API Security & Testing

API security testing is the process of checking for vulnerabilities in your APIs, ultimately surfacing any potential security gaps for the engineering team to fix. Historically, this was done through penetration testing or manual scanning of the APIs by an enterprise security team. Currently, however, teams are shifting to running API security tests as part of the DevOps pipeline, ensuring that security issues are caught early in the development lifecycle.

* API Security fundamentals
* API Authentication and authorization
* Managing authentication state
* Cross-Origin Resource Sharing
* Server-Side Request Forgery

The goal is to introduce you to the relevant tools and processes required to perform an efficient security test

