Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Coursera

Container and Infrastructure Security Automation

Edureka via Coursera

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This course takes you from securing CI/CD pipelines and application code to protecting containers, infrastructure, and secrets, building practical skills to integrate security controls throughout modern DevSecOps workflows. You'll begin with CI/CD security, learning how pipeline stages work and where security controls can be integrated across the software delivery process. You'll explore static code analysis, security findings, and dependency vulnerability risks, along with techniques for identifying weaknesses in source code and third-party components. From there, the course moves into repository and application security. You'll learn how software composition analysis helps identify vulnerable dependencies and how secrets detection helps prevent sensitive information from being exposed in repositories. You'll then explore Dynamic Application Security Testing (DAST), including scan scope, targets, exclusions, and different scan modes for testing running applications. The course then advances into container security, where you'll examine common container threats and learn how image and dependency scanning can identify vulnerabilities. You'll apply these techniques to strengthen application and container protection within CI/CD workflows. Finally, you'll focus on Infrastructure as Code and secrets security. You'll identify infrastructure attack surfaces and common misconfigurations, validate infrastructure before provisioning, and apply IaC scanning and policy enforcement. You'll also explore secrets management, access policies, and secret lifecycles to protect sensitive information across DevSecOps environments. By the end of this course, you will be able to: • Explain CI/CD pipeline stages, security architecture, and security control placement. • Analyze source code and dependencies to identify vulnerabilities and supply chain risks. • Implement repository security practices to detect exposed secrets. • Perform dynamic security testing to identify application vulnerabilities. • Scan container images and dependencies to identify security vulnerabilities. • Apply IaC scanning and policy enforcement to secure infrastructure configurations. • Manage secrets, access policies, and secret lifecycles across DevSecOps environments. Designed for DevOps professionals, software developers, cloud professionals, and security professionals, this course provides a structured path from CI/CD security fundamentals to practical application, container, infrastructure, and secrets protection. To be successful here, you should have a basic understanding of DevSecOps foundations, CI/CD concepts, Git, containers, software development, and command-line operations. Prior experience with advanced security tools or practices is not required, as the course introduces them through guided practical activities. Build the skills to secure software delivery from code to infrastructure, protecting applications, containers, repositories, and secrets across modern DevSecOps environments.

Syllabus

  • CI/CD, Code, and Repository Security
    • Explore CI/CD security architecture, security control integration, and code and repository protection. Apply static analysis, dependency scanning, and secrets detection to identify security risks early in the software delivery lifecycle.
  • Dynamic Application and Container Security
    • Apply dynamic application security testing and container security techniques to identify vulnerabilities in running applications and container images. Perform application scanning, vulnerability analysis, and risk prioritization across CI/CD workflows.
  • Infrastructure as Code and Secrets Security
    • Secure infrastructure through IaC scanning, configuration validation, and effective secrets management across DevSecOps workflows. Reinforce your skills through a practice project and final assessment.

Taught by

Edureka

Reviews

Start your review of Container and Infrastructure Security Automation

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.