Course Outline

Introduction to Application Security

  • Importance of application security in modern software development
  • Overview of common cyber threats and attack vectors
  • Understanding security risks in web and mobile applications

Secure Software Development Lifecycle (SDLC)

  • Integrating security into each phase of development
  • Threat modeling and risk assessment
  • Automated security testing in CI/CD pipelines

Understanding Common Security Vulnerabilities

  • Introduction to OWASP Top 10 security risks
  • Common coding flaws that lead to vulnerabilities
  • Exploiting insecure applications (hands-on exercises with DVWA/WebGoat)

Input Validation and Secure Coding Practices

  • Preventing SQL injection, cross-site scripting (XSS), and command injection
  • Best practices for input sanitization and validation
  • Implementing secure authentication and authorization mechanisms

Session Management and Data Protection

  • Handling session security: cookies, tokens, and JWT best practices
  • Data encryption techniques and secure storage
  • Secure API development and protection against API abuses

Security Testing and Vulnerability Assessment

  • Using OWASP ZAP and Burp Suite for security testing
  • Static and dynamic application security testing (SAST/DAST)
  • Penetration testing fundamentals for developers

Implementing Secure DevOps (DevSecOps)

  • Security automation in DevOps workflows
  • Container security and securing cloud applications
  • Incident response and security monitoring

Summary and Next Steps

  • Key takeaways from the course
  • Resources for further learning
  • Q&A and closing remarks

Requirements

  • Basics of any programming language
  • Experience in developing applications

Audience

  • Software developers
  • Application security engineers
  • DevOps and security teams
 21 Hours

Delivery Options

Private Group Training

Our identity is rooted in delivering exactly what our clients need.

  • Pre-course call with your trainer
  • Customisation of the learning experience to achieve your goals -
    • Bespoke outlines
    • Practical hands-on exercises containing data / scenarios recognisable to the learners
  • Training scheduled on a date of your choice
  • Delivered online, onsite/classroom or hybrid by experts sharing real world experience

Private Group Prices RRP from £5700 online delivery, based on a group of 2 delegates, £1800 per additional delegate (excludes any certification / exam costs). We recommend a maximum group size of 12 for most learning events.

Contact us for an exact quote and to hear our latest promotions


Public Training

Please see our public courses

Testimonials (1)

Provisional Upcoming Courses (Contact Us For More Information)

Related Categories