Secure Programming in C/C++
Advanced training in secure programming, focusing on identifying and eliminating vulnerabilities in C/C++ code. The program combines security theory with practical techniques for securing applications against the most common threats. Participants work on real-world code examples, learning to identify potential security vulnerabilities and implement appropriate safeguards. The training uses a workshop methodology, where each topic is analyzed both theoretically and practically, with an emphasis on understanding exploit mechanisms and protection methods.
C and C++ remain the foundation of many critical systems — from embedded software and drivers, through operating systems, to applications processing sensitive financial and medical data. At the same time, due to their low-level memory access, they are particularly vulnerable to an entire class of vulnerabilities, such as buffer overflows, use-after-free and information leaks.
Secure Programming in C/C++ is a 3-day EITT training programme, delivered on-site or remotely — depending on participant preferences. The programme is designed for experienced C/C++ programmers — sessions combine security theory with intensive hands-on exercises on real-world code examples.
Topics covered include:
- Identification of typical memory management vulnerabilities and attack vector analysis
- Buffer overflow protection and secure dynamic memory management
- Stack and heap protection mechanisms and techniques for preventing information leakage
- Input data validation and securing file operations
- Security testing methodologies, vulnerability detection automation and code review techniques
Upon completion, participants will be able to identify potential threats in code, implement memory protection mechanisms and conduct code security audits in line with industry best practices.
Benefits
- Ability to identify potential threats in code
- Knowledge of C/C++ application security techniques
- Ability to implement memory protection mechanisms
- Ability to perform code security audits
- Knowledge of secure programming best practices
- Knowledge of security analysis tools
- Ability to design a secure application architecture
- Ability to document security aspects
Who is this training for?
Prerequisites
- Advanced knowledge of C/C++ languages
- Experience in application programming
- Basic security knowledge
- Knowledge of debugging and code analysis
Training program
Foundations of Security in C/C++
- Typical vulnerabilities in memory management
- Secure programming practices
- Analysis of attack vectors
- Code security analysis tools
Securing Applications
- Buffer overflow protection
- Secure management of dynamic memory
- Input data validation
- Securing file operations
Advanced Protection Techniques
- Stack and heap protection mechanisms
- Implementation of secure containers
- Techniques for preventing information leakage
- Secure inter-process communication
Security Testing and Auditing
- Security testing methodologies
- Automation of vulnerability detection
- Code review techniques for security
- Documentation of security aspects
Delivery Methods
Online
- Convenience of participating from anywhere
- Interactive live sessions with trainer
- Materials available for 30 days
- No travel costs
On-site
- Direct contact with trainer and group
- Intensive hands-on workshops
- Networking with other participants
- Full focus on learning
Frequently asked questions
What is the format and duration of the 'Secure Programming in C/C++' training?
The training lasts 3 days and is delivered both on-site and remotely (online) — depending on group preferences. The program includes lectures, demonstrations and intensive hands-on exercises on real-world code examples, providing a comprehensive approach to application security.
What are the prerequisites for participants?
This is an advanced-level training — it assumes practical experience in C/C++ programming. Participants are expected to have advanced knowledge of C/C++ languages, experience in application programming, basic security knowledge and familiarity with debugging and code analysis.
Does the training include hands-on elements?
Yes, the training is workshop-based. Each topic is analyzed both theoretically and practically. Participants work on real-world code examples, learning to identify security vulnerabilities, analyze exploit mechanisms and implement appropriate safeguards.
Will I receive a certificate after the training?
Yes, each participant receives a personalised certificate of completion issued by EITT, confirming participation in the programme and competencies acquired.
What is the cost of the training and how can I register?
The training costs PLN 2,950 net per person. To register for the training or request a group offer, contact us by phone or via the form on our website. We also offer closed trainings tailored to the needs of specific organisations.
Request a quote
Funding Options
Check funding options for your company
Development Services Database
Up to 80% funding for SMEs from EU funds
Check availabilityNational Training Fund
Up to 100% funding for employers
Learn moreTrusted by
We train teams at Poland's largest companies
Interested in this training?
Contact us - we'll prepare an offer tailored to your organization's needs.