Course
Security Fundamentals
By Wanderson Leandro de Oliveira
Security is not a checklist you run once — it is a way of thinking that shapes every decision a developer makes. This course builds that mindset from scratch: what security actually means, how attackers commonly get in, how authentication and access control work, an overview of the OWASP Top 10, the secure habits that belong in your daily workflow, and what to do when something goes wrong. Every lesson is defensive and educational: concepts, mental models and best practices — never attack instructions.
Course content
Mindset and core concepts
- 🔒 What is information security text
- 🔒 The CIA triad (confidentiality, integrity, availability) text
- 🔒 Threat modeling: the essentials text
Common threats and attack vectors
- 🔒 Overview of common attack vectors text
- 🔒 Social engineering and phishing text
- 🔒 Malware types: an overview text
Authentication and access control
- 🔒 Authentication vs. authorization text
- 🔒 Passwords and MFA: best practices text
- 🔒 Least privilege and access control text
OWASP Top 10 (overview)
- 🔒 OWASP Top 10: the big picture text
- 🔒 Injection and broken access control text
- 🔒 Security misconfiguration and outdated components text
Security in everyday development
- 🔒 Secure defaults and fail-safe design text
- 🔒 Secrets management: the basics text
- 🔒 Logging and monitoring for security text
Incident response and culture
- 🔒 Incident response: the basics text
- 🔒 Security in the software development lifecycle (SDLC) text
- 🔒 Practical project: your personal threat model text