Back

Web Security Fundamentals

With practical tools, hands-on experience, and a focus on real-world security practices, this course ensures that students can confidently embark on their journey to becoming web security professionals.

Tarek

Lead Trainer

5 hr

Description
Coming soon

Course Curriculum

Web Foundations

5 lessons

1. Web application technologies

2. Understanding the web

3. Websites and web pages

4. Static & dynamic websites

5. Servers & clients

Understanding Web Architectures

5 lessons

6. Typical web architecture

7. DNS servers

8. Web servers, database servers

9. Load balancers, CDNs

10. Practical example: Cloudflare

Understanding HTTP/S

4 lessons

11. Protocol foundations

12. Different HTTP methods

13. Requests and responses

14. Practical Labs

Understanding Cookies (not the yummy type)

3 lessons

15. Why cookies

16. Properties of cookies

17. Practical Lab

Intro to OWASP Top 10

3 lessons

18. OWASP Top 10 crash course

19. Changes in OWASP

20. Practical Labs

Web Application Firewalls

4 lessons

21. Why are firewalls not enough

22. What are WAFs

23. What WAFs can and cannot do

24. WAF bypass examples

Web Application Vulnerability Scanning

3 lessons

25. SAST and DAST

26. How vulnerability scanners work

27. Advantages and disadvantages of different scanning types

Web Security Best Practices

6 lessons

28. Secure code review

29. Encryption best practices

30. Authentication and authorization best practices

31. Error handling and logging best practices

32. Vulnerability management best practices

33. WAF best practices