Security Tests
Application and infrastructure security
Topics
Tests
Cybersecurity + Kubernetes — Advanced
Advanced cluster hardening: RBAC least privilege, NetworkPolicy segmentation, secret lifecycle and rotation, non-root pod security, and admission control concepts for certification-style scenarios.
AdvancedOpenIAM — Advanced
Advanced IAM: zero-trust access patterns, token binding, privilege boundaries, policy-as-code, and identity threat detection. Mix of single-answer and multiple-answer items.
AdvancedOpenIAM — Intermediate
Intermediate IAM: federation protocols, OAuth/OIDC concepts, groups vs roles, secrets for workloads, and access reviews. Mix of single-answer and multiple-answer items.
IntermediateOpenIAM — Beginner
Identity and access management foundations: authentication vs authorization, least privilege, MFA, and basic role ideas. Mix of single-answer and multiple-answer items.
BeginnerOpenOWASP — Advanced
Advanced OWASP builder awareness: defense-in-depth, API/auth pitfalls, deserialization and race themes, ASVS-style thinking, and secure operations. Mix of single-answer and multiple-answer items.
AdvancedOpenOWASP — Intermediate
Intermediate OWASP awareness: SSRF, XSS types, CSRF, supply chain, insecure design, and practical mitigations for builders. Mix of single-answer and multiple-answer items.
IntermediateOpenOWASP — Beginner
OWASP Top 10 awareness for builders: core risk categories, safe defaults, and defensive habits. Mix of single-answer and multiple-answer items; multi-select questions ask you to select every correct statement.
BeginnerOpenCybersecurity + Node.js + Docker — Advanced
Advanced hardening of containerized Node.js services: least privilege, secure images, supply-chain controls, runtime isolation, network threats, and vulnerability response.
AdvancedOpenCybersecurity — Intermediate
OWASP-class issues, secure SDLC basics, cloud IAM, and logging. Single- and multiple-choice.
IntermediateOpenCybersecurity — Beginner
Core security vocabulary: CIA triad, authn vs authz, phishing, patching, and password hygiene. Single- and multiple-choice.
BeginnerOpenCybersecurity — Advanced
Threat modeling, zero trust concepts, cloud hardening, cryptography usage, and detection. Mixed choice types.
AdvancedOpen