BanklessDAO InfoSec Meeting 2

Created
Feb 19, 2022
Tags
Meeting Date
Feb 7, 2022
Attendees
Dysan, BogDrakonov, d0wnlore
  • BogDrakonov to move notes to either Notion or a Jekyll site before the next meeting
  • Forum vote going well
    • 65%/35% with the majority for right now
  • GitHub/Google access
    • direction by InfoSec.
    • Google under InfoSec entirely
    • GitHub shared with DevOps
  • Poll to grant InfoSec team moderation privileges in Discord
    • Caveat: People uncomfortable with L1s having mod privileges. Typically this is for L2s. Might restrict existing InfoSec team role to L2s on the team
      • Second InfoSec team role possibly for L1s on the team
      • Working on getting nominations for L1s to L2s through this season’s InfoSec work
  • Dysan to look in to “service medal” POAPs for end of season work
  • Trello board to be used for tracking work.
    • Do what you want and get paid only for what you do
  • Continue researching Discord moderation bots
    • Home-grown bot in Python
    • Or do we use a commercial one?
    • Balance this using existing bot to immediate issues while building our own bot out to resell as a service
    • InfoSec bot repo to consider the work of a home grown bot
  • Education topics for this week
    • This week: Threat modeling topic handled by d0wnlore regarding assets
    • Next week or secondary topic: Wallet security 101 (hardware vs software, when to choose. What are smart contract wallets and why use them)
    • Let’s look into how to properly have a decentralized movie night to watch some InfoSec themed movie. (How to do this without violating laws/TOS)
      • Are there creative commons InfoSec movies
  • BogDrakonov office hours now Thursdays at 10pm-12am EST
    • Others may follow soon

BanklessDAO InfoSec Meeting 2

Created
Feb 19, 2022
Tags
Meeting Date
Feb 7, 2022
Attendees
Dysan, BogDrakonov, d0wnlore
  • BogDrakonov to move notes to either Notion or a Jekyll site before the next meeting
  • Forum vote going well
    • 65%/35% with the majority for right now
  • GitHub/Google access
    • direction by InfoSec.
    • Google under InfoSec entirely
    • GitHub shared with DevOps
  • Poll to grant InfoSec team moderation privileges in Discord
    • Caveat: People uncomfortable with L1s having mod privileges. Typically this is for L2s. Might restrict existing InfoSec team role to L2s on the team
      • Second InfoSec team role possibly for L1s on the team
      • Working on getting nominations for L1s to L2s through this season’s InfoSec work
  • Dysan to look in to “service medal” POAPs for end of season work
  • Trello board to be used for tracking work.
    • Do what you want and get paid only for what you do
  • Continue researching Discord moderation bots
    • Home-grown bot in Python
    • Or do we use a commercial one?
    • Balance this using existing bot to immediate issues while building our own bot out to resell as a service
    • InfoSec bot repo to consider the work of a home grown bot
  • Education topics for this week
    • This week: Threat modeling topic handled by d0wnlore regarding assets
    • Next week or secondary topic: Wallet security 101 (hardware vs software, when to choose. What are smart contract wallets and why use them)
    • Let’s look into how to properly have a decentralized movie night to watch some InfoSec themed movie. (How to do this without violating laws/TOS)
      • Are there creative commons InfoSec movies
  • BogDrakonov office hours now Thursdays at 10pm-12am EST
    • Others may follow soon