbose --no-progress --max-retries 5 --exclude-path './_includes/*.html' '**/*.md' '*.md'

.wordlist.txt

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -475,4 +475,5 @@ DPO
475475
CISO
476476
iteratively
477477
ai
478-
Serverless
478+
Serverless
479+
proscriptive

_data/draft.yaml

Lines changed: 17 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ docs:
2222
- title: '2.5 OWASP Top 10'
2323
url: foundations/owasp_top_ten
2424

25-
- title: '2.6 Security champions'
26-
url: foundations/security_champions
27-
2825
- title: '3. Requirements'
2926
url: requirements
3027

@@ -274,16 +271,28 @@ docs:
274271
- title: '8. Culture building and Process maturing'
275272
url: culture_building_and_process_maturing
276273

277-
- title: '8.1 Security Champions Playbook'
278-
url: culture_building_and_process_maturing/security_champions_playbook
274+
- title: '8.1 Security Culture'
275+
url: culture_building_and_process_maturing/security_culture
276+
277+
- title: '8.2 Security Champions'
278+
url: culture_building_and_process_maturing/security_champions
279+
280+
- title: '8.2.1 Security champions program'
281+
url: culture_building_and_process_maturing/security_champions/security_champions_program
282+
283+
- title: '8.2.2 Security Champions Guide'
284+
url: culture_building_and_process_maturing/security_champions/security_champions_guide
285+
286+
- title: '8.2.3 Security Champions Playbook'
287+
url: culture_building_and_process_maturing/security_champions/security_champions_playbook
279288

280-
- title: '8.2 Software Assurance Maturity Model'
289+
- title: '8.3 Software Assurance Maturity Model'
281290
url: culture_building_and_process_maturing/software_assurance_maturity_model
282291

283-
- title: '8.3 Application Security Verification Standard'
292+
- title: '8.4 Application Security Verification Standard'
284293
url: culture_building_and_process_maturing/asvs
285294

286-
- title: '8.4 Mobile Application Security'
295+
- title: '8.5 Mobile Application Security'
287296
url: culture_building_and_process_maturing/mobile_application_security
288297

289298
- title: '9. Operation'

_data/release.yaml

Lines changed: 17 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -22,9 +22,6 @@ docs:
2222
- title: '2.5 OWASP Top 10'
2323
url: foundations/owasp_top_ten
2424

25-
- title: '2.6 Security champions'
26-
url: foundations/security_champions
27-
2825
- title: '3. Requirements'
2926
url: requirements
3027

@@ -274,16 +271,28 @@ docs:
274271
- title: '8. Culture building and Process maturing'
275272
url: culture_building_and_process_maturing
276273

277-
- title: '8.1 Security Champions Playbook'
278-
url: culture_building_and_process_maturing/security_champions_playbook
274+
- title: '8.1 Security Culture'
275+
url: culture_building_and_process_maturing/security_culture
276+
277+
- title: '8.2 Security Champions'
278+
url: culture_building_and_process_maturing/security_champions
279+
280+
- title: '8.2.1 Security champions program'
281+
url: culture_building_and_process_maturing/security_champions/security_champions_program
282+
283+
- title: '8.2.2 Security Champions Guide'
284+
url: culture_building_and_process_maturing/security_champions/security_champions_guide
285+
286+
- title: '8.2.3 Security Champions Playbook'
287+
url: culture_building_and_process_maturing/security_champions/security_champions_playbook
279288

280-
- title: '8.2 Software Assurance Maturity Model'
289+
- title: '8.3 Software Assurance Maturity Model'
281290
url: culture_building_and_process_maturing/software_assurance_maturity_model
282291

283-
- title: '8.3 Application Security Verification Standard'
292+
- title: '8.4 Application Security Verification Standard'
284293
url: culture_building_and_process_maturing/asvs
285294

286-
- title: '8.4 Mobile Application Security'
295+
- title: '8.5 Mobile Application Security'
287296
url: culture_building_and_process_maturing/mobile_application_security
288297

289298
- title: '9. Operation'

draft/02-toc.md

Lines changed: 8 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,6 @@ permalink:
2222
2.3 [Principles of security](#principles-of-security)
2323
2.4 [Principles of cryptography](#principles-of-cryptography)
2424
2.5 [OWASP Top 10](#owasp-top-ten)
25-
2.6 [Security champions](#security-champions)
2625

