Mô tả

Course Updates:

v 2.0 - Jan 2024

  • Updated course with lectures on Java 17 download link

  • Updated course with lectures on BridgeCrew Free Trial no longer available and use Snyk as an alternative for practice

v 1.0 - Feb 2023

  • Updated course with lectures and notes on IAC Security scan using BridgeCrew


Who shall take this course?

This DevSecOps course is designed for Security Engineers, DevOps Engineers, SRE, QA Professionals and Freshers looking to find a job in the field of security. This is a focused DevSecOps course with a special focus on all the basic to advanced level DevSecOps information that is needed to find a job in Security domain and work in an organization. This course also teaches to implement an End to End DevSecOps pipeline for a Java Project.

Learn and implement security in DevOps pipeline, get Hands On experience in using Security tools & technologies.

This course is for:

  • Developers

  • DevOps

  • Security Engineers

  • Aspiring professional in the Security domain

  • Quality Assurance Engineers

  • InfoSec/AppSec Professional

DevSecOps being the hot skill, will help you to secure a high-salaried job and stay informed on the latest market trends.


Why purchase this course?

This is only practical hands-on course available on the internet till now.

DevSecOps enables rapid application development with agility, at the same time it secures your application with automated security checks integrated within the pipeline. It helps to increase productivity and security by integrating security stages in the pipeline.

Also, we have included practical examples to implement security in the DevOps pipeline through various tools.

By the end of the course, you will be able to successfully implement DevOps or DevSecOps pipeline and lead initiatives to create, build and maintain security pipelines in your project.

No Action required before taking this course. For any question or concerns, Please post your comments on discussions tab


Disclaimer: English subtitles are auto-generated so please ignore any grammar mistakes

Bạn sẽ học được gì

Learn DevSecOps Fundamentals

Learn SAST, SCA, IAC, Container Security, IAC Security Basics

Learn SAST scan using Fortify On Demand

Learn IDE Security Plugins like SonarLint and Snyk

Learn Container Security scan using Snyk

Learn to implement an End to End DevSecOps pipeline using Jenkins

Learn Basics of DevSecOps and Application Security

Learn Intermediate to Advanced level processes in DevSecOps

Learn to create your CV for Security/DevSecOps Jobs

Learn about DevSecOps Maturity Model

Learn SCA scan using Snyk

Learn IAC Security Scan using Checkov from BridgeCrew

Learn to run SAST scan using SonarQube with and without CI/CD pipeline

Learn about Roles and Responsibilities of a DevSecOps Engineer

Learn SBOM and SCA

Yêu cầu

  • No Programming Knowledge Needed. We will teach about Security and DevSecOps from Scratch

Nội dung khoá học

5 sections

Introduction

2 lectures
Introduction and Agenda
07:51
What is DevSecOps and How its different from DevOps?
05:11

Basic Level Security Concepts for DevSecOps Engineers

18 lectures
Role and Responsibilities of DevSecOps Engineers in Enterprise Environment
12:29
Static Application Security Testing and its tools
05:27
Hands On: SAST scan using Fortify On Demand
14:49
SBOM or Software Bill of Material (Also called SCA) and its tools
06:24
Hands On: SCA scan using Snyk
06:13
Dynamic Application Security Testing and its tools
04:35
Hands On: DAST scan using Hosted OWASP ZAP
05:17
Container Security Basics and its tools
03:20
Hands On: Container Security scan using Snyk
09:41
Infrastructure As Code Basics and its tools
07:17
Hands On: IAC Security Scanning Demo using Checkov
14:51
BridgeCrew Free Trial has been put on hold
00:33
Hands On: IAC Security Scanning Demo using BridgeCrew
08:14
What is CWE & CVE & CVSS?
08:08
What is False Positive Analysis?
03:19
Hands On: FPA Demo
13:02
Hands On: Report security vulnerabilities in Ticketing tool like JIRA
18:08
Hands On: Integrate JIRA with SonarCloud to create tickets with one-click
13:20

Intermediate Level Concepts for DevSecOps Engineers

10 lectures
What is DevSecOps Maturity Model?
07:26
Basics of Docker Explained
05:17
Upgrade to Java 17 as Java 11 will not be supported by SonarQube soon
00:12
Hands On: SAST scan using SonarQube as a Docker image
21:58
Basics of Git and GitHub Explained
04:34
Git Commands for reference
00:51
Hands On: Git Installation on local system
04:55
Hands On: Learn Git Basics
10:12
Basics of IDE plugins
04:51
Hands On: Demo of IDE Plugins - SonarLint and Snyk IDE Plugins
15:35

Advanced Level Concepts - End to End DevSecOps Pipeline with all tools learned

3 lectures
Basics of CI/CD and its tools
05:26
Hands On: Most Popular CI/CD Tool Demo - Jenkins Setup
05:15
Hands On: Implement an End to End DevSecOps Pipeline using Jenkins on Windows
34:33

Next Steps

3 lectures
Hands On: Find Jobs on Job Hunting Platform
05:34
Create CV for DevSecOps Engineer
02:22
Bonus Lecture
00:39

Đánh giá của học viên

Chưa có đánh giá
Course Rating
5
0%
4
0%
3
0%
2
0%
1
0%

Bình luận khách hàng

Viết Bình Luận

Bạn đánh giá khoá học này thế nào?

image

Đăng ký get khoá học Udemy - Unica - Gitiho giá chỉ 50k!

Get khoá học giá rẻ ngay trước khi bị fix.