Important updates on stock availability at stores
Important updates on stock availability at storesImportant updates on stock availability at storesImportant updates on stock availability at storesImportant updates on stock availability at storesImportant updates on stock availability at stores
Dismiss message
details

Course Description

Certified Application Security Engineer (CASE.net)

 

The .Net framework has increased in popularity because of its open source nature, interoperability, language independence, library of codes and ease of deployment. It has become the preferred choice of application developers. However, there are not many training programs that address secure application development.

While .Net developers often learn security on the job, primarily because the basic education of programming does not usually cover or emphasize security concerns, the CASE program trains these developers to place importance on security.

 

Course Description:

EC-Council The Certified Application Security Engineer (CASE) credential was developed in partnership with application and software development experts globally. The CASE credential tests the critical security skills and knowledge required throughout a typical software development life cycle (SDLC), focusing on the importance of the implementation of secure methodologies and practices in today’s insecure operating environment. The CASE certified training program was developed to prepare software professionals with the capabilities that are expected by employers and academia globally. It is designed to be a hands-on, comprehensive application security training course to teach software professionals to create secure applications. The training program encompasses security activities involved in all phases of the secure SDLC: planning, creating, testing, and deploying an application. Unlike other application security trainings, CASE goes beyond just the guidelines on secure coding practices and includes secure requirement gathering, robust application design, and handling security issues in the post development phases of application development. This makes CASE one of the most comprehensive application security certifications for secure software development on the market today. It’s desired by software application engineers, analysts, and testers from around the world and is respected by hiring authorities.

 

Course Outline

  • Understanding Application Security, Threats, and Attacks
  • Security Requirements Gathering
  • Secure Application Design and Architecture
  • Secure Coding Practices for Input Validation
  • Secure Coding Practices for Authentication and Authorization
  • Secure Coding Practices for Cryptography
  • Secure Coding Practices for Session Management
  • Secure Coding Practices for Error Handling
  • Static and Dynamic Application Security Testing (SAST & DAST)
  • Secure Deployment and Maintenance

 

Eligibility Criteria

To be eligible to apply to sit for the CASE Exam, the candidate must either:

  • Attend the official EC-Council CASE training through an accredited EC-Council Partner (Accredited Training Centre/ iWeek/ iLearn) (All candidates are required to pay the USD100 application fee unless your training fee already includes this) or
  • Be an ECSP (.NET/ Java) member in good standing (you need not pay a duplicate application fee, as this fee has already been paid) or
  • Have a minimum of 2 years working experience in InfoSec/ Software domain (you will need to pay USD 100 as a non-refundable application fee) or
  • Have any other industry equivalent certifications such as GSSP .NET/Java (you will need to pay USD 100 as a non-refundable application fee)

 

What You Will Learn

  • In-depth understanding of secure SDLC and secure SDLC models
  • Knowledge of OWASP Top 10, threat modelling, SAST and DAST
  • Capturing security requirements of an application in development
  • Defining, maintaining, and enforcing application security best practices
  • Performing manual and automated code review of application
  • Conducting application security testing for web applications to assess the vulnerabilities
  • Driving development of a holistic application security program
  • Rating the severity of defects and publishing comprehensive reports, detailing associated risks and mitigations
  • Working in teams to improve security posture
  • Application security scanning technologies such as AppScan, Fortify, WebInspect, static application security testing (SAST), dynamic application security testing (DAST), single sign on, and encryption
  • Following secure coding standards that are based on industry-accepted best practices such as
  • OWASP Guide, or CERT Secure Coding to address common coding vulnerabilities.
  • Creating a software source code review process that is a part of the development cycles (SDLC, Agile, CI/CD)

 

Show More

Course Content



About the instructor

AVDHESH KUMAR SHARMA

AVDHESH KUMAR SHARMA

Security+, CSCU, CEH, ECSA, CHFI, , EDRP , cyber security, ECIH Certifications. and on Information Security, Ethical Hacking, Security analysis, Forensics, Disaster Recovery, Incident Handling, to the foreigners (students and corporate)



Student feedback

Stars 5
0%
Stars 4
0%
Stars 3
0%
Stars 2
0%
Stars 1
0%
0

Course Rating

PriceTK: 10000

    Why Certified Application Security Engineer (CASE) .NET?

    The CASE .NET is an all-round certification training course that hones security skills of .NET developers by explaining:

    • How to attain secure SDLC and create secure SDLC models
    • Implement techniques like OWASP Top 10, SAST, DAST, and threat modelling
    • How to collect the security requirements of a Java application while in development
    • How to implement the best practices for defining, maintaining, and applying application security
    • How to perform manual and automated code review
    • How to conduct application security testing for the assessment of vulnerabilities
    • How to developrobust application security program
    • How to rate the severity of security defects and publish detailed reports specifying risks and mitigations
    • How to improve security infrastructure with teamwork
    • How to use application security scanning technologies including Fortify, AppScan, WebInspect, dynamic application security testing (DAST), static application security testing (SAST), single sign-on, and encryption
    • How to enforce standards to secure coding such as CERT Secure Coding, OWASP Guide, etc. to address common vulnerabilities of coding
    • How to create software source code review processesfor the development cycles like SDLC, Agile, and CI/CD

     

    About the Exam

    CASE allows application developers and testers to demonstrate their mastery of the knowledge and skills required to handle common application security vulnerabilities.

     

    Number of Questions: 50

    Test Duration: 2 Hours

    Test Format: Multiple Choice Questions

    Passing Score: 70%

    Availability: EC-Council Exam Portal

    Course Features

  • Lectures 3
  • Quizzes 2
  • Duration 07:00 hours
  • Skill level
  • Language English, Bangla
  • Assessments

Contact With Us

Upcoming Batch

Srl Course type Location Batch Title Duration Batch Fee Starting date Course instructors Status Register