コース概要

Day One:

Introduction

DevSecOps at a Glance

  • CI (Continuous Integration) and CD (Continuous Delivery)
  • Shifting security to the left, the DevOps way

DevSecOps Method Theories

  • Security for DevOps technologies
  • When and how security interacts with the application and the development lifecycle
  • Shared ownership of security responsibilities and activities

Day Two:

DevSecOps with Jenkins

  • Creating an agent
  • Creating a pipeline job
  • Using SYNK and SonarQube for SAST security scanning
  • Using Arachini and OWASP-ZAP for DAST security scanning
  • Using Anchore and Aqua MicroScanner for image security scanning
  • Developing a DevSecOps pipeline
  • Enabling CI and CD

Security Automation

  • Automating security testing with Gaunit
  • Running an automated attack

Application Security Automation

  • Automating and refactoring XSS attack
  • Automating SQLi attack
  • Automating a fuzzer
  • Testing security in software delivery pipelines

Summary and Conclusion

要求

  • An understanding of the DevOps process

Audience

  • DevOps
 14 時間

参加者の人数



Price per participant

お客様の声 (3)

関連コース

Continuous Delivery Ecosystem Foundation (CDEF)®

14 時間

Continuous Testing Foundation (CTF)®

14 時間

DevOps Engineering Foundation (DOEF)®

14 時間

DevOps Foundation®

14 時間

DevOps Leader (DOL)®

14 時間

Value Stream Management Foundation®

14 時間

DevSecOps Foundation (DSOF)®

14 時間

DevSecOps Practitioner (DSOP)®

21 時間

Site Reliability Engineering (SRE) Foundation®

14 時間

SonarQube for DevOps

14 時間

Argo CD

7 時間

Advanced Spinnaker

14 時間

Kubernetes with Spinnaker

14 時間

Advance Test Automation in Java using Selenium with continuous integration and version control

35 時間

Continuous Integration for JavaScript

14 時間

関連カテゴリー