Course Summary

You’ll learn to perform vulnerability management at scale and how to write custom roles for OS hardening, infrastructure as code and compliance as code.

You will gain skills like:

• Designing and implementing secure DevOps practices across the software development lifecycle (SDLC).
• Integrating security controls and automation into CI/CD pipelines to achieve continuous security testing and deployment.
• Performing threat modeling and risk assessments to identify and prioritize security threats and vulnerabilities.
• Implementing container security best practices, including image scanning, runtime protection, and orchestration security.
• Securing cloud-native architectures and services (e.g., AWS, Azure, Google Cloud) with a focus on identity and access management (IAM), network security, and compliance.

Module 1: Overview of DevSecOps

Module 2: Security Requirements and Threat
Modelling (TM)

Module 3: Advanced Static Analysis (SAST) in CI/CD pipeline

Module 4: Advanced Dynamic Analysis (DAST) in CI/CD pipeline

Module 5: Runtime Analysis (RASP/IAST) in CI/CD pipeline

Module 6: Infrastructure as Code (IaC) and its Security

Module 7: Container (Docker) Security

Module 8: Secrets management on mutable and immutable infra

Module 9: Advanced vulnerability management

Before attending this course, you should have the following: • Practical DevSecOps Certified DevSecOps Professional (CDP) certification • A basic understanding of Application Security Practices like SAST and DAST.

Practical DevSecOps Certified DevSecOps Expert Exam Duration: 12 hours Exam type: Practical/labs Number of tasks: 5 Passing score: 75%

Following your booking, a confirmation message will be sent to all participants, ensuring you're well-informed of your successful enrollment. Calendar placeholders will also be dispatched to assist you in scheduling your commitments around the course. Rest assured, all course materials and access to necessary labs or platforms will be provided no later than one week before the course begins, allowing you ample time to prepare and engage fully with the learning experience ahead.

Our comprehensive training package includes all the necessary materials and resources to facilitate a full learning experience. Enrollees will be provided with detailed course content, encompassing a wide array of topics to ensure a thorough understanding of the subject matter. Additionally, participants will receive a certificate of completion to recognize their dedication and hard work. It's important to note that while the course fee covers all training materials and experiences, the examination fee for certification is not included but can be purchased separately.

Questions About This Course?