Macquarie University

DevSecOps

Matt Bushby

Instructor: Matt Bushby

Included with Coursera Plus

Gain insight into a topic and learn the fundamentals.
Beginner level

Recommended experience

2 weeks to complete
at 10 hours a week
Flexible schedule
Learn at your own pace
Gain insight into a topic and learn the fundamentals.
Beginner level

Recommended experience

2 weeks to complete
at 10 hours a week
Flexible schedule
Learn at your own pace

What you'll learn

  • Embed Security Across the Software Development Lifecycle Experience with Secure DevOps Tools and Practices Cloud and Emerging Technologies Security

Details to know

Shareable certificate

Add to your LinkedIn profile

Recently updated!

June 2025

Assessments

6 assignments

Taught in English

See how employees at top companies are mastering in-demand skills

 logos of Petrobras, TATA, Danone, Capgemini, P&G and L'Oreal

There are 6 modules in this course

Security must start at the very beginning of the software development lifecycle. In this topic, you’ll explore the foundational principles of DevSecOps and learn how to integrate security thinking into every phase of development and operations. You’ll gain an understanding of the core objectives of DevSecOps, how modern development methodologies and tools impact security, and the importance of secure design practices from day one. The topic also covers critical practices like handling secrets securely and maintaining integrity in version control systems. By the end of this topic, you’ll have a clear grasp of how to embed security into agile and DevOps workflows—ensuring that protection isn’t an afterthought, but a continuous and collaborative part of delivering software.

What's included

1 assignment15 plugins

Building secure software requires more than just writing functional code—it demands a security-first mindset at every step of development. In this topic, you’ll dive into the principles and practices that strengthen software resilience, reduce vulnerabilities, and safeguard user data. You’ll explore essential techniques for secure coding, from implementing effective access controls and hardening APIs, to ensuring robust web application security. Real-world development scenarios will highlight how poor security decisions introduce risk—and how best practices can prevent them. By the end of this topic, you’ll understand how to weave security into your development practices, making it a natural and non-negotiable part of delivering trusted, high-integrity software.

What's included

1 assignment12 plugins

In the fast-paced world of software delivery, security must be continuous, automated, and deeply integrated into the development pipeline. This topic focuses on the application-layer risks and protections within the DevSecOps workflow—ensuring vulnerabilities are caught early and often. You’ll explore how to implement continuous security, manage dependency integrity, and use static application analysis to detect weaknesses before code reaches production. The topic also examines the role of software repositories in maintaining trust and control across application components. By the end of this topic, you’ll understand how to shift security left—embedding it into every stage of application development to reduce risk and accelerate delivery.

What's included

1 assignment10 plugins

Modern software delivery relies on fast, automated pipelines—but speed must not come at the cost of security. This topic explores how to embed robust security controls into CI/CD pipelines, ensuring that security is a continuous, automated part of your build and deployment process. You’ll examine how tools like static scanners and dynamic application security testing (DAST) can be integrated into development workflows, and how to secure infrastructure using Infrastructure as Code (IaC) practices. Whether deploying to cloud or on-prem environments, you’ll learn how to protect the entire delivery pipeline from code to production. By the end of this topic, you’ll be equipped to design and operate secure, efficient DevSecOps pipelines that support rapid deployment without compromising on security.

What's included

1 assignment8 plugins

As cloud-native architectures become the norm, securing deployments in the cloud is essential for any modern DevSecOps strategy. This topic focuses on implementing security controls in Azure-based environments, with a strong emphasis on containerised applications and service mesh architectures. You’ll explore how to secure containers with Docker, manage application orchestration using Kubernetes, and address key aspects of cloud network security. The topic also examines how DevSecOps principles apply to the unique challenges of cloud infrastructure and dynamic workloads. By the end of this topic, you'll understand how to build and operate secure, scalable, and resilient cloud environments using DevSecOps best practices in Azure.

What's included

1 assignment9 plugins

Even with secure pipelines and best practices in place, cyber threats are constantly evolving. In this final topic, you’ll examine the landscape of threats and attack vectors targeting modern DevSecOps environments—including those emerging in machine learning (ML) and AI-driven systems. You’ll learn how to evaluate security risks across the software delivery lifecycle, understand how AI is being used within DevSecOps, and explore the growing field of MLSecOps—the practice of securing machine learning models in production. By the end of this topic, you’ll be equipped to anticipate, evaluate, and respond to complex threats—ensuring your DevSecOps practices evolve alongside the technologies and risks shaping the future of software security.

What's included

1 assignment8 plugins

Earn a career certificate

Add this credential to your LinkedIn profile, resume, or CV. Share it on social media and in your performance review.

Instructor

Matt Bushby
Macquarie University
0 Courses0 learners

Offered by

Why people choose Coursera for their career

Felipe M.
Learner since 2018
"To be able to take courses at my own pace and rhythm has been an amazing experience. I can learn whenever it fits my schedule and mood."
Jennifer J.
Learner since 2020
"I directly applied the concepts and skills I learned from my courses to an exciting new project at work."
Larry W.
Learner since 2021
"When I need courses on topics that my university doesn't offer, Coursera is one of the best places to go."
Chaitanya A.
"Learning isn't just about being better at your job: it's so much more than that. Coursera allows me to learn without limits."

New to Security? Start here.

Coursera Plus

Open new doors with Coursera Plus

Unlimited access to 10,000+ world-class courses, hands-on projects, and job-ready certificate programs - all included in your subscription

Advance your career with an online degree

Earn a degree from world-class universities - 100% online

Join over 3,400 global companies that choose Coursera for Business

Upskill your employees to excel in the digital economy

Frequently asked questions