Course Summary
You’ll learn to perform vulnerability management at scale and how to write custom roles for OS hardening, infrastructure as code and compliance as code.
You will gain skills like:
• Designing and implementing secure DevOps practices across the software development lifecycle (SDLC).
• Integrating security controls and automation into CI/CD pipelines to achieve continuous security testing and deployment.
• Performing threat modeling and risk assessments to identify and prioritize security threats and vulnerabilities.
• Implementing container security best practices, including image scanning, runtime protection, and orchestration security.
• Securing cloud-native architectures and services (e.g., AWS, Azure, Google Cloud) with a focus on identity and access management (IAM), network security, and compliance.
Module 1: Overview of DevSecOps
Module 2: Security Requirements and Threat
Modelling (TM)
Module 3: Advanced Static Analysis (SAST) in CI/CD pipeline
Module 4: Advanced Dynamic Analysis (DAST) in CI/CD pipeline
Module 5: Runtime Analysis (RASP/IAST) in CI/CD pipeline
Module 6: Infrastructure as Code (IaC) and its Security
Module 7: Container (Docker) Security
Module 8: Secrets management on mutable and immutable infra
Module 9: Advanced vulnerability management
Other Popular Courses
CompTIA: SecurityX
- Duration: 5 Days
- Language: English
- Level: Advanced
- Exam: CAS-005
Executive Cyber Risk Certification (ECRC)
- Duration: 2 Days
- Language: English
- Level: Advanced
- Exam: ECRC
Mastering Communication & Presentation Te...
- Duration: 5 Days
- Language: Danish
- Level: Intermediate
- Exam: MCPT
