Master secure software development with this hands-on application security training course built on OWASP best practices, threat modeling, and AI-powered security automation. Designed for developers, security engineers, tech leads, and architects, this application security for developers course teaches you to shift security left across the secure SDLC, starting with security-first principles (CIA Triad, Least Privilege, Zero Trust) and threat modeling using the STRIDE framework and DREAD scoring with GenAI-generated attack scenarios. You will apply OWASP Top 10 vulnerability prevention through SQL injection prevention, XSS prevention techniques, CSRF protection, and access control fixes, plus secure authentication patterns including OAuth 2.0 implementation, JWT security, bcrypt password hashing, secrets management best practices, and encryption, all through practical Python secure coding and JavaScript security labs.

Fundamentals of Secure Software Design
Ends soon! Grow on your schedule with big savings on Coursera Plus. Save 40% for 3 months.

Fundamentals of Secure Software Design


Instructors: Aseem Singhal
Included with Learn more
Recommended experience
What you'll learn
Apply security-first application security principles like CIA Triad and Zero Trust, and conduct threat modeling using STRIDE/DREAD with GenAI support
Identify and mitigate OWASP Top 10 and API security vulnerabilities using secure coding, input validation, OAuth 2.0, JWT, and encryption.
Write secure code using OWASP practices, refactor insecure patterns, integrate SAST/DAST/SCA into CI/CD, and use GenAI for code review.
Design secure APIs, microservices, and cloud architectures using NIST SSDF, ISO 27001, and cloud application security best practices.
Skills you'll gain
Details to know

Add to your LinkedIn profile
August 2026
4 assignments
There are 4 modules in this course
Instructors

Offered by
Explore more from Security
Why people choose Coursera for their career

Felipe M.

Jennifer J.

Larry W.








