К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Application Security for Developers and DevOps Professionals · LearnSpace
Назад в каталог
courseraПрограммирование

Application Security for Developers and DevOps Professionals

Курс от IBM
Средний≈ 17.4 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

How vulnerable are your applications to security risks and threats? This course will help you identify vulnerabilities and monitor the health of your applications and systems. You’ll examine and implement secure code practices to prevent events like data breaches and leaks, and discover how practices like monitoring and observability can keep systems safe and secure. You will gain extensive knowledge on various practices, concepts, and processes for maintaining a secure environment, including DevSecOps practices that automate security integration across the software development lifecycle (SDLC), Static Application Security Testing (SAST) for identifying security flaws, Dynamic Analysis, and Dynamic Testing. You’ll also learn about creating a Secure Development Environment, both on-premise and in the cloud. You’ll explore the Open Web Application Security Project (OWASP) top application security risks, including broken access controls and SQL injections. Additionally, you will learn how monitoring, observability, and evaluation ensure secure applications and systems. You’ll discover the essential components of a monitoring system and how application performance monitoring (APM) tools aid in measuring app performance and efficiency. You’ll analyze the Golden Signals of monitoring, explore visualization and logging tools, and learn about the different metrics and alerting systems that help you understand your applications and systems. Through videos, hands-on labs, peer discussion, and the practice and graded assessments in this course, you will develop and demonstrate your skills and knowledge for creating and maintaining a secure development environment.

Навыки, которые вы освоите

Application SecuritySecure CodingOpen Web Application Security Project (OWASP)Threat ModelingDevSecOpsVulnerability ScanningSecurity TestingVulnerability AssessmentsSoftware Development Life CycleVulnerability ManagementDevelopment EnvironmentDevOpsData SecurityContinuous MonitoringApplication Performance ManagementSecurity ControlsSystem Monitoring

Программа курса

4 модулей · 87 учебных материалов

01Introduction to Security for Application Development24 материалов

Welcome 

IBM Product Spotlight: Hashicorp VaultЧтениеCourse Introduction   Видео

Introduction to DevSecOps

Security by DesignВидеоWhat is DevSecOps? Видео

Учитесь у экспертов

John Rofrano

Преподаватель курса

Application Security for Developers and DevOps Professionals
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 17.4 ч

4 модулей

Язык: Английский

Субтитры: Арабский, Французский, Бенгальский, Узбекский, Украинский, Китайский (Китай), Греческий, Итальянский, Бразильский португальский, Вьетнамский, Нидерландский, Корейский, Немецкий, Пушту, Урду, Русский, Тайский, Индонезийский, Шведский, Турецкий, Азербайджанский, Испанский, Дари, Хинди, Японский, Казахский, Венгерский, Польский

Часть программы вашего университета
Summary & Highlights - Introduction to DevSecOpsЧтение
Introduction to DevSecOpsЗадание

Understanding the Role of Network Security

The OSI ModelВидеоSecuring Layers for Application DevelopmentВидеоSecurity PatternsВидеоTLS/SSLВидеоWhat is OpenSSL?ВидеоHands on Lab: Using OpenSSL to Encrypt and Decrypt FilesВнешний инструментSummary and Highlights - Understanding the Role of Network SecurityЧтениеUnderstanding the Role of Network SecurityЗадание

Inspecting Security in Application Development 

Vulnerability Scanning and Threat Modeling  ВидеоThreat Monitoring  ВидеоSecurity Concepts and TerminologyВидеоGetting Started with Network and Port Scanning with NmapЧтениеHands on Lab: Scanning a Network Environment with NmapВнешний инструментSummary and Highlights - Inspecting Security in Application Development  Чтение Inspecting Security in Application DevelopmentЗадание

Module 1 Cheat Sheet, Glossary and Graded Quiz

Cheat Sheet: Introduction to Security for Application DevelopmentPLUGINModule 1 Glossary: Introduction to Security for Application DevelopmentPLUGINGraded Quiz: Introduction to Security for Application DevelopmentЗадание
02Security Testing and Mitigation Strategies 21 материалов

