Skip to content

Studies, notes, and hands-on practices from the "DevSecOps Fundamentals" course on Udemy. Exploring security in CI/CD pipelines using SAST, DAST, Docker, Kubernetes, and Terraform.

Notifications You must be signed in to change notification settings

dabmenez/devsecops-journey

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

24 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation

πŸš€ DevSecOps Fundamentals - Udemy Course

This repository contains my notes, hands-on exercises, pipeline examples, and useful resources from the DevSecOps Fundamentals course on Udemy.

πŸ“š About the Course

This course is designed for professionals interested in cybersecurity, DevOps, and integrating security into CI/CD pipelines. It covers essential tools, practices, and concepts to shift security left in the development lifecycle.

🧠 Key Topics Covered

  • DevSecOps tools: SAST, DAST, SCA, CNAPP
  • Adding security testing to CI/CD pipelines (GitLab YAML examples)
  • Security principles: Defense in Depth, Least Privilege, CIA Triad
  • Linux security fundamentals
  • Secure use of Docker, Kubernetes, and Terraform
  • OWASP projects: Top 10, ZAP, ASVS, Cheatsheets
  • Security organizations: CISA, CIS, CVEs, CVSS, EPSS
  • Securing tools like Git and Jenkins
  • Best practices for securing SSH, TLS, HTTP headers, and more

πŸ“‚ Repository Structure

Folder/File Description
notes/ Notes and summaries from each section
demos/ Code used in hands-on demos
pipelines/ YAML pipeline examples (standard & secure)
README.md This file

πŸ› οΈ Tools & Technologies

  • Git / GitLab CI/CD
  • Docker & Docker Compose
  • Jenkins
  • Kubernetes
  • Terraform
  • OWASP ZAP
  • Linux CLI
  • Security testing tools (SAST, DAST, SCA)

πŸ“Œ Useful Resources


πŸ“œ Certification

I completed the course "DevSecOps Fundamentals - Including Hands-On Demos" by Northern APT on Udemy.

πŸ“„ View Certificate


This repository is for educational and personal learning purposes only.

About

Studies, notes, and hands-on practices from the "DevSecOps Fundamentals" course on Udemy. Exploring security in CI/CD pipelines using SAST, DAST, Docker, Kubernetes, and Terraform.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published