¿Buscas alumnos? Entra y promociona tus cursos
¿Buscas formación? Entra o regístrate
Cursos   Masters   Universidades   Cursos Gratis   Oposiciones   Subvencionados   Formación Profesional   Foros    
Más buscado | Comparte esta página  
desplegar Mi lista: 0 cursos
Cursos relacionados: cursos efectos animados html | cursos de lenguaje html | cursos comandos html | cursos efectos html | cursos como insertar imagenes en una pagina html | cursos de html | curso html gratis | cursos de html | cursos de html | curso html php
Home Cursos Informática y telecomunicaciones Cursos Diseño de páginas web Cursos HTML y javascript

MOC-2300 Developing Secure Web Applications

en Megatraining (España)

Curso Presencial

Precio:

Duración:

15 Horas

Inicio:

consultar fechas y horarios
ver temario

Pedir información gratis

Para qué te prepara:

This three-day instructor-led course provides students with the knowledge and skills that are needed to build Web applications by using security-enhanced coding techniques. Students will learn how to

Megatraining

Formación: Megatraining cubre todas las necesidades de formación informática de la empresa, tanto a nivel usuario como a nivel técnico Sus necesidades son nuestras soluciones: Porque nuestro...

ver más

contactar con el responsable

 

Matricula Cerrada

 

Detalles del curso

Tipo Curso Duración 15 Horas
Método / lugar contactar con el responsable Presencial
Para qué te prepara This three-day instructor-led course provides students with the knowledge and skills that are needed to build Web applications by using security-enhanced coding techniques. Students will learn how to
Precio Consultar
con el centro
de formación
infórmate directamente de cómo matricularte, plazas disponibles ...

Cursos de HTML y javascript (de otros centros)

 
Master en Diseño y Programación Web
Meryland
Madrid - 1.000€ IVA inc.  (Matrícula gratis)
Atención garantizada
 
Curso Superior de Programación en Lenguaje Javascript
CICE, Escuela Profesional de Nuevas Tecnologías
Madrid - Precio: Consultar  (Beca)
Atención garantizada
 
Diseño Web
Formación Universitaria
A Distancia - Precio: Consultar  (Matrícula gratis)
Atención garantizada
 
Diseño de Páginas Web con HTML
FORMASTUR
Online - 300€ IVA inc.
Atención garantizada
 
Javascript
SEAS - Estudios Superiores Abiertos
A Distancia - Precio: Consultar
Atención garantizada
« compara los cursos seleccionados

Temario

MOC-2300 Developing Secure Web Applications

TEMARIO Y CONTENIDOS

Developing Security-Enhanced Web Applications

Course 2300—Three days—Instructor-led

 

Introduction

This three-day instructor-led course provides students with the knowledge and skills that are needed to build Web applications by using security-enhanced coding techniques. Students will learn how to identify Web application security vulnerabilities and understand the trade-offs between functionality and performance when choosing the appropriate security mechanisms for their Web applications. Throughout this course, students will get hands-on experience in creating security-enhanced Web applications.

 

Audience

This course is intended for students who are responsible for the design and development of Web applications. These students typically have three to five years of experience in developing or designing distributed Web applications. Actual job role titles vary throughout the technology industry, and they may include, but are not limited to:

Web Developer: The Web developer is responsible for developing the logic, coding, testing, and debugging of Web applications and Web application software.

 

Solutions Architect: The Solutions Architect is responsible for the design of the technical architecture of Web applications and Web-based software applications

 

At Course Completion

After completing this course, students will be able to:

Define the basic principals of, and motivations for, Web security.

Perform a threat analysis of Web-accessible assets.

Use knowledge of authentication, Security Identifiers (SIDs), Access Control Lists (ACLs), impersonation, and the concept of running with least privilege to help ensure access to only those system resources that are necessary to accomplish normal request processing.

Help protect file system data by using the features in Microsoft® Windows® 2000.

Use the Microsoft SQL ServerTM Security model and Microsoft ADO.NET to help protect a Web application against SQL Server injection attacks.

Use one of the CryptoService classes of the System.Security.Cryptography namespace to transform a block of data into cyphertext.

Help protect the portion of a Web application that requires private communications by using Secure Sockets Layer (SSL), .

Use general security coding best practices to help ensure a security-enhanced Web application.

Use the Microsoft .NET Framework to build security-enhanced Web applications.

Employ a structured approach to testing for Web application security.

Use a systematic approach and knowledge of security best practices to help protect an existing Web application.

 

Prerequisites

Before attending this course, students must have:

Familiarity with n-tier application architecture.

Experience in developing or designing distributed Web applications.

