EC-Council - Certified DevSecOps Engineer E|CDE

Dauer

Dauer:

Nur 2 Tage

Methode

Methode:

Klassenraum / Online / Hybrid

nächster Termin

nächster Termin:

24.6.2024 (Montag)

Overview

This accelerated EC Council Certified DevSecOps Engineer E|CDE certification is is a hand-on instructor led comprehensive DevSecOps course that helps professionals build the essential skills to design, develop and maintain secure applications and infrastructure.

The E|CDE is a perfect blend of theoretical and practical knowledge of DevSecOps in your on-premises and cloud native (AWS and Azure) environment.

The course focuses on application DevSecOps and provides insights into infrastructure DevSecOps and helps DevSecOps Engineers develop and enhance their knowledge and skills in securing the application in all the stages of DevOps.

In just 2 days, you’ll learn to understand DevSecOps security bottlenecks and discover how the culture, philosophy, practices, and tools of DevSecOps can enhance collaboration and communication across development and operations teams. You’ll also learn how to:

  • Integrate Eclipse and GitHub with Jenkins to build applications.
  • Integrate threat modeling tools like Threat Dragon, ThreatModeler and Threatspec; manage security requirements with Jira and Confluence; and use Jenkins to create a secure CI/CD pipline.
  • Integrate runtime application self-protection tools like Hdiv, Sqreen, and Dynatrace that protect applications duriing runtime with fewr false positives and remediate known vulnerabilities.
  • Implement tools like the Jfrog IDE plugin and the Codacy platform.
  • Implement automated tools to identify security misconfigurations that could expose sensitive information and result in attacks.
  • Audit code pushes, pipelines and compliance using logging and monitoring tools like Sumo Logic, Datadog, Splunk, the ELK stack and Nagios.
  • Integrate compliance-as-code tools like Cloud Custodian and the DevSec framework to ensure that organisational regulatory or compliance requirements are met without hindering production.
  • Integrate tools and practices to build continuous feedback into the DevSecOps pipline using Jenkins and Microsoft Teams email notifications.
  • Understand the DevSecOps toolchain and how to include security controls in automated DevOps pipelines.
  • Align security practices like security requirement gathering, threatmodelling, and secure code reviews with development workflows.
  • Understand and implement continuos security testing with static, dynamic, and interactive application security testing and SCA tools (e.g. Snyk, SonarQube, StackHawk, Checkmarx SAST, Debricked, WhiteSource Bolt).
  • Integrate SonarLint with the Eclipse and Visual Studion Code IDEs.
  • Integrate automated security testing into a CI/CD pipline using Amazon CloudWatch; Amazon Elastic Container Registry; and AWS CodeCommit, CodeBuild, CodePipeline, Lambada, and Security Hub.
  • Perform continuos vulnerability scans on data and product builds using automated tools like Nessus, SonarCloud, Amazon Macie and Probely.
  • Use AWS and Azure tools to secure applications.
  • Understand the concept of infrastructure as code and provision and configure infrastructure using tools like Ansible, Puppet and Chef.
  • Use automated monitoring and alerting tools (e.g. Splunk, Azure, Monitor, Nagios) and create a real-time alert and control system.
  • Scan and secure infrastructure using container and image scanners (Trivy and Qualys) and infrastructure security scanners (Bridgecrew and Chekov).
  • Integrate alerting tools like Opsgenie with log management and monitoring tools to enhance operations performance and security.

At the end of this course, you’ll sit the EC Council exam, and achieve your EC Council Certified DevSecOps Engineer E|CDE certification.

Through Firebrand’s Lecture | Lab | Review methodology, you’ll get certified at twice the speed of the traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.

Audience

This course is ideal for:

  • C|ASE - certified professionals
  • Application security professionals
  • DevOps Engineers
  • IT security professionals
  • Cybersecurity engineers and analysts
  • Software engineers and testers
  • Anyone with prior knowledge of application security who wants to build a career in DevSecOps

Benefits

In einem Firebrand Intensiv-Training profitieren Sie von folgenden Vorteilen:

  • Zwei Optionen - Präsenz- oder Onlinetraining
  • Ablenkungsfreie Lernumgebung
  • Eigene Trainings- und Prüfungszentren (Pearson VUE Select Partner)
  • Effektives Training mit praktischen Übungseinheiten und intensiver Betreuung durch unsere Trainer
  • Umfassendes Leistungspaket mit allem, was Sie benötigen, um Ihre Zertifizierung zu erhalten, inklusive unserer Firebrand Leistungsgarantie.

