IBM - Essentials of Web Application Security

Seminar

In München

Preis auf Anfrage

Beschreibung

  • Kursart

    Seminar

  • Ort

    München

  • Dauer

    1 Tag

  • Beginn

    auf Anfrage

IBM - Essentials of Web Application Security: This instructor-led, classroom course is intended for the following audience: Web Developers Web Development Managers Quality Assurance Specialists Security Auditors. Kursziele Describe the Web application security problem Understand secure coding concepts Describe the Web Application Security Consortium.. Gerichtet an: This instructor-led, classroom course is intended for the following audience: Web Developers Web Development Managers Quality Assurance Specialists Security Auditors. Kursziele Describe the Web application security problem Understand secure coding concepts Describe the Web Application Security Consortium (WASC) Threat Classifications Describe the Open Web Application Security Project (OWASP) Top Ten Web application security vulnerabilities ...

Standorte und Zeitplan

Lage

Beginn

München (Bayern)

Beginn

auf AnfrageAnmeldung möglich

Hinweise zu diesem Kurs

To benefit from this course, students should have the following skills or experience: _x000D__x000D_Basic Web development knowledge _x000D_HTML _x000D_HTTP

Fragen & Antworten

Ihre Frage hinzufügen

Unsere Berater und andere Nutzer werden Ihnen antworten können

Wer möchten Sie Ihre Frage beantworten?

Geben Sie Ihre Kontaktdaten ein, um eine Antwort zu erhalten

Es werden nur Ihr Name und Ihre Frage veröffentlicht.

Meinungen

Erfolge dieses Bildungszentrums

2020

Sämtlich Kurse sind auf dem neuesten Stand

Die Durchschnittsbewertung liegt über 3,7

Mehr als 50 Meinungen in den letzten 12 Monaten

Dieses Bildungszentrum ist seit 15 Mitglied auf Emagister

Themen

  • Software
  • Web
  • IBM

Inhalte

KURSZIEL
IBM - Essentials of Web Application Security: This instructor-led, classroom course is intended for the following audience:
  • Web Developers
  • Web Development Managers
  • Quality Assurance Specialists
  • Security Auditors
_x000D_

_x000D_

Kursziele
  • Describe the Web application security problem
  • Understand secure coding concepts
  • Describe the Web Application Security Consortium (WASC) Threat Classifications
  • Describe the Open Web Application Security Project (OWASP) Top Ten Web application security vulnerabilities
  • Understand how simple exploits can be made
  • Implement solutions to the discussed vulnerabilities
  • Understand how Web application vulnerability testing can be implemented in the Software Development Life Cycle (SDLC)
  • Understand how you can use threat modeling techniques such as DREAD (Damage, Reliability, Exploitability, Affected users, and Discoverability) and STRIDE (Spoofing, Tampering, Repudiation, Information disclosure, Denial of service, and Elevation of privilege) to help you identify and prioritize Web application vulnerabilities
_x000D_

ZIELGRUPPE
This instructor-led, classroom course is intended for the following audience:
  • Web Developers
  • Web Development Managers
  • Quality Assurance Specialists
  • Security Auditors
_x000D_

_x000D_

Kursziele
  • Describe the Web application security problem
  • Understand secure coding concepts
  • Describe the Web Application Security Consortium (WASC) Threat Classifications
  • Describe the Open Web Application Security Project (OWASP) Top Ten Web application security vulnerabilities
  • Understand how simple exploits can be made
  • Implement solutions to the discussed vulnerabilities
  • Understand how Web application vulnerability testing can be implemented in the Software Development Life Cycle (SDLC)
  • Understand how you can use threat modeling techniques such as DREAD (Damage, Reliability, Exploitability, Affected users, and Discoverability) and STRIDE (Spoofing, Tampering, Repudiation, Information disclosure, Denial of service, and Elevation of privilege) to help you identify and prioritize Web application vulnerabilities
_x000D_

KURSINHALT
This course is designed to educate Web developers, security auditors, and quality assurance personnel about the Web application security problem. Students will learn about the most critical Web application security vulnerabilities and ways to resolve them, as well as some best practices for integrating Web application security in the software development lifecycle (SDLC)._x000D_

_x000D_

Themenübersicht
  • The Web Application Security Problem
  • Web Application Basics
  • Common Secure Coding Concepts
  • Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF)
  • SQL Injection
  • Malicious File Execution and Insecure Direct Object Reference
  • Information Leakage and Improper Error Handling
  • Broken Authentication and Session Management
  • Insecure Cryptographic Storage and Insecure Communications
  • Failure to Restrict URL Access
  • Integrating Application Security in your SDLC
Hinweise
Die Kurssprache ist deutsch. Das Kursmaterial ist englisch.


VORRAUSSETZUNG
To benefit from this course, students should have the following skills or experience: _x000D_

_x000D_

Basic Web development knowledge _x000D_

HTML _x000D_

HTTP

IBM - Essentials of Web Application Security

Preis auf Anfrage