Secure Development Training

Person at computer screen

The security of your bespoke applications is directly proportional to your development team's security awareness. While rigorous security testing of existing applications is a key part of an integrated security strategy, the training of internal developers can offer a cost effective way to mitigate future security problems.

IRM is an expert in software security and our consultants can tailor Secure Development Training to suit a number of business models and development environments. A Secure Development Training course provides your developers with the capabilities to recognise and avoid security pitfalls during the development lifecycle, and also to correct security problems once they arise.

Why IRM?

Our training programmes are backed by an in house developed interactive training system that allows developers to explore and identify issues as they would appear to an attacker. The vulnerable code is then explained via a framework/platform such as .NET or Java, depending on the choice of your development team. Each session is structured as follows:

  • The vulnerability.
  • How to identify if your application is vulnerable via tests.
  • How to identify if your application is vulnerable via code.
  • Defences and Countermeasures.

Our consultants can also customise the programme to incorporate details on countermeasures that could be specific to your platform. Apart from covering the fundamental issues, our training also covers standards such as OWASP Top 10 and PCI DSS and how they relate to application security.

Resources you can download