Skip to main content
00:00/00:00
Lecture 4 of 33

Basic Security Terms - If new to security field

Download Course (Free)

Course Content

0 / 33 completed
Section 1: Introduction2 videos

About the Course

1m

Introduction & Course Agenda

3m
Section 2: Deep Dive into DevSecOps4 videos

What is DevSecOps

2m

Basic Security Terms - If new to security field

3mNow Playing

Tools used for DevSecOps Implementation in the market - Detailed discussion

4m

DevSecOps in GitLab

2m
Section 3: Hands On - Implementing DevSecOps Pipeline in GitLab4 videos

Create GitLab Free Tier Account

4m

Import Vulnerable source code repo in GitLab from GitHub account

4m

Write a simple .gitlab-ci.yml file and print text using GitLab shared runner

10m

Create master branch and make it default for the source code repo in GitLab

9m
Section 4: Implement SAST in GitLab DevSecOps Pipeline using SonarCloud6 videos

What is SonarCloud and its benefits

3m

Create an account with SonarCloud before implementing SAST in DevSecOps Pipeline

2m

Hands-On Create Quality Gates in DevSecOps pipeline using SonarCloud - Part 1

30m

Hands-On Integrate SonarCloud within GitLab DevSecOps pipeline

40m

Hands-On Populate Unit Test Code Coverage on SonarCloud Dashboard for DevSecOps

28m

Hands-On Create Quality Gates in DevSecOps pipeline using SonarCloud - Part 2

19m
Section 5: Implement SCA in GitLab DevSecOps Pipeline using Snyk3 videos

What is Snyk and its benefits

5m

Create an account with Snyk before implementing SCA in DevSecOps Pipeline

3m

Hands-On Integrate Snyk within GitLab DevSecOps Pipeline to perform SCA

22m
Section 6: Implement DAST in GitLab DevSecOps Pipeline using OWASP ZAP2 videos

What is OWASP ZAP and its benefits

2m

Hands-On Integrate OWASP ZAP within GitLab DevSecOps Pipeline to perform DAST

20m
Section 7: End To End Java Project Case Study for implementing GitLab DevSecOps Pipeline3 videos

Case Study Understanding Project Requirements before workflow implementation

3m

Hands On Execute End to End GitLab DevSecOps Pipeline and review logs

16m

Hands On Write code changes to integrate SAST, SCA & DAST in DevSecOps Pipeline

35m
Section 8: Report Security issues found during SAST, SCA & DAST scans in JIRA5 videos

Hands On Create a JIRA account with Atlassian with custom JIRA site

7m

Hands On Report SCA security issues in JIRA identified by Snyk

7m

Hands On Report SAST security issues in JIRA identified by SonarCloud

15m

Hands On Report DAST security issues in JIRA identified by OWASP ZAP

11m

Hands On Integrate JIRA with SonarCloud to create tickets with one-click

44m
Section 9: Advanced Topics Additional Features provided by GitLab for DevSecOps Pipelines3 videos

What are SAST and DAST Analyzer from GitLab and Why shall we use it in pipeline

13m

Hands On Understand Code to integrate SAST and DAST Analyzers by GitLab

10m

Hands On SAST and DAST Analyzers provided by GitLab - Code Execution

36m
Section 10: Next Steps and Bonus section1 videos

Optional Security As a Career

3m