2726
3 **[Requirements](#requirements)**
2827
3.1 [Requirements in practice](#requirements-in-practice)
@@ -112,10 +111,14 @@ permalink:
112111
7.9 [OWASP Snakes and Ladders](#owasp-snakes-and-ladders)
113112

114113
8 **[Culture building and Process maturing](#culture-building-and-process-maturing)**
115-
8.1 [Security Champions Playbook](#security-champions-playbook)
116-
8.2 [Software Assurance Maturity Model](#software-assurance-maturity-model)
117-
8.3 [Application Security Verification Standard](#application-security-verification-standard)
118-
8.4 [Mobile Application Security](#mobile-application-security)
114+
8.1 [Security Culture](#security-culture)
115+
8.2 [Security Champions](#security-champions)
116+
8.2.1 [Security champions program](#security-champions-program)
117+
8.2.2 [Security Champions Guide](#security-champions-guide)
118+
8.2.3 [Security Champions Playbook](#security-champions-playbook)
119+
8.3 [Software Assurance Maturity Model](#software-assurance-maturity-model)
120+
8.4 [Application Security Verification Standard](#application-security-verification-standard)
121+
8.5 [Mobile Application Security](#mobile-application-security)
119122

120123
9 **[Operation](#operation)**
121124
9.1 [ModSecurity Core Rule Set](#modSecurity-core-rule-set)

draft/04-foundations/00-toc.md

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -26,7 +26,6 @@ Sections:
2626
2.3 [Principles of security](#principles-of-security)
2727
2.4 [Principles of cryptography](#principles-of-cryptography)
2828
2.5 [OWASP Top 10](#owasp-top-ten)
29-
2.6 [Security champions](#security-champions)
3029

3130
----
3231

draft/04-foundations/toc.md

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,6 @@ Sections:
2727
2.3 [Principles of security](03-security-principles.md)
2828
2.4 [Principles of cryptography](04-crypto-principles.md)
2929
2.5 [OWASP Top 10](05-top-ten.md)
30-
2.6 [Security champions](06-security-champions.md)
3130

3231
----
3332

draft/10-culture-building-process-maturing/00-toc.md renamed to draft/10-culture-process/00-toc.md

Lines changed: 9 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -26,16 +26,20 @@ The maturity of security processes and culture is wide ranging, with indicators
2626

2727
Sections:
2828

29-
8.1 [Security Champions Playbook](#security-champions-playbook)
30-
8.2 [Software Assurance Maturity Model](#software-assurance-maturity-model)
31-
8.3 [Application Security Verification Standard](#application-security-verification-standard)
32-
8.4 [Mobile Application Security](#mobile-application-security)
29+
8.1 [Security Culture](#security-culture)
30+
8.2 [Security Champions](#security-champions)
31+
8.2.1 [Security champions program](#security-champions-program)
32+
8.2.2 [Security Champions Guide](#security-champions-guide)
33+
8.2.3 [Security Champions Playbook](#security-champions-playbook)
34+
8.3 [Software Assurance Maturity Model](#software-assurance-maturity-model)
35+
8.4 [Application Security Verification Standard](#application-security-verification-standard)
36+
8.5 [Mobile Application Security](#mobile-application-security)
3337

3438
----
3539

3640
The OWASP Developer Guide is a community effort; if there is something that needs changing then [submit an issue][issue1000].
3741

38-
[issue1000]: https://github.com/OWASP/www-project-developer-guide/issues/new?labels=enhancement&template=request.md&title=Update:%2010-culture-building-process-maturing/00-toc
42+
[issue1000]: https://github.com/OWASP/www-project-developer-guide/issues/new?labels=enhancement&template=request.md&title=Update:%2010-culture-process/00-toc
3943
[sammg]: https://owaspsamm.org/model/governance/
4044
[sammgeg]: https://owaspsamm.org/model/governance/education-and-guidance/
4145
[sammgegoc]: https://owaspsamm.org/model/governance/education-and-guidance/stream-b/

0 commit comments

Comments
 (0)