2-7704 – Fortify SAST Essentials

Course code: FSASE

Fortify SAST is the Fortify SCA application security testing product suite is comprised of Software Security Center (SSC), Audit Workbench (AWB), Audit Assistant, and much more; along with Fortify plugins for your IDEs and Bug Tracking as supporting technologies that you can use
in conjunction with Fortify SCA and SSC to secure your applications from potentially dangerous vulnerabilities before they go into production. This course helps the user to configure and utilize SAST (Static Application Security Testing) into your application development work, as well as in your IDEs, and the SSC platform to include Security early in your development lifecycle. The focus is around providing simple steps to configure Fortify SCA and SSC in a lab environment to showcase the ease of use when statically scanning and auditing your applications for vulnerabilities.

Highlights:

• Fortify SCA & SSC on-Prem/Hosted:
o Audit Workbench
o Analysis Trace
o Command-Line
o Scan Wizard
o SSC (Software Security Center)
o Audit Assistant (AA)
o IDE Plugins (Eclipse, Visual Studio, IntelliJ)
o Bug Tracker (Jira)
o Report

2 550 EUR

3 086 EUR including VAT

Selection of dates
onas
Do you have a question?
+420 731 175 867 edu@edutrainings.cz

Professional
and certified lecturers

Internationally
recognized certifications

Wide range of technical
and soft skills courses

Great customer
service

Making courses
exactly to measure your needs

Course dates

Starting date: Upon request

Type: In-person/Virtual

Course duration: 3 days

Language: en/cz

Price without VAT: 2 550 EUR

Register

Starting
date
Place
Type Course
duration
Language Price without VAT
Upon request In-person/Virtual 3 days en/cz 2 550 EUR Register
G Guaranteed course

Didn't find a suitable date?

Write to us about listing an alternative tailor-made date.

Contact

Course description

On completion of this course, participants should be able to:

  • Use Fortify SCA/SSC to correlate, view, and respond to security incidents leveraging Fortify technologies to solve security problems in your applications based on defined topics
  • Successfully complete the lessons below in an environment that acts as a production environment.

Target group

This course is designed for security champions, administrators who are responsible for
deploying and administrating Fortify within their environment; as well as for the Developers and
Security Auditors who are taking the first steps toward leveraging the power of Fortify SAST.

Course structure

Module 1:

  • Fortify SCA and SSC Introduction
  • Software Security Center (SSC) Administration
  • Scan using Fortify Audit Workbench (AWB), Command-Line, and Scan Wizard
  • Utilize Fortify SCA in IDEs (e.g., Eclipse, IntelliJ, Visual Studio (VS), VS Code)

Module 2:

  • Collaborative audit your scan results in AWB and SSC
  • Create and analyze your scan results with Filters
  • Generate reports and create an Audit Guide
  • Read the Analysis Trace
  • Recognize noise reduction
  • Create a Custom Rule

Module 3:

  • Configure and utilize Audit Assistant
  • Utilize Jira for bug tracking

 

Prerequisites

This course assumes some familiarity working with Fortify SSC and SCA, basic programming
skills, the ability to read Java or .Net, have a basic understanding of web technologies: CI/CD
DevOps, plus, having computer, browser, and file system navigation skills.

Do you need advice or a tailor-made course?

onas

product support

ComGate payment gateway MasterCard Logo Visa logo