Skip to content
Security / Governance, Risk & Compliance

JWT - Secure Authentication

The training focuses on the practical aspects of implementing and securing authorization mechanisms based on JWT tokens (JSON Web Tokens). During the intensive workshop, participants will learn both the theoretical basics and practical applications of JWT tokens in modern web applications. The classes are conducted in the form of interactive workshops, where theory is immediately verified in practice through the implementation of specific use cases. Participants will gain the skills necessary to design, implement and audit JWT-based authorization systems.

Issues

  • JWT token architecture and components

  • Token encryption and signing algorithms

  • OAuth 2.0 and OpenID Connect standards

  • Methods of token storage and transportation

  • Security against popular attacks

  • Cryptographic key management practices

  • Token rotation and invalidation mechanisms

  • Monitoring and logging of JWT events

  • Integration of JWT with authentication systems

  • Scaling JWT-based systems

  • Security audit of JWT implementation

  • JWT security testing methods

Benefits

  • The participant will learn to design and implement secure authentication mechanisms based on JWT, which will allow to increase the security of developed applications
  • Practical knowledge on how to detect and counter popular attacks on systems using JWT
  • After the training, he/she will be able to perform comprehensive security audits of authorization systems based on JWT tokens
  • Will gain the ability to effectively manage tokens in a production environment, taking into account performance and scalability aspects
  • Best practices related to JWT implementation in modern web applications
  • Will be able to consciously choose appropriate methods for securing tokens depending on project requirements
  • Will receive practical guidance on debugging and troubleshooting JWT issues

Who is this training for?

Web application developers looking to expand their security knowledge
System architects responsible for designing authorization mechanisms
IT security specialists conducting application audits
Fullstack developers working with JWT-based applications
DevSecOps engineers implementing security in CI/CD process
Web application security testers
Authentication and authorization system administrators

Prerequisites

  • Basic knowledge of HTTP protocol and authentication mechanisms
  • Experience in web application development
  • Knowledge of the basics of cryptography
  • Ability to program in the selected backend language

Training program

01

Structure and components of JWT tokens

  • JWT standards and specifications
  • Comparison of JWT with other authorization mechanisms
02

JWT use cases in applications

  • JWT implementation
  • Token generation and validation
03

Cryptographic key management

  • JWT support in various development environments
  • Integration of JWT with existing systems
04

JWT Security

  • Typical vulnerabilities associated with FIUs
  • Encryption and token signing methods
  • Protecting against token attacks
  • Monitoring and auditing the use of FIUs
05

Best practices and design patterns

  • Designing secure architecture with JWT
  • Token rotation and session management
  • Handling exceptions and edge situations
  • Scaling JWT-based solutions

Delivery Methods

Online

  • Convenience of participating from anywhere
  • Interactive live sessions with trainer
  • Materials available for 30 days
  • No travel costs

On-site

  • Direct contact with trainer and group
  • Intensive hands-on workshops
  • Networking with other participants
  • Full focus on learning

Frequently asked questions

Who is the JWT - Secure Authentication training for?

This training is designed for professionals looking to develop skills in jwt - secure authentication. Required level: intermediate.

How long is the JWT - Secure Authentication training?

The training lasts 1. Available in online or on-site format.

Will I receive a certificate?

Yes — every participant receives a completion certificate confirming acquired competencies. EITT holds ISO 9001 accreditation.

Can this training be conducted for a closed group?

Yes — we offer dedicated closed trainings for companies. We customize the program to your team's needs. Contact us for an individual quote.

Bożena Machowska-Worek
Bożena Machowska-Worek Opiekun szkolenia

Request a quote

Funding Options

Check funding options for your company

Up to 80%

Development Services Database

Up to 80% funding for SMEs from EU funds

Check availability
Up to 100%

National Training Fund

Up to 100% funding for employers

Learn more

Trusted by

We train teams at Poland's largest companies

ING Bank - EITT client
mBank - EITT client
PKO Bank Polski - EITT client
PZU - EITT client
Allianz - EITT client
T-Mobile - EITT client
KGHM - EITT client
PGE - EITT client
IKEA - EITT client
InPost - EITT client
Leroy Merlin - EITT client
ZUS - EITT client

Interested in this training?

Contact us - we'll prepare an offer tailored to your organization's needs.

500+ experts
2500+ trainings available
ISO 9001 quality certified
Request Training
Call us +48 22 487 84 90