DevSecOps and Cloud Security Basics Training
Level
BeginnerDuration
16h / 2 daysDate
Individually arrangedPrice
Individually arrangedDevSecOps and Cloud Security Basics Training
An advanced two-day practical training on DevSecOps and Cloud Security that will introduce you to the modern approach to security in IT projects. The training combines solid theory with intensive practical workshops, allowing participants to gain knowledge and skills directly applicable in daily work.
Who is this training for?
DevOps engineers
IT security specialists
Developers interested in cybersecurity
System administrators
Technical project managers
Individuals planning to develop a career in cloud security and infrastructure
What You Will Learn
- Understanding a comprehensive approach to security in software development processes
- Mastering practical tools and methodologies for securing cloud infrastructure
- Learning to identify and eliminate potential security threats
- Acquiring the ability to implement secure CI/CD practices
Training Program
-
Day 1: Introduction to DevSecOps and Cloud Security Basics
-
Module 1: Introduction to DevSecOps
- Definition and key principles of the DevSecOps methodology
- Comparison of traditional security approaches with the DevSecOps model
- The role of security across the software development lifecycle (SDLC)
-
Module 2: Cloud Infrastructure Security Basics
- Overview of common threats in cloud environments
- Security models in public clouds
- AWS
- Azure
- Google Cloud Platform (GCP)
- Principles of designing a secure cloud architecture
-
Module 3: Practical Workshops – Configuring a Secure Environment
- Configuration of firewalls and security groups
- Implementing data encryption
- Encryption at rest
- Encryption in transit
- Practical exercises for configuring secure access
-
Day 2: Advanced DevSecOps Techniques and Security Automation
-
Module 4: Security Tools and Practices
- Introduction to application security testing tools
- SAST
- DAST
- IAST
- Source code analysis for security vulnerabilities
- Automated scanning of dependencies
- Automated scanning of container images
- Introduction to application security testing tools
-
Module 5: Continuous Security in Practice
- Integrating security testing into CI/CD pipelines
- Configuring automated security checks
- Hands-on workshops with CI/CD tools
- Jenkins
- GitLab CI
- GitHub Actions
-
Module 6: Container and Kubernetes Security
- Principles of secure container deployment
- Configuring security policies in Kubernetes
- Practical scenarios for securing container clusters