SEC 460 - DevSecOps


5 CR

Development, Security, and Operations introduces students to an array of tools and processes used to secure and harden software components such as API's (Application Programmable Interfaces) and libraries used in networks, operating systems and third-party applications. Students will learn to apply security best practices to the software development lifecycle. This is a combination of software development and IT Security Operations

Prerequisite(s): Admission to the BAS Cybersecurity Program and DATA 333  with a C or better or permission of instructor.

Course Outcomes
  • Describe how security concepts apply to the SDLC (Software Development Lifecycle)
  • Understand how security teams partner with development teams to secure new and existing software
  • Understand Continuous Integration and Deployment (CI/CD) workflows and security/industry standards from NIST, ISO, and SOC 2
  • Describe how DevSecOps practices security at every level of the organization from rolling software implementations, writing novel code, and/or mobile and application development
  • Evaluate code for vulnerabilities and develop mitigations in conjunction with software development partners.
  • Use Application Security Testing (AST) tools to facilitate automation of code checking for vulnerability detection, prioritization, and remediation.



Find out when this course is offered




Print-Friendly Page (opens a new window)