What you'll learn?
Every company uses software to function. Whether they are a Fortune 500 technology company or a sole proprietor landscaping company, software is integral to businesses large and small. Software provides a means to track employees, customers, inventory, and scheduling. Data moves from a myriad of systems, networks, and software providing insights to businesses looking to stay competitive. Some of that software used is built within the organization or it is purchased and integrated. What this means is that every organization, regardless of size and industry, has a software need. It enables organizations to move quickly and stay ahead of their competition.
This is where organizations need your help to secure their applications!
In this quick guide to application security and the OWASP Top Ten we will cover what is in the Top Ten. We’ll cover what makes them vulnerabilities and how to protect your application from attacks using these vulnerabilities. Well talk about cryptographic failures, insecure configuration, how to maintain software integrity, what injection attacks are and more! You’ll learn about the terms and security goals that are used in an organization. You’ll learn about some of the basic ways that application security can be brought into the development lifecycle both from a traditional pipeline and from a DevSecOps perspective. I hope you enjoy this brief but key course on AppSec.
StationX is working with Derek Fisher to create outstanding content together.
Derek Fisher has several decades of experience in engineering in both hardware and software. This includes a decade of working in the security field driving security projects at the enterprise level. He has been providing security education, performing threat models, security and risk assessments, vulnerability management, driving adoption of security analysis tools, writing security requirements, guidelines and standards as well as working with teams to ensure the security processes are understood and followed.
Derek is an instructor at the university level where he teaches graduate and undergraduate students about building security in to their software. He is also an author of a children's book series on using technology safely and securely as well as a frequent speaker on topics related to security.