CCSP 2019: Application Development & Security


Overview/Description
Expected Duration
Lesson Objectives
Course Number
Expertise Level



Overview/Description

Discover the importance of application security training and awareness and explore cloud development basics and common pitfalls and cloud vulnerabilities. This 16-video course helps in preparation for the (ISC)2 Certified Cloud Security Professional (CCSP) exam. Key concepts covered in this course include: how the software development lifecycle can incorporate security when developing cloud applications, including using GitHub; common data privacy standards, such as Secure Health Insurance Portability and Accountability Act (HIPAA), General Data Protection Regulation (GDPR), and Payment Card Industry Data Security Standard (PCI DSS); and how Open Web Application Security Project (OWASP) applies to web application security.  Next, learn how to configure an Azure Web Application Firewall; to deploy an Azure web app; and to configure Hypertext Transfer Protocol Secure (HTTPS) for an Azure web app custom DNS domain name. Examine different application programming interface (API) formats such as representational state transfer (REST) and simple object access protocol (SOAP); and deployment of an Azure function app. Finally, examine application testing and methodologies and learn how to apply threat modeling to reduce the impact of cloud threats.



Expected Duration (hours)
1.2

Lesson Objectives

CCSP 2019: Application Development & Security

  • discover the key concepts covered in this course
  • describe awareness and required training to develop an understanding of security focus areas relating to cloud applications
  • define how the software development life cycle can incorporate security when developing cloud applications, including using GitHub
  • define common data privacy standards such as HIPAA, GDPR, and PCI DSS
  • identify how OWASP applies to web application security
  • identify when and how application containerization should be used
  • configure a Microsoft Azure Application Gateway Web Application Firewall
  • deploy a Microsoft Azure web app
  • enable scaling for a Microsoft Azure web app
  • configure HTTPS for a Microsoft Azure web app custom DNS domain name
  • describe the different API formats such as REST and SOAP
  • deploy a Microsoft Azure function app
  • describe application testing and methodologies
  • configure web app deployment slots for testing purposes
  • apply threat modeling to reduce the impact of cloud threats
  • summarize the key concepts covered in this course
  • Course Number:
    it_spccsp19_08_enus

    Expertise Level
    Intermediate