FreeCourse Logo
FreeCourse.io
Verified CouponsFree CoursesJobsBlog
Categories
Home/Courses/Ultimate DevSecOps Bootcamp by School of Devops
Ultimate DevSecOps Bootcamp by School of Devops
IT & Software100% OFF

Ultimate DevSecOps Bootcamp by School of Devops

Gourav J. Shah
4.5(8.2K students)
Self-paced
Advanced

About this course

Are you building or deploying applications on Kubernetes? Whether you're a DevOps Engineer, Platform Engineer, or AI/ML Engineer, security can no longer be an afterthought. This hands-on DevSecOps Bootcamp will help you build secure, production-ready CI/CD pipelines using open-source tools and industry best practices.

Learn how to integrate security across the software development lifecycle and ensure your applications are secure by design. We will walk you through step-by-step labs that combine Jenkins, Kubernetes, ArgoCD, Vault, Trivy, Falco, OWASP ZAP, and other essential tools used in modern DevSecOps workflows. This course is ideal for teams building cloud-native applications, AI/ML models, or any containerized workload that needs to be deployed securely at scale.

What You Will Learn:Core DevSecOps principles and the secure software delivery lifecycleHow to build a CI/CD pipeline with Jenkins on KubernetesSoftware Composition Analysis (SCA) using OWASP Dependency-Check, Pyraider, and Dependency-TrackStatic and Dynamic Application Security Testing (SAST & DAST) using slscan and OWASP ZAPSecuring container images using Trivy, Dockle, and multi-stage DockerfilesEnforcing compliance as code using InSpec and AnsibleSecrets management using HashiCorp Vault and Kubernetes RBACRuntime security monitoring using Falco with automated response pipelinesSecure deployment workflows with GitOps using ArgoCD and KubernetesTools and Technologies You Will Use:Jenkins, Helm, Kubernetes (GKE), ArgoCDTrivy, Dockle, OWASP ZAP, slscan, PyraiderVault, InSpec, Ansible, Falco, Argo WorkflowsDocker, Kubernetes RBAC, GitHub, GitOpsWho Should Take This Course:DevOps and Cloud Engineers who want to add security to their toolbeltAI/ML Engineers deploying models and services on KubernetesPlatform Engineers managing modern microservices at scaleSecurity Engineers transitioning to DevSecOps practicesDevelopers building containerized applications for productionThis is not a theoretical course. You will be working on real-world labs and projects that simulate what modern engineering teams do to secure their software pipelines in production environments. Whether you're deploying a machine learning model, a microservice, or a SaaS product — this course will help you ensure that your deployments are secure, scalable, and compliant.

Skills you'll gain

Network & Securityen

Available Coupons

Loading...

Course Information

Level: Advanced

Suitable for learners at this level

Duration: Self-paced

Total course content

Instructor: Gourav J. Shah

Expert course creator

This course includes:

  • 📹Video lectures
  • 📄Downloadable resources
  • 📱Mobile & desktop access
  • 🎓Certificate of completion
  • ♾️Lifetime access
$0$102.99

Save $102.99 today!

