QA Pro AcademyCybersecurity A-Z
← Back to catalogue
CY-MID-026Mid Level · API Security

API Security Engineering — The API Defense Loop

A hands-on mid-level course that secures the REST and GraphQL APIs you build and operate. Work the API defense loop - eight arcs: Inventory, Authentication, Authorization, Input Validation, Rate Limiting, Data Exposure, Logging & Monitoring, and Lifecycle - closing the OWASP API Security Top 10 with per-object authorization, validated JWTs, schema validation, and quotas. Every probe is against your own test API and paired with the fix. Four hands-on activities in every lesson.

15 hours8 chapters32 lessons225 activities8 labs

What you'll learn

  • Inventory every API and version so none is left unprotected.
  • Enforce strong authentication and per-object, per-function authorization.
  • Validate input, limit resource use, and stop excessive data exposure.
  • Log, monitor, and govern APIs across a secure lifecycle.

Price
৳4,000
৳8,000
Sign in to get access

Sign in to enrol — you can pay by bKash or Nagad, or apply a promo code.