Introduction to Security Testing and Mitigation Strategies

Introduction to Security Testing and Mitigation Strategies  ВидеоStatic Analysis  ВидеоHands-on Lab: Using Static Analysis Внешний инструментDynamic Analysis ВидеоHands-on Lab: Using Dynamic Analysis Внешний инструментSummary & Highlights - Introduction to Security Testing and Mitigation StrategiesЧтение Introduction to Security Testing and Mitigation Strategies Задание

Implementing Key Analysis in Applications

Code Review ВидеоVulnerability AnalysisВидеоDemo Video: Evaluating Vulnerability AnalysisВидеоHands-on Lab: Evaluating Vulnerability Analysis Внешний инструментRuntime Protection ВидеоSoftware Component AnalysisВидео

Graded Quiz: Module 2 - Security Testing and Mitigation Strategies 

Cheat Sheet: Security Testing and Mitigation StrategiesPLUGINModule 2 Glossary: Security Testing and Mitigation StrategiesPLUGINGraded Quiz: Security Testing and Mitigation Strategies Задание
03OWASP Application Security Risks23 материалов

Introducing OWASP Top 10 

Intro to OWASP (Top 10) Sec Vulnerabilities ВидеоOWASP Top 1-3ВидеоOWASP Top 4-6ВидеоOWASP Top 7-10ВидеоDiscover Code Vulnerabilities with Snyk (SAST) Free ToolЧтениеDemo Video: Snyk (SAST) Free ToolВидеоHands on Lab: Discover Code Vulnerabilities with Snyk (SAST) Free ToolPLUGINSummary & Highlights - Introducing OWASP Top 10 Чтение Practice Quiz: Introducing OWASP Top 10Задание

Diving Deeper into OWASP Risks

SQL Injections  ВидеоOther Types of SQL Injection AttacksВидеоDemo Video: Example of an SQL InjectionВидеоHands-on Lab: Understanding SQL InjectionsВнешний инструментCross Site ScriptingВидеоReading: Cross Site ScriptingPLUGIN

Module 3 Cheat Sheet, Glossary and Graded Quiz

Cheat Sheet: OWASP Application Security RisksPLUGINModule 3 Glossary: OWASP Application Security RisksPLUGINGraded Quiz: OWASP Application Security RisksЗадание
04Security Best Practices , Final Project, and Assessment19 материалов

Code Development Practices

Code Practices ВидеоHands-on Lab: Code Practices Внешний инструментDependencies  ВидеоReading: CodeQL AnalysisPLUGIN Secure Development EnvironmentВидеоHands-on Lab: Secure Development Environment Внешний инструментSummary & Highlights - Code Development PracticesЧтениеCode Development PracticesЗадание

Module 4 Cheat Sheet, Glossary and Graded Quiz

Cheat Sheet: Security Best PracticesPLUGINModule 4 Glossary: Security Best PracticesPLUGINGraded Quiz: Security Best Practices Задание

Final Project

Practice Lab: Security Vulnerability Scan and FixPLUGINFinal Lab: Scan and Fix VulnerabilitiesPLUGINGraded Quiz: Final ProjectЗадание

 Final Assessment

Final Assessment Задание

Course Wrap-up

What's Next: Explore Hashicorp VaultЧтениеGlossary: Application Security for Developers and DevOps ProfessionalsPLUGINCongratulations and Next StepsЧтениеThanks from the Course TeamЧтение
Reading: Evaluate Software component analysisPLUGIN
Hands-on Lab: Evaluate Software Component AnalysisВнешний инструмент
Continuous Security AnalysisВидео
Summary & Highlights - Implementing Key Analysis in ApplicationsЧтение
Implementing Key Analysis in Applications Задание
Hands-on Lab: Cross Site ScriptingВнешний инструмент
Storing Secrets SecurelyВидео
Hands-on Lab: Storing Secrets SecurelyВнешний инструмент
Summary & Highlights - Diving Deeper into OWASPЧтение
Diving Deeper into OWASPЗадание