Get in touch
Our team is at your service
Or call +31 (0)20 760 9844
Don't you have that impression too? That many security learning curriculums are too often based on elevating one expert's opinion or sending out generic security basics across an entire organization?
The problem with these approaches is that you either have specialization OR scalability but never both. To get specialization at scale and share the right info with the right people, you need a different approach.
With our Security upskill program and underlying learning journeys, you and your team(s) will master role-based and progressive learning journeys geared toward all the people involved in your security development process.
To upskill your team(s) and team members, we've developed a security learning journey that covers each position and each responsibility.
To tailor your upskill program to your team's needs, we've adopted a modular set-up with different 'flavors' and different focus areas.
Let's first discuss the different focus areas. As you can see in the image below, we've used icons to represent a module's focus areas. A security learning journey module can represent more than one of these areas, We distinguish between:
Next to the different focus areas, we also give a module a certain flavor. What does that mean, a 'flavor'?!
A flavor represents how far you've become in your knowledge journey. We've based that on four experience levels:
When you take the above-mentioned focus areas and flavors and combine those elements in a modular learning journey, you will come to this.
This module creates a general understanding of security and its jargon. Understanding this removes ambiguity, assumptions and vague or unclear (security) requirements. This security foundations training also creates common ground between all team members and stakeholders.
Topics
Flavor
This training course clarifies the challenges and solutions when implementing security in a development lifecycle. The focus is on what to watch for in every development stage and what each team-members role is to achieve the most effective security.
Topics
Flavors
Threats can be identified in advance by using engineering techniques that follow a simple process. Based on this outcome, you'll generate a prioritized list of threats and possible remediations. Also, all team members will get a deeper understanding of the system.
Topics
Flavors
This module explains the principles behind the most common vulnerabilities, including OWASP top 10. With the knowledge of these patterns, developers can find, fix and prevent most application insecurities (over 200 CWEs).
Topics
Flavors
This module introduces security testing concepts and frameworks. We'll also show you how to apply these concepts with free and commercial tools and resources.
Topics
Flavors
This module teaches you how to integrate security in the DevOps environment, the DevOps way of working, and the CI/CD pipeline.
Topics
Flavors
DevOps forces the business and AppSec to start interacting with development teams. DevSecOps frees your team from impactful activities that are added to their existing way of working.
Topics
Flavors
This module addresses the fundamental security features of cloud vendors for topics like compliance, IAM, incident response, monitoring, and infrastructure that can help teams from benefitting more from using the cloud.
Topics
Flavors