
The Foundational Application Security Training (FAST) course is a 4-hour workshop focused on explaining the fundamentals of applications and their security.
Course Length: 4 Hours
Includes a Certificate of Completion
Next scheduled date:
Description
The Foundational Application Security Training (FAST) course is a 4-hour workshop focused on explaining the fundamentals of applications and their security.
This lecture-focused class is designed to allow managers, product owners, support staff and non-developers to understand application security. This lecture includes what makes up the various modern application technologies, the application development process, what vulnerabilities and risks are exposed via applications and how the attacks happen.
This course will enable organizations to improve how they focus on application security while continuing to increase the coordination between the various teams including development, project management, product owners, IT, and security. Attendees will be able to understand and explain the various risks and controls within a secure modern application environment.
Syllabus
-
- Introduction – Why focus on Application Security?
- Security Foundation
-
- CIA
- Identity and Access Management
- Security Controls
-
- Security by Design Principles
- Design best practices to build secure software
- Securing the dev lifecycle
- Waterfall vs Agile
-
- Testing tools
- OWASP® Top 10 Vulnerabilities
- Definitions and risk discussion
- Web Penetration Testing
-
- Scoping
- Prepping
- Testing Methodology
- Reporting
FAQ
Managers, product owners, support staff and non-dev
About the Instructor
Bill McCauley
"Senior Security Consultant, Secure Ideas, LLC"Bio
Bill McCauley is a Senior Security Consultant with Secure Ideas. He is a USAF Veteran and has worked with various electronics and IT systems for over 20 years. His degree is in Management/CIS and has a background which covers a wide variety of industries including DoD, Healthcare, Education, Energy, and Security. Bill has a strong interest in security, system administration, and training.
Related products
-
Alissa TorresLiveOD16 Hrs
Advanced Endpoint Investigations with Alissa Torres
View Course This product has multiple variants. The options may be chosen on the product page -
Hayden CovingtonLive4 Hrs
Workshop: SOC Detection Engineering Crash Course with Hayden Covington
View Course This product has multiple variants. The options may be chosen on the product page -
Joff ThyerLive16 Hrs
Enterprise Attacker Emulation and C2 Implant Development with Joff Thyer
View Course -
Multiple InstructorsLiveOD16 Hrs
Defending the Enterprise with Kent Ickler and Jordan Drysdale
View Course This product has multiple variants. The options may be chosen on the product page
