К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Secure Coding: SSDLC, OWASP & SonarQube Essentials · LearnSpace
Назад в каталог
courseraПрограммирование

Secure Coding: SSDLC, OWASP & SonarQube Essentials

Курс от Coursera
Средний≈ 3.7 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

Hey there, developers, DevOps enthusiasts, and curious coders! What if you could write code that’s not only functional and efficient but secure right from the start? In today’s digital world, security isn’t optional. It’s essential. This course will guide you step by step through the important world of secure coding and how to include security in your development process from the very beginning. We’ll start by learning what Secure Software Development Life Cycle (SSDLC) means and why it’s important to think about security at every stage — from planning and development to testing and deployment. You’ll first use SonarQube to identify potential security vulnerabilities in your code. Then, you’ll get introduced to the OWASP Top 10, which is a list of the most common and dangerous security issues found in software today. We’ll help you understand these risks with real-world examples and how to avoid them. The course also includes hands-on practice. You’ll work on a Node.js project and use Jenkins to automate your CI/CD pipeline. You’ll learn to use SonarQube to check your code for bugs and security issues, and you’ll also use the OWASP Dependency-Check plugin to find known vulnerabilities in the open-source libraries your project depends on. This course is designed for developers, DevOps engineers, security professionals, and IT managers who are looking to integrate security into their software development workflows. Whether you’re building applications from scratch or managing complex deployment pipelines, this course provides practical insights into embedding secure coding practices right from the start. It's especially valuable for professionals working in environments where code quality and security are critical to operational success. Learners should have a basic understanding of software development principles and be familiar with common DevOps tools and environments. Specifically, experience working with EC2 virtual machines, version control systems like Git, and CI/CD pipelines built using Jenkins will help learners follow along with ease. No prior knowledge of security analysis tools or SonarQube is required, making this course accessible to those new to application security. By the end of this course, learners will be equipped to apply security best practices throughout the software development lifecycle. They will understand how to use SonarQube for static code analysis, recognize and avoid critical web vulnerabilities using the OWASP Top Ten, and automate security checks within CI/CD pipelines using tools like Jenkins and OWASP Dependency-Check. The course aims to transform secure coding from an afterthought into an integral part of everyday development.

Навыки, которые вы освоите

SonarQubeCI/CDVulnerability ScanningSecure CodingOpen Web Application Security Project (OWASP)DevSecOpsApplication SecurityAutomationJenkinsContinuous IntegrationCompliance ManagementDependency AnalysisDevOpsContinuous DeliverySecurity AwarenessAmazon Elastic Compute CloudVulnerability AssessmentsSoftware Development Life CycleSecurity Testing

Программа курса

3 модулей · 22 учебных материалов

01Secure Coding: SSDLC, OWASP & SonarQube Essentials7 материалов

Lesson 1: Strengthening Software Security with SSDLC

Start Here: You’re the Lead Developer—Security Is on You (Interactive Discussion)DIALOGUEMeet Your Course GuideВидеоIntroduction to Secure Coding Видео Secure Coding: Why It Matters Видео

Учитесь у экспертов

Shikhar Verma

DevOps & Cloud Expert | GenAI, AWS, Kubernetes, Docker, Jenkins, Linux, Ansible, Python, Shell Scripting

Starweaver

Global Leaders in Professional & Technology Education

Secure Coding: SSDLC, OWASP & SonarQube Essentials
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 3.7 ч

3 модулей

Язык: Английский

Субтитры: Арабский, Французский, Итальянский, Корейский, Немецкий, Индонезийский, Испанский, Японский

Часть программы вашего университета
Introduction to SSDLC Видео
Understanding the Phases of SSDLC Чтение
Implementing SSDLC in CI/CD: Secure DevOps with Jenkins, SonarQube & OWASP Видео
02Lesson 2: Performing Static Code Analysis with SonarQube 8 материалов
Lesson 2: An Overview of SonarQube ВидеоYou’re the Dev Who Caught It First (Interactive Discussion)DIALOGUEInstall SonarQube with Docker for Secure Coding ВидеоHands On Learning (HOL): Securing Code with SonarQube: SSDLC Integration & AWS Docker Installation ЗаданиеUnderstanding SonarQube and Its Role in Secure Development ЧтениеJenkins Server: Introduction and How to Access via Web Interface ВидеоConfigure Jenkins and SonarQube for CI/CD ВидеоHands On Learning (HOL): Jenkins Configuration and Static Code Analysis with SonarQube in a CI/CD PipelineЗадание
03Lesson 3: OWASP Dependency-Check Integration for Risk Mitigation7 материалов
Introduction to OWASP and the OWASP Dependency-Check Tool ВидеоOWASP Top 10 & Dependency Scanning for App Security ВидеоUnderstanding OWASP, OWASP Top 10, and OWASP Dependency: Check for Secure Coding and the CICD Pipeline Used for Scanning Vulnerabilities ЧтениеHands On Learning (HOL): Securing Applications with OWASP Top 10 and Dependency Scanning using OWASP Dependency-Check ЗаданиеCongratulations and Continuous Learning JourneyВидеоSecure CI/CD Integration: A DevSecOps Project ЗаданиеSecure Coding: SSDLC, OWASP & SonarQube EssentialsЗадание