Application Security for Developers and DevOps Professionals

  • Free
  • Certificate included
  • Course certificate
  • Intermediate
  • 17 hours
Provider
IBM
Cost
Free
Certificate
Included, free
Level
Intermediate
Duration
17 hours
Language
English
Subjects
Cyber Security, Programming
Source
IBM SkillsBuild
Last verified
16 Sep 2026

Application Security for Developers and DevOps Professionals, course code CS0201EN, is an intermediate Cognitive Class course from IBM Skills Network with an estimated effort of 17 hours, taught in English, and the page says a certificate is offered. The course takes the developer's side of security: it starts with identifying vulnerabilities and monitoring the health of applications and systems, then moves to secure coding practices meant to stop data breaches and leaks, DevSecOps practices that automate security checks across the software development lifecycle, static application security testing for spotting flaws in code, and dynamic analysis and testing. A section on building a secure development environment covers both on-premises and cloud setups, and the OWASP top application security risks, including broken access control and SQL injection, are worked through.

The final part turns to monitoring, observability and evaluation: the components of a monitoring system, application performance monitoring tools, the Golden Signals, visualisation and logging tools, and metrics and alerting. Teaching is by video, hands-on labs, peer discussion and practice and graded assessments. Cognitive Class states that all its courses are free of charge; the course is also listed as part of IBM's DevOps and Software Engineering Professional Certificate, which is a separate, paid Coursera product not needed for this course.

Advertisement

What you’ll learn

  • Identify security risks and threats in applications and systems
  • Apply secure coding practices and DevSecOps across the software development lifecycle
  • Use static and dynamic application security testing to find flaws
  • Set up a secure development environment on premises and in the cloud
  • Recognise the OWASP top application security risks such as broken access control and SQL injection
  • Monitor applications with observability, logging, the Golden Signals and APM tools

Who it’s for

Developers and DevOps engineers who already code and want to build security into their pipeline. Not an introduction to security concepts for non-programmers.

Source: IBM SkillsBuild (opens in a new tab) · Verified · Report a change

Advertisement
FreeOpens cognitiveclass.ai Go to course (opens in a new tab)