Secure Development Foundations
For technical teams — understand common software vulnerabilities, secure coding habits, authentication, input validation, and dependency risks.
Level: Intermediate Duration: 1 day Format: Workshop · Blended Audience: Developers, Technical teams, Engineering managers
Course overview
Security has to be built in, not bolted on. This course gives developers a practical grounding in the vulnerabilities that cause real-world breaches and the coding habits that prevent them — mapped to familiar frameworks like the OWASP Top 10.
What learners will be able to do
- Understand the most common classes of software vulnerability
- Validate and sanitise input to prevent injection attacks
- Implement authentication and session handling more safely
- Manage secrets, tokens, and configuration securely
- Assess and reduce risk from third-party dependencies
- Build security checks into everyday development workflows
What the course covers
Module 1: How software gets breached
Threat modelling and the OWASP Top 10 in plain terms.
Module 2: Input, output, and injection
Validation, encoding, and parameterised queries.
Module 3: Authentication and access
Passwords, sessions, tokens, and authorisation pitfalls.
Module 4: Secrets and configuration
Keeping credentials and config out of harm's way.
Module 5: Dependencies and the supply chain
Auditing packages and responding to vulnerabilities.
Interested in this course for your team?
Tell us your team size, preferred format, and goals — we'll recommend the best delivery option.