LoginSign-up for free
Training
App Security Engineer: work on the development pipeline security
45 minutes
Intermediate
Available in
+4
Skills you'll learn
Security Components Integration
Security Communication
Your Role
Junior Application Security Engineer
Your Goal
You design and advocate for a security scanning plan. Simulation Details: CodeTrust is a mid-sized tech company specializing in developing custom enterprise software solutions that streamline workflow automation and data analytics. The company values innovation, reliability, and customer satisfaction, evident in their commitment to continuous improvement and proactive customer support. CodeTrust's technical environment includes Python for backend development, JavaScript for frontend development, React for dynamic user interfaces, Django for secure web applications, Jenkins for continuous integration, and Docker for containerization. Recently, CodeTrust faced a significant security incident due to a SQL injection vulnerability, resulting in financial loss and a drop in customer trust. This incident highlighted the need for robust security measures in their development pipeline. In this simulation, you will assume the role of a Junior Application Security Engineer at CodeTrust. Your primary task is to propose a security scanning implementation plan that balances security needs with development velocity. You will present your plan to Tom Hargrove, the Lead Developer, addressing his concerns with real-world examples and demonstrating the proposed solution's effectiveness. Additionally, you will seek feedback and guidance from Sarah Bennett, the Senior Application Security Engineer, to refine your communication strategy and ensure your plan is well-received. To complete the simulation, you need to: - Present your security scanning implementation plan to Tom Hargrove. - Address Tom's concerns with real-world examples and evidence. - Seek feedback and guidance from Sarah Bennett. - Integrate Sarah's feedback into your plan. - Successfully convince Tom of the plan's value and feasibility.
Helpful for
Junior Application Security Engineer, Lead Developer, Senior Application Security Engineer
How it worksNot sure how it works? Watch the video below.