Skip to content
Security / Governance, Risk & Compliance

OWASP Top 10 key application security threats

The training focuses on the top ten application security threats according to the OWASP Top 10 standard. Participants learn the mechanisms of each threat and practical methods to protect against them. The program is implemented through a combination of theory and intensive practical workshops, where participants learn to identify and eliminate vulnerabilities in real applications. The classes are based on actual security breaches.

Issues

  • OWASP Top 10

  • Injection Flaws

  • Broken Authentication

  • Sensitive Data Exposure

  • XML External Entities

  • Access Control

  • Security Misconfiguration

  • Cross-Site Scripting

  • Insecure Deserialization

  • Logging and Monitoring

  • Risk Assessment

  • Security Testing

This training is part of the path:

Benefits

  • The participant will gain an in-depth knowledge of the most important application security threats according to the OWASP Top 10
  • He will develop the ability to identify security vulnerabilities in web applications
  • Will learn to implement effective protection mechanisms against popular attacks
  • Will learn security risk assessment methodologies for IT projects
  • Will be able to design and implement security strategies in accordance with OWASP standards
  • Will master application security testing and monitoring techniques

Who is this training for?

Web application developers
Application security specialists
Security testers
IT systems architects
Security auditors
DevSecOps Engineers
Software team leaders

Prerequisites

  • Basic knowledge of application security
  • Knowledge of web application architecture
  • Experience in software development
  • Understanding the HTTP protocol

Training program

01

History and significance of OWASP

  • Risk assessment methodology
  • Trends in application security
  • Threat identification process
  • Detailed analysis of the risks
02

Injection

  • Breaking authentication
  • Disclosure of sensitive data
  • XXE and deserialization
03

Advanced threats

  • Errors in access control
  • Incorrect security configuration
  • Cross-Site Scripting (XSS).
  • Dangerous deserialization
  • Security implementation
  • Protection strategies
04

Security testing

  • Monitoring of threats

Delivery Methods

Online

  • Convenience of participating from anywhere
  • Interactive live sessions with trainer
  • Materials available for 30 days
  • No travel costs

On-site

  • Direct contact with trainer and group
  • Intensive hands-on workshops
  • Networking with other participants
  • Full focus on learning

Frequently asked questions

What are the prerequisites for this training?

For OWASP Top 10 key application security threats we recommend: Basic knowledge of application security; Knowledge of web application architecture; Experience in software development.

What is the format and duration of this training?

The training lasts 2 days and is available in online and on-site format. Sessions run from 9:00 AM to 4:00 PM. We can also customize the schedule to fit your team's needs.

Who is this training designed for?

This training is designed for: Web application developers; Application security specialists; Security testers.

Kamil Gabryszewski
Kamil Gabryszewski Opiekun szkolenia

Request a quote

Funding Options

Check funding options for your company

Up to 80%

Development Services Database

Up to 80% funding for SMEs from EU funds

Check availability
Up to 100%

National Training Fund

Up to 100% funding for employers

Learn more

Trusted by

We train teams at Poland's largest companies

ING Bank - EITT client
mBank - EITT client
PKO Bank Polski - EITT client
PZU - EITT client
Allianz - EITT client
T-Mobile - EITT client
KGHM - EITT client
PGE - EITT client
IKEA - EITT client
InPost - EITT client
Leroy Merlin - EITT client
ZUS - EITT client

Interested in this training?

Contact us - we'll prepare an offer tailored to your organization's needs.

500+ experts
2500+ trainings available
ISO 9001 quality certified
Request Training
Call us +48 22 487 84 90