This badge was issued to Pankaj Mouriya on 19 Mar 2019.
- Time Months
Application Security Engineer - Explorer Award for Students 2017 - 2019
Issued by
IBM
Through a faculty-led student education, this badge earner has demonstrated the ability to scan and test web applications for identification and analysis of vulnerabilities and attacks, using IBM AppScan Standard. This individual has demonstrated an understanding of topics such as OWASP web application security standards, SQL injection flaws, authentication, cross-site scripting, sensitive data exposure, and Glass box scanning.
- Time Months
Skills
- AJAX
- Application Scans
- AXF
- Broken Authentication
- Cross-Site Request Forgery
- Cross-Site Scripting
- Ethical Hacking
- Function-level Access Control
- Glass Box
- HTML
- HTTP
- IBM AppScan Standard
- Injection Flaws
- Insecure Direct Object Reference
- OWASP Classifications
- PWID-B0286200
- Scripting
- SDK
- SDLC
- Security Breach
- Security Misconfiguration
- Security Scans
- Security Testing
- Security Vulnerabilities
- Sensitive Data Exposure
- Session Hijacking
- SQL Injection
- Threat Modeling
- Unvalidated Redirects
- Vulnerability Testing
- WASC Classification
- Web2.0
- Web Application Security
- Web Services
Earning Criteria
-
Must be a student of the IBM Skills Academy with no prior professional experience.
-
Completion of Module I - Cyber Security Overview: Covering Security Overview, Trends, Case Studies; Security standards and frameworks.
-
Completion of Module II - Cyber Security Foundations: Covering Application Security Technologies: - HTML5 and JavaScript Programming - SQL Relational database, objects and tables.
-
Completion of Module III - Application Security Engineer 2017: Covering Web application security threats; OWASP attack classifications; SQL injection attacks; Broken authentication; Cross-site Scripting; Insecure direct object reference; Sensitive data exposure; Cross-site request forgery; Security in the software development lifecycle; Automated security scans and test; Vulnerability testing; Reporting; Scanning sites that use JavaScript and Flash; Glass box; Troubleshooting AppScan.
-
Passing the Application Security Engineer 2017 practice test for "Application Security Engineer 2017".