Cenzic
1-866-4-CENZIC (866-423-6942)   |    Customer Login   |    Contact   |    Blog    

Performing Vulnerability Assessments

2-day intermediate course on conducting thorough assessments

TRAINING COURSE SUMMARY

This intermediate course covers the most popular security weaknesses found in Web applications and how to remediate them. Students will learn how to look at their Websites from a hacker’s point of view to build the most secure applications to best protect company data.

The 2-day class will focus on practical lessons that can be applied to real-world hacking problems. Students are given a methodology to use when conducting formal application security assessments, including how to:

  • Conduct a thorough assessment,

  • Rate the risk of identified vulnerabilities, and

  • Compile the assessment results into an actionable report.

Objectives

  • Learn how to run your own vulnerability assessment scans and interpret results

  • Identify and fix Website vulnerabilities

Course Contents

  • HTTP 101

  • Cryptography

  • Authentication

  • Authorization

  • Session Management

  • Input/Output Validation

  • Error Handling

  • Logging

  • Securing the logged-in portion of your Website

  • Web application security products and tools overview

  • Google hacking

COURSE OVERVIEW

Duration

2 Days

Target Audience

Developers, QA Engineers, and IT Information Security Analysts

Prerequisites

Web programming experience helpful. HTML/JavaScript knowledge recommended.

How the Course is Taught

  • Instructor-led