Course Outline

Day One:

Introduction

DevSecOps at a Glance

  • CI (Continuous Integration) and CD (Continuous Delivery)
  • Shifting security to the left, the DevOps way

DevSecOps Method Theories

  • Security for DevOps technologies
  • When and how security interacts with the application and the development lifecycle
  • Shared ownership of security responsibilities and activities

Day Two:

DevSecOps with Jenkins

  • Creating an agent
  • Creating a pipeline job
  • Using SYNK and SonarQube for SAST security scanning
  • Using Arachini and OWASP-ZAP for DAST security scanning
  • Using Anchore and Aqua MicroScanner for image security scanning
  • Developing a DevSecOps pipeline
  • Enabling CI and CD

Security Automation

  • Automating security testing with Gaunit
  • Running an automated attack

Application Security Automation

  • Automating and refactoring XSS attack
  • Automating SQLi attack
  • Automating a fuzzer
  • Testing security in software delivery pipelines

Summary and Conclusion

Requirements

  • An understanding of the DevOps process

Audience

  • DevOps
 14 Hours

Number of participants



Price per participant

Testimonials (3)

Related Courses

Continuous Delivery Ecosystem Foundation (CDEF)®

14 Hours

Continuous Testing Foundation (CTF)®

14 Hours

DevOps Engineering Foundation (DOEF)®

14 Hours

DevOps Foundation®

14 Hours

DevOps Leader (DOL)®

14 Hours

Value Stream Management Foundation®

14 Hours

DevSecOps Foundation (DSOF)®

14 Hours

DevSecOps Practitioner (DSOP)®

21 Hours

Site Reliability Engineering (SRE) Foundation®

14 Hours

SonarQube for DevOps

14 Hours

Argo CD

7 Hours

Advanced Spinnaker

14 Hours

Kubernetes with Spinnaker

14 Hours

Advance Test Automation in Java using Selenium with continuous integration and version control

35 Hours

Continuous Integration for JavaScript

14 Hours

Related Categories

1