Experience with one or both of the following programming languages:

Microsoft C#

Microsoft Visual Basic® .NET

Experience in writing server-side and client-side scripts by using one or both of the following scripting languages:

Active Server Pages (ASP)

Microsoft ASP.NET

Familiarity with all of the following Microsoft products and technologies is recommended:

SQL Server 2000

Microsoft Internet Information Services (IIS)

In addition, it is recommended, but not required, that students have completed:

Course 2310—Developing Web Applications Using Microsoft Visual Studio .NET

Course 1017—Developing Web Applications Using Microsoft Visual InterDev®

 

Microsoft Certified Professional Exams

There are no Microsoft Certified Professional exams associated with this course.

 

Student Materials

The student kit includes a comprehensive workbook and other necessary materials for this class.

 

Course Outline

 

Module 1: Introduction to Web Security

Why Build Security-Enhanced Web Applications?

Using the STRIDE Model to Determine Threats

Implementing Security: An Overview

 

Module 2: Planning for Web Application Security

A Design Process for Building Security-Enhanced Web Applications

 

Module 3: Validating User Input

User Input

Types of User Input Attacks

Performing Validation

Revealing as Little Information as Possible to the User

 

Module 4: Internet Information Services Authentication

Introduction to Web Client Authentication

Configuring Access Permission for a Web Server

Selecting a Security-Enhanced Client Authentication Method

Running Services As an Authenticated User

 

Module 5: Securing Web Pages

ASP Forms-Based Authentication

.NET Code Access and Role-Based Security

Overview of ASP.NET Authentication Methods

Working with Windows-Based Authentication in ASP.NET security

Working with ASP.NET Forms-Based Authentication

 

Module 6: Securing File System Data

Overview of Securing Files

Windows Access Control

Creating ACLs Programmatically

Helping to Protect ASP.NET Web Application Files

 

Module 7: Securing Microsoft SQL Server

SQL Server Connections and Security

SQL Server Role-Based Security

Securing SQL Server Communication

Preventing SQL Injection Attacks

 

Module 8: Helping to Protect Communication Privacy and Data Integrity

Introduction to Cryptography

Working with Digital Certificates

Management

Using Secure Sockets Layer/Transport Layer Security Protocols

Using Internet Protocol Security

 

Module 9: Encrypting, Hashing, and Signing Data

Encryption and Digital Signing Libraries

Using CAPICOM

Using System.Security.Cryptography Namespace to Hash Data

Using System.Security.Cryptography Namespace to Encrypt and Sign Data

 

Module 10: Testing Web Applications for Security

Testing Security in a Web Application

Creating a Security Test Plan

Performing Security Testing

 

 
ver todo el temario

consulta

más detalles del temario directamente a Megatraining.

Pedir información gratis
infórmate directamente de cómo matricularte, plazas disponibles ...
 

Exalumnos

 
Opiniones
 
¿Has hecho este curso?

Opina y ayuda a miles de usuarios
infórmate directamente de cómo matricularte, plazas disponibles ...
 

Sobre Megatraining

Descripción del centro
Formación:

Megatraining cubre todas las necesidades de formación informática de la empresa, tanto a nivel usuario como a nivel técnico

Sus necesidades son nuestras soluciones:

Porque nuestro objetivo es conseguir la plena satisfacción de los cliente.
Colaboramos con ellos para ofrecer soluciones, allí donde hay necesidades.

Desde 1997

Megatraining se creó en 1997, con sedes en Barcelona, Madrid y Bilbao

Profesorado

Nuestros profesores disponen de las acreditaciones oficiales necesarias para impartir cada curso

Soluciones globales:

Megatraining posee además estructura de soporte para la mayoría de provincias españolas y puede ofrecerle soluciones de formación específicas en cualquier punto de la geografía española.

Confianza

La fidelidad de nuestros clientes ratifica la calidad de nuestros cursos y de nuestros profesores.

Todos los cursos

de Megatraining en emagister.

Ver lista de cursos

infórmate directamente de cómo matricularte, plazas disponibles ...

Información relacionada con HTML y javascript

Páginas internacionales: España  |  Italia  |  Francia  |  México  |  Alemania  |  Reino Unido  |  Japón  |  Argentina

Palabras más relacionadas con los cursos que estás viendo: cursos de comandos programacion web curso creacion paginas web javascript gratis cursos de diseno y programacion web curso de programacion javascript cursos html 4 1 gratis curso de programacion html curso completo de html cursos diseno paginas html cursos de practicas html cursos html basico

emagister.com cumple la Ley Orgánica 15/1999 de 13 de diciembre, de Protección de datos de Carácter Personal, y posee el código de inscripción nº 2002010053 del Registro General de la Agencia de Protección de Datos. Copyright © 1999/2000 - Grupo Intercom - Todos los derechos