Meet us at Sai Reset 🇧🇪(Dec 4th) BlackHat EU 🏴󠁧󠁢󠁥󠁮󠁧󠁿(Dec 9th-10th) and BSides London 🏴󠁧󠁢󠁥󠁮󠁧󠁿 (Dec 12th)

Secure Development Trainings

Your custom training with SecDim

Create your custom training! Convert your pentest reports in learning for the engineering teams.

Online

Trainers

Picture of DCODX or SecDim Trainer

DCODX or SecDim Trainer

Lecturer

Hi there! I’m Davide Cioccia, founder of DCODX, an ethical hacking, and DevSecOps consulting and coaching firm. Besides helping companies implement their Sec in DevOps, I’m also a developer of security tools (check our GitHub), OWASP Mobile Security Testing Guide contributor and DevSecCon Chapter Lead for the Netherlands. You can find my talks at security conferences like BlackHat, OWASP AppSec, DevSecCon, DevDays Europe and more online, together with some CVE disclosed to Microsoft and other big vendors.  

Course overview

We can help you create the perfect training. Your topics, our material. Examples based on the OWASP Top 10 2025 vulnerabilities such as
  • SQL Injection
  • Cross-Site Scripting (XSS)
  • Broken Access Control
  • Supply Chain Attack
  • Cross-Site Request Forgery (CSRF), and Insecure Deserialization.
Dive deep into authentication and authorization , mastering the implementation of OAuth 2.0, Role-based Access Control (RBAC), and Claims-based authorization. Learn how to integrate these security practices seamlessly into your CI/CD pipeline for continuous protection. By the end of this course, you’ll be equipped with the practical skills to implement secure coding techniques, becoming proficient in applying OWASP’s Application Security Verification Standard (ASVS) and best practices to safeguard your applications against current and emerging vulnerabilities. This course is hands-on.  Each LAB is an application to attack and defend. All our labs are powered by secdim.com

Syllabus

You decide what to learn.

Check the full catalogue on SecDim