Enroll Now - Free

Redirects to Udemy • Limited free enrollments

Share this course

https://freecourse.io/courses/ultimate_devsecops_bootcamp

You May Also Like

Explore more courses similar to this one

Agentic AI Security: Red Team Agents Safely
IT & Software
0% OFF

Agentic AI Security: Red Team Agents Safely

Udemy Instructor

This course contains the use of artificial intelligence.Agentic AI systems can plan across several steps, call tools, store memory, delegate work, and affect othercomponents. This hands-on course gives cybersecurity professionals a safe, structured way to test thosesystems before release. You will build reproducible agent security evaluations that produce observableevidence, actionable findings, and clear remediation decisions.Traditional prompt testing often ends when the model returns a response. An AI agent can fail later: after aretrieved document changes its goal, after an allowed tool result feeds another call, after a poisoned memoryrecord returns in a new session, or after one peer passes tainted authority to another. A final refusal can alsohide an earlier planning deviation, while a successful tool block can contain impact without fixing the source.Effective agentic red-teaming must therefore follow the complete trajectory.The course shows you how to move from isolated prompts to bounded security experiments. You will defineprotected properties before each run, compare clean and adversarial conditions from the same frozen state,preserve causal links between events, and verify both containment and retained utility. Instead of saying thatan output “looked unsafe,” you will be able to identify the first changed field, the control that allowed orblocked it, the downstream components affected, the final simulated state, and the evidence required for aretest.Every exercise uses the fictional SentinelWorks security operations workflow and synthetic incident INC-1042.The environment contains mock identities, fake canaries, local sinks, reversible state, deterministic scripts,and explicit stop conditions. No exercise requires production credentials, customer data, public targets,destructive payloads, host mounts, uncontrolled egress, or third-party systems. If you do not have anauthorized company sandbox, the supplied case is a complete practice path.You begin by mapping the agent loop. You will trace how a goal becomes a plan, how the plan selects tools,how results return to context, how memory influences later decisions, and how agents delegate to peers. TheAgent Attack Surface Map turns this architecture into trust boundaries, attack paths, and a prioritized testbacklog. This becomes the foundation for every later test.Next, you test goal integrity across multiple turns. You will freeze the original task, success condition, allowedactions, forbidden actions, and stop condition. Then you will place a harmless conflict in a user message, tooloutput, retrieved document, memory recall, or peer message. You will compare the clean baseline with theattack trace, locate the first deviation, and distinguish clean behavior, containment, recovery, and completedhijack. The Multi-Turn Goal Hijack Test Pack preserves the sequence, oracle, evidence, cleanup, and retest.The tool-use module moves from individual permissions to complete affordance chains. You will inventoryprincipals, schemas, resources, side effects, approval gates, reversibility, and detection signals. Then you willconnect individually allowed fake actions into a simulated forbidden outcome. The exercise demonstrates whytool security cannot be evaluated one call at a time. You will capture every request, policy decision, statetransition, containment point, rollback, and repeated run in the Tool Affordance Chain Mapper.Memory receives its own end-to-end test. You will map session context, profile records, retrieval indexes,cached summaries, writers, readers, scope, retention, provenance, and reset. A benign canary lets you followone exact record from write through storage, retrieval, planning, cleanup, and utility retest. You will verifywhether it survives a fresh session, crosses to another synthetic user, appears in a derived index or cache, orcontinues to influence state after the visible record is removed. The Memory Poisoning Test Protocol keepsevery source and derived store auditable.Agent networks add identity, delegation, replay, and evidence-lineage risk. You will work with six scriptedpeers that have different capabilities and trust tiers. Structured message contracts make sender, recipient,requested capability, asset, freshness, nonce, evidence, and delegation depth explicit. You will run forged-sender, replayed-approval, privilege-laundering, context-smuggling, and colluding-peer scenarios. The Multi-Agent Scenario Builder records delivery, acceptance, propagation, causal depth, containment, final state, andclean-path utility.You will then operate a self-contained Sandboxed Agent Lab. The browser file uses no external network,persistent storage, file upload, arbitrary code field, model call, or live integration. It contains deterministicagents, fake tools, synthetic memory, mock mail and ticket services, fixed step and tool budgets, circuitbreakers, state hashing, invariant checks, local report export, and verified reset. You can run injection, unsafetool-chain, memory-poisoning, retry-loop, and clean-control scenarios one step at a time or as a completetrace.The measurement module explains how to separate an early model or planner failure from a system-levelcascade. You will create four matched conditions: clean without the evaluated control, attack without thecontrol, clean with the control, and attack with the control. From raw run and event records, you will calculatefirst-cycle failure, trajectory attack success, cascade incidence, affected reach, edge propagation, maximumcausal depth, amplification, detection latency, time to containment, recovery completeness, clean success,and utility retention. The workbook keeps numerator, denominator, exclusions, versions, causal links, andevidence visible. The course does not impose universal thresholds; you will define action zones for theprotected asset and approved risk tolerance.Finally, you will assemble an authorized red-team campaign. The Agentic Red-Team Engagement Packconnects written authorization, system boundary, test identities, excluded actions, stop authority, scenariocoverage, execution runbook, evidence log, finding lineage, remediation owner, regression test, retest record,and release gate. You will learn how to write a bounded claim, preserve controls that already work, fix theearliest practical weak boundary, and prove that the security change does not destroy required clean behavior.The course is taught by Mike Pritula, the #1 HR instructor on Udemy. More than 2,000,000 students haveenrolled in his Udemy courses, while 170,000+ students have studied at Mike Pritula Academy. These areseparate learning communities and are not combined. Mike’s professional experience includes Wargaming,Preply, iDeals, Starlightmedia, Sense Bank, and PeopleForce. The course follows the academy’s practicalformat: a clear operating model, an editable tool, a guided case, a completion check, and homework that canbe completed in the supplied synthetic environment.Across eight lessons, you will create an Agentic Red-Team Lab Kit:Agent Attack Surface MapMulti-Turn Goal Hijack Test PackTool Affordance Chain MapperMemory Poisoning Test ProtocolMulti-Agent Scenario BuilderSandboxed Agent LabAgent Failure Metrics WorkbookAgentic Red-Team Engagement PackWhat’s included:Lifetime access to all course materialsActive instructor support in Q&AUdemy Certificate of CompletionPractical assignments and a complete synthetic business caseEditable workbooks, a self-contained browser lab, and a reusable engagement documentReproducible examples for clean, attack, defended, cleanup, and retest conditionsEnroll now and start your first lesson today.

