Application Security Engineer
Application Security Engineer
- 10 Phases
- 27 Lessons
- 4.6 Hrs
-
Beginner
Advanced
Category
Cloud computing
Start Phase
-
CIA Triad
16:07
-
Security Principles
11
-
Authentication & Authorization
09:03
-
Threat Modeling Basics
06:05
Start Phase
-
HTTP/HTTPS & Web Architecture
07:46
-
Cookies, Sessions, Tokens
11:53
-
REST APIs
05:21
Start Phase
-
Injection (SQL, Command, etc.)
10:20
-
XSS & CSRF
08:40
-
Broken Access Control
07:03
-
Security Misconfiguration
09:05
Start Phase
-
Input Validation & Output Encoding
15:40
-
Secure Authentication & Password Storage
05:00
Start Phase
-
API Authentication (JWT, OAuth)
09:41
-
OWASP API Top 10 (Key Risks)
04:55
Start Phase
-
OAuth 2.0 / OpenID Connect
08:38
-
Multi-Factor Authentication (MFA)
03:02
Start Phase
-
Manual Testing with Burp Suite
21
-
Automated Scanning (DAST Tools)
04:37
-
Basic Exploitation Techniques
40:13
Start Phase
-
Cloud IAM
09:43
-
Secrets Management
09:10
-
Docker & Kubernetes Security Basics
05:50
Start Phase
-
Security Tools (Burp, ZAP, Nmap)
06:42
-
Logging, Monitoring & Incident Response
02:35
Start your Application Security Engineer journey
Learn at your own pace.
Total estimated time 4.6 hours
Start learning today — completely free
Our mission is to help you learn faster with the best free resources online.