|

Date : TBC

Training Format & Duration
  • Live Online / On-Site / Private Team Training
  • 1 day
Do you have 5 or more attendees?

Official Training Partner

Secure Coding in .Net

.NET provides unprecedented flexibility and productivity to web application developers. Application developers are responsible for understanding the limitations of .NET and adopting best practices to ensure that their code is secure.

 |

Date : TBC

Do you have 5 or more attendees?
Contact Us about Team Training >>
bkg-decorativelines-big-white

Next Scheduled Course

Next Scheduled Course

No items found.

About this course

About this course

Why this course?

Objectives

This course aims to provide the knowledge and resources required to improve the security of Web applications developed using .NET. This course is designed to educate developers on the skills necessary to build and deploy secure .NET applications following a Secure Development Lifecycle (SDL) process.

It is recommended that participants on the Web Application Secure Coding in .Net have completed the Web Application Security Essentials course. Please see Related Training at the end of this page.

Overview

The course is aligned with the OWASP Top 10, a world-renowned reference document which describes the most critical web application security flaws.

The topics covered include:

  • General Web Application Security Concepts
  • .NET Security Features
  • Identify security risks in code (OWASP Top 10)
  • Implement Security Controls:
    • Authentication
    • Session Management
    • Access control
    • Input validation
    • Output encoding/escaping
    • Cryptography
    • Error handling and logging
    • Secrets Management
    • Cross Origin Resource Sharing (CORS)
    • Data Protection
    • HTTP security
  • Incorporate security into the development process

Format: The course combines theory and hands-on practical exercises. The participants learn to identify vulnerabilities in a purposely-developed .Net application and fix them using secure coding best practices. This provides an ideal ‘real-life’ opportunity to exploit these vulnerabilities using different open source tools and techniques in a safe environment.

Duration: 1 day (8 hours)

Attendee Profile

The course is designed for:

• Software Developers
• Quality Assurance professionals
• System Architects
• Information Security Professionals

Attendee Testimonials

Benefits

What is included?

Differentiators

Recognition

Exam & Certifications

Materials

  • Certificate of Participation (CPE Points)
  • Course materials. Available in digital format in the Cycubix Academy eLearning tool.
  • Access to Lab platform for hands on-real life scenarios exercises.
Proudly Certified for Excellence in Cybersecurity Training

ISC2 Official Training Partner

ISC2 Official Training Partner

As an ISC2 Official Training Partner, we provide access to world-class certifications such as CISSP®, CCSP®, and SSCP®, delivering training that aligns with the latest industry standards.

By partnering with ISC2, we ensure our clients stay ahead in the ever-evolving cybersecurity landscape, confidently equipped to protect critical data and infrastructure.

Cycubix-ISC2-Official-Training-Partner-logo

Team Training with Cycubix

Team Training with Cycubix

Get the best out of our trainings

Get the best out of our trainings

Instructors

The minds behind the course

The minds behind the course

Picture of Fabio Cerullo Cybersecurity Instructor

Fabio Cerullo

Senior Official ISC2 Authorised Instructor for CISSP, CCSP, CSSLP and SSCP

Fabio Cerullo is the Managing Director of Cycubix. He has extensive experience in understanding and addressing the challenges of cybersecurity from over two decades working in and with organisations across a diverse range of industries – from financial services to government departments, technology and manufacturing.

Fabio Cerullo is a Senior Authorised Instructor for ISC2,the global leader in information security education and certification. Fabio has delivered training to thousands of IT and security professionals world wide in cyber, cloud, and application security. As a member of ISC2 and OWASP organisations, Fabio helps individuals and organisations strengthen their application security posture and build fruitful relationships with governments, industry and educational institutions.

Fabio is a regular speaker and delivers training at events organised by leading Cybersecurity associations including OWASP and ISC2. He holds a Msc in Computer Engineering from UCA and the SSCP, CISSP, CSSLP & CCSP certifications from ISC2.

Show (Instructors)

The minds behind the course

The minds behind the course

Picture of Fabio Cerullo Cybersecurity Instructor

Fabio Cerullo

Fabio Cerullo is the Managing Director of Cycubix. He has extensive experience in understanding and addressing the challenges of cybersecurity from over two decades working in and with organisations across a diverse range of industries – from financial services to government departments, technology and manufacturing.

Fabio Cerullo is a Senior Authorised Instructor for ISC2,the global leader in information security education and certification. Fabio has delivered training to thousands of IT and security professionals world wide in cyber, cloud, and application security. As a member of ISC2 and OWASP organisations, Fabio helps individuals and organisations strengthen their application security posture and build fruitful relationships with governments, industry and educational institutions.

Fabio is a regular speaker and delivers training at events organised by leading Cybersecurity associations including OWASP and ISC2. He holds a Msc in Computer Engineering from UCA and the SSCP, CISSP, CSSLP & CCSP certifications from ISC2.