0.0•8•Self-paced
FREE$89.99
Enroll
CISO Training: Build an Information Security Program
IT & Software
0% OFF

CISO Training: Build an Information Security Program

Udemy Instructor

This course contains the use of artificial intelligenceSecurity was added to your job. The budget and the team were not. And the CEO already wants to know onething: “Are we protected?”That is how most first CISOs start in a company of 100 to 2,000 people. You know the infrastructure and youhave closed incidents with your own hands, but nobody showed you how to price a risk in dollars, write apolicy people actually read or get ready for an audit. So you patch whatever shouts loudest, buy one more tooland hope the next client security questionnaire does not arrive this month. Without a risk register there isnothing to compare, without a plan there is nothing to show the CEO, and every request for money sounds likefear instead of a business decision.After this course you run information security as a management system, not as a queue of fires. Every majorrisk sits in one register with a price in dollars, an owner and a decision. Seven short policies are signed by theCEO and known to employees. You know which standard your clients will ask for and where your gaps arebefore an auditor finds them. MFA covers admins and executives first, phishing drills turn clicks into reports,vendors are checked before the contract is signed, and the first hour of an incident follows a playbook insteadof panic. Your budget points at rows of the risk register, and your quarterly report to the board fits into fiveslides and ten minutes.The course is built and taught by Mike Pritula:Founder of Pritula Academy, where 170,000+ students have trained, and #1 HR instructor on Udemy, with2,000,000+ students on Udemy20 years of leadership in HR at Wargaming, Preply, iDeals, Starlightmedia and Alfa-BankAt iDeals, a virtual data room company, a client made an ISO 27001 and COBIT audit a condition of one ofthe largest contracts in the company’s history; at Preply and iDeals he scored every system provideragainst his own criteria checklistAt Wargaming he worked with a business continuity plan for evacuating an office for several days and withevacuation drills in a 16-floor office of 2,000 employees, each followed by a debrief by the numbersFirst you take the role: a 90-day plan, five first meetings and a risk register priced in dollars. Then you write therules: a pack of seven policies and a gap analysis against ISO 27001, SOC 2 or CIS Controls. Next you closethe most common doors: MFA and privileged accounts, phishing drills and security awareness training. Afterthat you control what comes from outside, with vendor checks and an incident response playbook. Finally youbuild the security budget, the metrics dashboard and the report to the board. Each lesson stands on its own,so if you need an incident playbook by Monday, you can open lesson eight tonight.What’s included:Lifetime access to all materialsActive instructor support in Q&AUdemy Certificate of CompletionA practical assignment for your own company in every lessonReady-to-use templates: a 90-day plan, a risk register, seven policy templates, a gap analysis sheet, anaccess matrix, a phishing drill calendar, a vendor questionnaire, an incident playbook, a budget andmetrics sheet and a board reportA section with additional courses, tools and resourcesEvery month without a register, a playbook and a plan is another month in which a client questionnaire, anaudit request or an incident can arrive before you are ready. The security leads who speak to the CEO indollars get the budget and the seat at the table, and the rest keep defending another tool purchase. Your nextboard question is already on its way.Enroll now and start your first lesson today.

0.0•0•Self-paced
FREE$81.99
Enroll
SAP-CO : Sub Contracting & External Manufacturing Service
IT & Software
0% OFF

SAP-CO : Sub Contracting & External Manufacturing Service

Simple SAP - MTJ

Language - Urdu/HindiThis Course Consists of two main scenarios related to Sub Contracting & External ServiceProcess Flow of both process is given belowScenario 01 : Full Manufacturing from Out Side (No Production Inhouse)1) Create Separate GL for Sub-Contacting Process2) Cost Center Create for Sub-Contracting3) Config : Assign GL in OKTZ , OBYC &OKB94)Config : Costing Variant5) Create Material Master (RM & FG)6) Create BOM7) Production Version8) Create Purchase Info Record9) Execute Cost Estimate10) Raw Material Stock In11) Create Purchase Order (Item Cat L)12) Raw Material Transfer posting13) Finished Goods receivedScenario 02 : Partial Manufacturing from Out Side &Partial Manufacturing Inhouse1) Create Separate GL for External Process2) Config : Assign GL in Cost Component Structure3) Config : Costing Variant4) Create Material Master (RM & FG)5) Create Purchase Info Record6) Create BOM7) Routing With 2 Operation -& GL Assignment8)Create Production Version9) Execute Cost Estimate10) Create Production Order &PR auto Generate11) PO Create with reference to PR12) Goods Issue - Activity Confirmation13) Service Received - MT-10114) Goods Received From Production Order - MT-10115) Actualization : Costing Sheet & Template Allocation16) Manual Template Allocation Confirmation on Order17) Variance Calculation18) Settlement19) Material Ledger

4.3•890•Self-paced
FREE$90.99
Enroll
FreeCourse LogoFreeCourse

Freecourse.io brings you high-quality online courses with free certificates to help you upskill, boost your career, and achieve your goals anytime, anywhere.

Resources

  • Courses
  • Jobs
  • Categories
  • Features

Company

  • About
  • Blog
  • Contact

Legal

  • Privacy
  • Terms
  • Cookies
  • Licenses

© 2026 FreeCourse. All rights reserved.