Secure Development Training
The security of your bespoke applications is directly proportional to your development team's security awareness. While rigorous
security testing of existing applications is a key part of an integrated security strategy, the training of internal developers can
offer a cost effective way to mitigate future security problems.
IRM is an expert in software security and our consultants can tailor Secure Development Training to suit a number of business
models and development environments. A Secure Development Training course provides your developers with the capabilities to
recognise and avoid security pitfalls during the development lifecycle, and also to correct security problems once they arise.
Why IRM?
Our training programmes are backed by an in house developed interactive training system that allows developers to explore and
identify issues as they would appear to an attacker. The vulnerable code is then explained via a framework/platform such as
.NET or Java, depending on the choice of your development team. Each session is structured as follows:
- The vulnerability.
- How to identify if your application is vulnerable via tests.
- How to identify if your application is vulnerable via code.
- Defences and Countermeasures.
Our consultants can also customise the programme to incorporate details on countermeasures that could be specific to your platform.
Apart from covering the fundamental issues, our training also covers standards such as OWASP Top 10 and PCI DSS and how they relate
to application security.
Resources you can download
Related services