This course explains how software developers and testers can determine if their web applications are vulnerable to A04:2021 Insecure Design, as defined by the Open Web Application Security Project (OWASP).
Learning Objectives
On successful completion of this course, learners will understand how to test for failures with common secure design issues, including:
- The secure software development lifecycle
- Using secure design patterns
- Performing threat modeling
- Preventing excessive resource consumption
Framework Connections
Specialty Areas
- Test and Evaluation
- Systems Analysis
- Vulnerability Assessment and Management
Feedback
If you would like to provide feedback for this course, please e-mail the NICCS SO at NICCS@hq.dhs.gov.