July 2022 Agenda/Minutes

Meeting Details

Agenda

CALL TO ORDER

Board Members

  • Vandana Verma Sehgal, Grant Ongers, Avi Douglen, Glenn ten Cate, Joubin Jabbari, Bil Corry.

Guests Andrew van der Stock, Tom Pappas, Dawn Aitken, Harold Blankenship, Lisa Jones, Kelly Santalucia, Lauren Thomas

CONFLICT OF INTEREST AND ANTI-TRUST STATEMENT

As the Board consists of individuals from many competing organizations, OWASP and its Board shall abide by all applicable anti-trust and competition laws. To avoid any perceived or actual conflict of interest, or anti-trust concerns under US federal, state, or regulations, only the published agenda shall be discussed or voted upon, or amended as below. If there are any conflicts of interest, Board members are expected to disclose the conflict of interest and must recuse themselves from discussion and voting.

CHANGES TO THE AGENDA

Changes to the agenda - unless otherwise prohibited by anti-trust or competition laws - including adding, altering, or tabling of motions is permitted by following Roberts Rules of Order (RONR 12th Ed) 41:63, which requires an affirmative two-thirds vote.

APPROVAL OF MINUTES

REPORTS AND PRE-READING MATERIAL

e-Votes and Special Meeting Motions to read into minutes

None.

NEW BUSINESS

None.

COMMENTS, ANNOUNCEMENTS, AND OTHER BUSINESS

Grant and Fundraising Strategy

OWASP is in the very nascent stage of fundraising. The last time we attempted to obtain a grant, an offer was made to buy us, which shows how unprepared we are for serious fundraising efforts.

A short presentation by Teresa Huff, Nonprofit Strategist and Grant Writing Mentor, discussing the development and implementation of a self-sustaining and mature fundraising and grant writing program at OWASP.

Maribor Chapter Discussion

The Maribor Chapter is run by some of OWASP’s most respected and longest active members. To discuss the background and a resolution to this situation, Milan Gabor and Gregor Spagnolo have agreed to meet with the Board.

During COVID, the Maribor chapter has failed to achieve meeting requirements. During the BAU review to start the process of deactivation, it was discovered that a new entity has been registered in Slovenia, an EU nation. The entity is called “OWASP Association”:

https://owasp.si/

“A non-profit organization founded with the aim of realizing common interests in the field of information security and related fields. The association also acts as a local group of the global organization OWASP, which works to improve software security. We are active in Slovenia and the wider region.” (Google Translate)

The signing authority for creating new entities resides with the Board, and not chapter leaders. Under the Code of Conduct, participants, members and leaders agree to abide by all policies. The Chapter policy explicitly prohibits signing contracts, as does the signing authority policy. Sanctions under the Code of Conduct:

“Depending on the severity of the breach, the member or participant can accept the 30-day suspension, or in serious cases, the member or participant will be referred to the Compliance Committee for a decision regarding their ongoing participation or membership by the OWASP Board at the next available Board meeting.”

As this is a first time breach, and is likely done in good faith, we will need a decision on how to proceed from the Board after the discussion.

Discussion on Developer Conferences

Outreach Committee to present Developer Conference proposal.

Discussion on Project Summit

Harold Blankenship to present an update on the AppSec San Francisco Project Summit.

Executive Session about potential Partnership

There will be an adjournment into an executive session to discuss a potential partnership with another non-profit. This may lead to a vote, so quorum should be maintained.

ADJOURNMENT

Adjournment motion

The next general Board meeting is on August 23, at 12 pm US Eastern Time.

“It is moved, and seconded to adjourn. Those in favor, say “aye””

Sponsor: Chair Second: TBA


Staff Reports

Executive Director

See slides

Finance

See narrative and financial package.