DrupalCon Security Training - Web security risks, discovery and remediation

Events happening in the community are now at Drupal community events on www.drupal.org.
coltrane's picture
Start: 
2013-05-20 09:00 - 17:00 America/Los_Angeles
Organizers: 
Event type: 
Training (free or commercial)

As part of DrupalCon Portland, join Ben Jeavons, Cash Williams and David Stoline from Acquia for a full-day, hands-on training about all things Drupal and security.

What you will learn

  • How to discover vulnerabilities and exploits
  • Identifying and averting specific vulnerabilities like Cross Site Scripting, Cross Site Request Forgery, SQL injection, access bypass and more from the OWASP Top 10 list
  • Leverage Drupal’s API as it relates to security: menu system, permissions, safe handling of user input and the form API, database API
  • The Drupal Security Team and responsible disclosure
  • Security-related tools and processes to help maintain a secure system

The day will end with a practical, hands-on site review where attendees will have time to review a Drupal site to identify and fix individual vulnerabilities.

This full day course is $440 and does not require registration to the rest of DrupalCon.

Sign up for Security: Process, Code & Hands-on Training on May 20th at DrupalCon Portland

This class is for developers, themers, sysadmins, security experts, and people who do one or more of those things. Some experience with Drupal is expected and having written some module or theme code will be helpful. You will need to bring a laptop so please check http://training.acquia.com/seeyousoon for prerequisite steps.

Read more about the course and trainers at http://portland2013.drupal.org/node/3698

Security

Group organizers

Group notifications

This group offers an RSS feed. Or subscribe to these personalized, sitewide feeds: