A 90-120 minute training regarding the fundamentals of application security and the OWASP top 10
The materials are presented in the following methodology:
- Definition
- Impact
- Example Scenarios
- Demo Video
- Countermeasures
- Interactive and Engaging questions
- Final Exam
- Certification
Course topics
- Introduction to Application Security
- OWASP Top 10 Risks
- Injection Flaws
- Cross-Site Scripting (XSS)
- Broken Authentication & Session Management
- Insecure Direct Object References
- Cross-Site Request Forgery (CSRF)
- Security Misconfiguration
- Insecure Cryptographic Storage
- Failure to Restrict URL Access
- Insufficient Transport Layer Protection
- Unvalidated Redirects & Forwards
Target audiences:
- Developers
- QA teams
- System Architects
- Managers