Curriculum

  • Module 1: Understanding DevOps Culture
  • Module 2: Introduction to DevSecOps
  • Module 3: DevSecOps Pipeline-Plan Stage
  • Module 4: DevSecOps Pipeline-Code Stage
  • Module 5: DevSecOps Pipeline - Build and Test Stage
  • Module 6: DevSecOps Pipeline - Realease and Deploy Stage
  • Module 7: DevSecOps Pipeline - Operate and Monitor Stage

Exam Track

At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered by your Certification Guarantee:

EC Council Certified DevSecOps Engineer E|CDE exam

  • Duration: 4 Hours
  • Format: multiple-choice questions
  • Number of questions: 100 questions
  • Passing score: 70%

The E|CDE is a lab-intensive certification where students will spend 70% of their total class time performing the labs. The labs are designed in such a way that they simulate a real-time DevSecOps pipeline. They also demonstrate the essential tools, technologies and procedures widely used across the DevSecOps professional community. Which will provide you with rich hands-on experience in integrating and automating security practices in the DevOps Lifecycle.

What's Included

Prerequisites

Before attending this accelerated course, you should have an understanding of application security concepts.

Sind Sie sich unsicher, ob Sie die Voraussetzungen erfüllen? Wir besprechen gerne mit Ihnen Ihren technischen Hintergrund, Erfahrung und Qualifikation, um herauszufinden, ob dieser Intensivkurs der richtige für Sie ist.

Erfahrungsberichte

Bereits 134561 Kursteilnehmer haben seit 2001 erfolgreich einen Firebrand-Kurs absolviert. Unsere aktuellen Kundenbefragungen ergeben: Bei 96.41% unserer Teilnehmer wurde die Erwartungshaltung durch Firebrand übertroffen!


"The EC Council CCISO course was a great course, the trainer was knowledgeable and interactive."
Michael McNamara, BT Ireland. (15.4.2024 (Montag) bis 17.4.2024 (Mittwoch))

"Von Anfang bis Ende bot Firebrand eine rundum positive Lernerfahrung. Die Organisation und Durchführung des Kurses waren erstklassig, was das Lernen effizient und zielgerichtet machte. Besonders beeindruckend war die Expertise und das Engagement der Trainer. Sie verfügten nicht nur über tiefgreifendes Fachwissen, sondern waren auch außerordentlich fähig, dieses Wissen auf eine Weise zu vermitteln, die sowohl inspirierend als auch verständlich war. Aufgrund dieser herausragenden Erfahrung würde ich Firebrand uneingeschränkt an Freunde und Kollegen weiterempfehlen."
S. Sa. . (5.2.2024 (Montag) bis 9.2.2024 (Freitag))

"Great experience, excellent Instructor, great materials and facilities. No complaints! Will return for other certifications for sure! Thank you!"
Silviu Manisor, Traton Financial Services. (6.12.2023 (Mittwoch) bis 8.12.2023 (Freitag))

"Der Kurs war sehr gut, gerade der Kursleiter hatte sehr viel wissen das er uns weitergeben konnte. Meist hat man sich Abends noch Mal mit den Teilnehmern getroffen und weiter gelernt. Alle Teilnehmer und die Angestellten von Firebrand waren sehr nett und hilfsbereit. Eine sehr entspannende Woche mit sehr viel neuem Wissen für mich."
Anonym (26.6.2023 (Montag) bis 30.6.2023 (Freitag))

"I found the CCISO course valuable and informative. I think it will help my career"
Stephen Bird. (26.6.2023 (Montag) bis 28.6.2023 (Mittwoch))

Kurstermine

Start

Ende

Verfügbarkeit

Standort

Anmelden

19.2.2024 (Montag)

20.2.2024 (Dienstag)

Kurs gelaufen - Hinterlasse Kommentar

-

 

24.6.2024 (Montag)

25.6.2024 (Dienstag)

Warteliste

Überregional

 

5.8.2024 (Montag)

6.8.2024 (Dienstag)

Einige Plätze frei

Überregional

 

16.9.2024 (Montag)

17.9.2024 (Dienstag)

Einige Plätze frei

Überregional

 

28.10.2024 (Montag)

29.10.2024 (Dienstag)

Einige Plätze frei

Überregional

 

9.12.2024 (Montag)

10.12.2024 (Dienstag)

Einige Plätze frei

Überregional

 

Neueste Rezensionen von unseren Kursteilnehmern