Course Overview

Is handling security within a Java container and securing your Java EE application your main concern right now? Then this course is for you!

In this course, you’ll learn the crux of Java EE security, focusing on the HTTP Authentication Mechanism, Identity Store, and the Security Context API, which are the three core features of Java EE Security. This course is ideal for Software Developers and/or Software Engineers who are enthusiastic about gaining knowledge and practical exposure to the features and capabilities of the Java EE Security API, becoming fully equipped with the security features of Java EE, and being able to design secure Java EE applications.

By the end of this course, you’ll have all the skills and knowledge to confidently apply the security features available in Java EE to design and build your Java EE application in a secure manner.

What You Will Learn

  • Learn How to secure a Java EE application.
  • Learn to Use Basic HTTP Authentication.
  • Making use of Form-based and custom form-based HTTP Authentication.
  • Introduction to Servlet security.
  • Built in identity stores and implementing a custom identity store.
  • Learn How to Make use of the Security Context API.

Program Curriculum

  • Ascertaining the Importance of Security for Java EE Applications
  • Describing the Fundamentals of Security in Java EE
  • Securing the Web Module of a Java EE Application
  • Securing the EJB Module of a Java EE Application
  • Implementing Transport Level Security
  • Identifying the Three Core Features in the Java EE Security API
  • Inspecting Maven dependencies for Java EE Security API
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 1 Quiz

  • Explaining the Concept Behind the Basic HTTP Authentication Mechanism
  • Implementing Basic HTTP Authentication on a Resource
  • Describing the Purpose of Using Form-based HTTP Authentication
  • Implementing Form-based HTTP Authentication on a Resource
  • Differentiating between Form-based HTTP Authentication and Custom Form-based HTTP Authentication
  • Implementing Custom Form-based HTTP Authentication on a Resource
  • Implementing the HttpAuthenticationMechanism Interface
  • Chapter 2 Quiz

  • Describing the @ServletSecurity Annotation and Its Attributes
  • Using the @ServletSecurity Annotation to Enforce Security Constraints on a Resource
  • Chapter 3 Quiz

  • Introducing the IdentityStore Interface
  • Describing the Purpose of @DataBaseIdentityStoreDefinition
  • Using the @DataBaseIdentityStoreDefinition to Configure a Basic Identity Store
  • Overriding Methods of the IdentityStore Interface to Develop a Custom Identity Store
  • Describing the Purpose of @LdapIdentityStoreDefinition Annotation
  • Using the @LdapIdentityStoreDefinition to Configure an Identity Store
  • Chapter 4 Quiz

  • Identifying the Need for Programmatic Security
  • Describing the Methods of the SecurityContext Interface
  • Examining the Inconsistency in Implementing Security Context Object in Java EE Containers
  • Using the Security Context Object Across Servlet & EJB Containers
  • Chapter 5 Quiz

  • Introducing Regular Expressions & Their Usages in Data Validation
  • Explaining the Possibility of a Regular Expression Denial of Service (ReDoS) Attack
  • Examining the Possibilities of Reducing the Risk of a ReDoS Attack
  • Chapter 6 Quiz

  • Refreshing the Concept of Exception Handling
  • Discuss the Importance of Exception Handling to Ensure Security
  • Avoiding Mistakes in Exception Handling to Prevent Security Vulnerabilities
  • Chapter 7 Quiz
Load more modules

Instructor

Buddhini Samarakkody Samarakkody

Buddhini Samarakkody is a Senior Java Engineer who possesses over 11 years of industry experience working with multinational software companies. She has worked with Java and Java EE technology stacks on projects in domains such as Supply Chain Management, POS, and Electronic Content Management. At present, she is an Independent Consultant for Kerk Solutions, Sri Lanka, a partner of Khutzi Software, Australia, working on ECM solutions built on top of the ELO Digital Office product for clients based in Australia. Buddhini has also been a Visiting Lecturer in IT since 2012 at the CINEC campus in Sri Lanka, teaching and mentoring students following Pearson HNC and University of Wolverhampton degree programs. Buddhini is also a Partner, Trainer, and Consultant at eSolve Business Solutions, a company engaged in HR Consultancy and Corporate Training. She holds a B.Sc. in Computing & Information Systems from London Metropolitan University and an MBA from the University of Wales. She has SCJP and SCWCD certifications from Sun Microsystems, Inc.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Choose the Pro Plan That Fits Your Learning Journey

Invest in your future with flexible Pro subscription plans. Whether you're starting your cybersecurity journey or expanding your expertise, choose the membership duration that works for you and gain access to our complete learning platform.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 900+ courses and diverse Learning Paths to enhance your skills.

$ 599.00
Billed annually or $69.00 billed monthly

What is included

  • Access to 900+ Premium Short Courses
  • 70+ Structured Learning Paths
  • Validation of Completion with All Courses and Learning Paths
  • New Courses Added Every Month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs and CTF Challenges for comprehensive skill-building.

$ 699.00
Billed annually or $79.00 billed monthly

Everything in Pro and

  • 500+ Practice Labs with Guided Instructions
  • 400+ CTF Challenges with Detailed Walkthroughs
  • New Practice Labs and Challenges Added Every Month

Related Courses

1 of 50